Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 22 of 48
CVE-2024-44199P4HIGHCVSS 7.1v14.62024-07-29
CVE-2024-44199 [HIGH] CVE-2024-44199: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-44199
Component: IOMobileFrameBuffer
Impact: An app may be able to cause unexpected system termination or read kernel memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2026-20641P4HIGHCVSS 7.1v14.8.42026-02-11
CVE-2026-20641 [HIGH] CVE-2026-20641: macOS Sonoma 14.8.4
Apple Security Update: About the security content of macOS Sonoma 14.8.4
Product: macOS Sonoma
Version: 14.8.4
CVE: CVE-2026-20641
Component: StoreKit
Impact: An app may be able to identify what other apps a user has installed
Description: A privacy issue was addressed with improved checks.
apple
CVE-2026-20628P4HIGHCVSS 7.1v14.8.42026-02-11
CVE-2026-20628 [HIGH] CVE-2026-20628: macOS Sonoma 14.8.4
Apple Security Update: About the security content of macOS Sonoma 14.8.4
Product: macOS Sonoma
Version: 14.8.4
CVE: CVE-2026-20628
Component: Sandbox
Impact: An app may be able to break out of its sandbox
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2020-19186P4MEDIUMCVSS 6.5v14.22023-12-11
CVE-2020-19186 [MEDIUM] CVE-2020-19186: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2020-19186
Component: CVE-2020-19186
apple
CVE-2020-19190P4MEDIUMCVSS 6.5v14.22023-12-11
CVE-2020-19190 [MEDIUM] CVE-2020-19190: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2020-19190
Component: CVE-2020-19190
apple
CVE-2024-23259P4MEDIUMCVSS 6.5v14.42024-03-07
CVE-2024-23259 [MEDIUM] CVE-2024-23259: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23259
Component: Safari
Impact: Processing web content may lead to a denial-of-service
Description: The issue was addressed with improved checks.
apple
CVE-2023-39233P4MEDIUMCVSS 6.5v142023-09-26
CVE-2023-39233 [MEDIUM] CVE-2023-39233: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-39233
Component: Safari
Impact: Processing web content may disclose sensitive information
Description: The issue was addressed with improved checks.
apple
CVE-2024-40785P4MEDIUMCVSS 6.1v14.62024-07-29
CVE-2024-40785 [MEDIUM] CVE-2024-40785: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40785
Component: WebKit
Impact: Processing maliciously crafted web content may lead to a cross site scripting attack
Description: This issue was addressed with improved checks.
apple
CVE-2024-23277P4MEDIUMCVSS 5.9v14.42024-03-07
CVE-2024-23277 [MEDIUM] CVE-2024-23277: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23277
Component: Bluetooth
Impact: An attacker in a privileged network position may be able to inject keystrokes by spoofing a keyboard
Description: The issue was addressed with improved checks.
apple
CVE-2024-27834P4MEDIUMCVSS 5.5v14.52024-05-13
CVE-2024-27834 [MEDIUM] CVE-2024-27834: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-27834
Component: WebKit
Impact: An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication
Description: The issue was addressed with improved checks.
apple
CVE-2024-27876P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-27876 [MEDIUM] CVE-2024-27876: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-27876
Component: Compression
Impact: Unpacking a maliciously crafted archive may allow an attacker to write arbitrary files
Description: A race condition was addressed with improved locking.
apple
CVE-2023-40454P4HIGHCVSS 7.1v142023-09-26
CVE-2023-40454 [HIGH] CVE-2023-40454: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40454
Component: LaunchServices
Impact: An app may bypass Gatekeeper checks
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-40805P4HIGHCVSS 7.1v14.62024-07-29
CVE-2024-40805 [HIGH] CVE-2024-40805: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40805
Component: CVE-2024-40805
apple
CVE-2025-43239P4HIGHCVSS 7.1v14.7.72025-07-29
CVE-2025-43239 [HIGH] CVE-2025-43239: macOS Sonoma 14.7.7
Apple Security Update: About the security content of macOS Sonoma 14.7.7
Product: macOS Sonoma
Version: 14.7.7
CVE: CVE-2025-43239
Component: Single Sign-On
Impact: An app may be able to access sensitive user data
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2024-40821P4HIGHCVSS 7.1v14.62024-07-29
CVE-2024-40821 [HIGH] CVE-2024-40821: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40821
Component: Security
Impact: Third party app extensions may not receive the correct sandbox restrictions
Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2025-43254P4HIGHCVSS 7.1v14.7.72025-07-29
CVE-2025-43254 [HIGH] CVE-2025-43254: macOS Sonoma 14.7.7
Apple Security Update: About the security content of macOS Sonoma 14.7.7
Product: macOS Sonoma
Version: 14.7.7
CVE: CVE-2025-43254
Component: Dock
Impact: An app may be able to access protected user data
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2024-27825P4HIGHCVSS 7.1v14.52024-05-13
CVE-2024-27825 [HIGH] CVE-2024-27825: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-27825
Component: AppleMobileFileIntegrity
Impact: An app may be able to bypass certain Privacy preferences
Description: A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions.
apple
CVE-2020-19185P4MEDIUMCVSS 6.5v14.22023-12-11
CVE-2020-19185 [MEDIUM] CVE-2020-19185: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2020-19185
Component: CVE-2020-19185
apple
CVE-2020-19188P4MEDIUMCVSS 6.5v14.22023-12-11
CVE-2020-19188 [MEDIUM] CVE-2020-19188: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2020-19188
Component: CVE-2020-19188
apple
CVE-2020-19187P4MEDIUMCVSS 6.5v14.22023-12-11
CVE-2020-19187 [MEDIUM] CVE-2020-19187: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2020-19187
Component: CVE-2020-19187
apple