cbcvebase.

Apple Macos Sonoma vulnerabilities

960 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 22 of 48
CVE-2024-44199P4HIGHCVSS 7.1v14.62024-07-29
CVE-2024-44199 [HIGH] CVE-2024-44199: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-44199 Component: IOMobileFrameBuffer Impact: An app may be able to cause unexpected system termination or read kernel memory Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2026-20641P4HIGHCVSS 7.1v14.8.42026-02-11
CVE-2026-20641 [HIGH] CVE-2026-20641: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2026-20641 Component: StoreKit Impact: An app may be able to identify what other apps a user has installed Description: A privacy issue was addressed with improved checks.
apple
CVE-2026-20628P4HIGHCVSS 7.1v14.8.42026-02-11
CVE-2026-20628 [HIGH] CVE-2026-20628: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2026-20628 Component: Sandbox Impact: An app may be able to break out of its sandbox Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2020-19186P4MEDIUMCVSS 6.5v14.22023-12-11
CVE-2020-19186 [MEDIUM] CVE-2020-19186: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2020-19186 Component: CVE-2020-19186
apple
CVE-2020-19190P4MEDIUMCVSS 6.5v14.22023-12-11
CVE-2020-19190 [MEDIUM] CVE-2020-19190: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2020-19190 Component: CVE-2020-19190
apple
CVE-2024-23259P4MEDIUMCVSS 6.5v14.42024-03-07
CVE-2024-23259 [MEDIUM] CVE-2024-23259: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23259 Component: Safari Impact: Processing web content may lead to a denial-of-service Description: The issue was addressed with improved checks.
apple
CVE-2023-39233P4MEDIUMCVSS 6.5v142023-09-26
CVE-2023-39233 [MEDIUM] CVE-2023-39233: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-39233 Component: Safari Impact: Processing web content may disclose sensitive information Description: The issue was addressed with improved checks.
apple
CVE-2024-40785P4MEDIUMCVSS 6.1v14.62024-07-29
CVE-2024-40785 [MEDIUM] CVE-2024-40785: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40785 Component: WebKit Impact: Processing maliciously crafted web content may lead to a cross site scripting attack Description: This issue was addressed with improved checks.
apple
CVE-2024-23277P4MEDIUMCVSS 5.9v14.42024-03-07
CVE-2024-23277 [MEDIUM] CVE-2024-23277: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23277 Component: Bluetooth Impact: An attacker in a privileged network position may be able to inject keystrokes by spoofing a keyboard Description: The issue was addressed with improved checks.
apple
CVE-2024-27834P4MEDIUMCVSS 5.5v14.52024-05-13
CVE-2024-27834 [MEDIUM] CVE-2024-27834: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27834 Component: WebKit Impact: An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication Description: The issue was addressed with improved checks.
apple
CVE-2024-27876P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-27876 [MEDIUM] CVE-2024-27876: macOS Sonoma 14.7 Apple Security Update: About the security content of macOS Sonoma 14.7 Product: macOS Sonoma Version: 14.7 CVE: CVE-2024-27876 Component: Compression Impact: Unpacking a maliciously crafted archive may allow an attacker to write arbitrary files Description: A race condition was addressed with improved locking.
apple
CVE-2023-40454P4HIGHCVSS 7.1v142023-09-26
CVE-2023-40454 [HIGH] CVE-2023-40454: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-40454 Component: LaunchServices Impact: An app may bypass Gatekeeper checks Description: A logic issue was addressed with improved checks.
apple
CVE-2024-40805P4HIGHCVSS 7.1v14.62024-07-29
CVE-2024-40805 [HIGH] CVE-2024-40805: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40805 Component: CVE-2024-40805
apple
CVE-2025-43239P4HIGHCVSS 7.1v14.7.72025-07-29
CVE-2025-43239 [HIGH] CVE-2025-43239: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43239 Component: Single Sign-On Impact: An app may be able to access sensitive user data Description: This issue was addressed with additional entitlement checks.
apple
CVE-2024-40821P4HIGHCVSS 7.1v14.62024-07-29
CVE-2024-40821 [HIGH] CVE-2024-40821: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40821 Component: Security Impact: Third party app extensions may not receive the correct sandbox restrictions Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2025-43254P4HIGHCVSS 7.1v14.7.72025-07-29
CVE-2025-43254 [HIGH] CVE-2025-43254: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43254 Component: Dock Impact: An app may be able to access protected user data Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2024-27825P4HIGHCVSS 7.1v14.52024-05-13
CVE-2024-27825 [HIGH] CVE-2024-27825: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27825 Component: AppleMobileFileIntegrity Impact: An app may be able to bypass certain Privacy preferences Description: A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions.
apple
CVE-2020-19185P4MEDIUMCVSS 6.5v14.22023-12-11
CVE-2020-19185 [MEDIUM] CVE-2020-19185: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2020-19185 Component: CVE-2020-19185
apple
CVE-2020-19188P4MEDIUMCVSS 6.5v14.22023-12-11
CVE-2020-19188 [MEDIUM] CVE-2020-19188: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2020-19188 Component: CVE-2020-19188
apple
CVE-2020-19187P4MEDIUMCVSS 6.5v14.22023-12-11
CVE-2020-19187 [MEDIUM] CVE-2020-19187: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2020-19187 Component: CVE-2020-19187
apple
Apple Macos Sonoma vulnerabilities | cvebase