cbcvebase.

Apple Macos Sonoma vulnerabilities

960 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 25 of 48
CVE-2025-43519P4MEDIUMCVSS 5.5v14.8.32025-12-12
CVE-2025-43519 [MEDIUM] CVE-2025-43519: macOS Sonoma 14.8.3 Apple Security Update: About the security content of macOS Sonoma 14.8.3 Product: macOS Sonoma Version: 14.8.3 CVE: CVE-2025-43519 Component: AppleMobileFileIntegrity Impact: An app may be able to access sensitive user data Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2024-40835P4MEDIUMCVSS 5.5v14.62024-07-29
CVE-2024-40835 [MEDIUM] CVE-2024-40835: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40835 Component: Shortcuts Impact: A shortcut may be able to use sensitive data with certain actions without prompting the user Description: A logic issue was addressed with improved checks.
apple
CVE-2024-40793P4MEDIUMCVSS 5.5v14.62024-07-29
CVE-2024-40793 [MEDIUM] CVE-2024-40793: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40793 Component: Shortcuts Impact: An app may be able to access user-sensitive data Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2024-27827P4MEDIUMCVSS 5.5v14.52024-05-13
CVE-2024-27827 [MEDIUM] CVE-2024-27827: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27827 Component: Finder Impact: An app may be able to read arbitrary files Description: This issue was addressed through improved state management.
apple
CVE-2026-20625P4MEDIUMCVSS 5.5v14.8.42026-02-11
CVE-2026-20625 [MEDIUM] CVE-2026-20625: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2026-20625 Component: AppleMobileFileIntegrity Impact: An app may be able to access sensitive user data Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2025-43382P4MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43382 [MEDIUM] CVE-2025-43382: macOS Sonoma 14.8.2 Apple Security Update: About the security content of macOS Sonoma 14.8.2 Product: macOS Sonoma Version: 14.8.2 CVE: CVE-2025-43382 Component: CoreServices Impact: An app may be able to access sensitive user data Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2025-43463P4MEDIUMCVSS 5.5v14.8.32025-12-12
CVE-2025-43463 [MEDIUM] CVE-2025-43463: macOS Sonoma 14.8.3 Apple Security Update: About the security content of macOS Sonoma 14.8.3 Product: macOS Sonoma Version: 14.8.3 CVE: CVE-2025-43463 Component: StorageKit Impact: An app may be able to access sensitive user data Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2025-43389P4MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43389 [MEDIUM] CVE-2025-43389: macOS Sonoma 14.8.2 Apple Security Update: About the security content of macOS Sonoma 14.8.2 Product: macOS Sonoma Version: 14.8.2 CVE: CVE-2025-43389 Component: Notes Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed by removing the vulnerable code.
apple
CVE-2025-43469P4MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43469 [MEDIUM] CVE-2025-43469: macOS Sonoma 14.8.2 Apple Security Update: About the security content of macOS Sonoma 14.8.2 Product: macOS Sonoma Version: 14.8.2 CVE: CVE-2025-43469 Component: AppleMobileFileIntegrity Impact: An app may be able to access sensitive user data Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-31248P4MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-31248 [MEDIUM] CVE-2025-31248: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-31248 Component: UserAccountUpdater Impact: An app may be able to access sensitive user data Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2025-43468P4MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43468 [MEDIUM] CVE-2025-43468: macOS Sonoma 14.8.2 Apple Security Update: About the security content of macOS Sonoma 14.8.2 Product: macOS Sonoma Version: 14.8.2 CVE: CVE-2025-43468 Component: AppleMobileFileIntegrity Impact: An app may be able to access sensitive user data Description: A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions.
apple
CVE-2023-42981P4MEDIUMCVSS 5.4v142023-09-26
CVE-2023-42981 [MEDIUM] CVE-2023-42981: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-42981 Component: Model I/O Impact: Processing a file may lead to a denial-of-service or potentially disclose memory contents Description: The issue was addressed with improved checks.
apple
CVE-2023-42836P4MEDIUMCVSS 5.3v14.12023-10-25
CVE-2023-42836 [MEDIUM] CVE-2023-42836: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42836 Component: Sandbox Impact: An attacker may be able to access connected network volumes mounted in the home directory Description: A logic issue was addressed with improved checks.
apple
CVE-2025-24097P4MEDIUMCVSS 5.0v14.7.52025-03-31
CVE-2025-24097 [MEDIUM] CVE-2025-24097: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24097 Component: AirDrop Impact: An app may be able to read arbitrary file metadata Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-24198P4MEDIUMCVSS 6.6v14.7.52025-03-31
CVE-2025-24198 [MEDIUM] CVE-2025-24198: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24198 Component: Siri Impact: An attacker with physical access may be able to use Siri to access sensitive user data Description: This issue was addressed by restricting options offered on a locked device.
apple
CVE-2025-24251P4MEDIUMCVSS 6.5v14.7.52025-03-31
CVE-2025-24251 [MEDIUM] CVE-2025-24251: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24251 Component: AirPlay Impact: An attacker on the local network may cause an unexpected app termination Description: The issue was addressed with improved checks.
apple
CVE-2025-30445P4MEDIUMCVSS 6.5v14.7.52025-03-31
CVE-2025-30445 [MEDIUM] CVE-2025-30445: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30445 Component: AirPlay Impact: An attacker on the local network may cause an unexpected app termination Description: A type confusion issue was addressed with improved checks.
apple
CVE-2025-31203P4MEDIUMCVSS 6.5v14.7.52025-03-31
CVE-2025-31203 [MEDIUM] CVE-2025-31203: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-31203 Component: CoreUtils Impact: An attacker on the local network may be able to cause a denial-of-service Description: An integer overflow was addressed with improved input validation.
apple
CVE-2024-27885P4MEDIUMCVSS 6.3v14.52024-05-13
CVE-2024-27885 [MEDIUM] CVE-2024-27885: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27885 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-24115P4MEDIUMCVSS 6.3v14.7.32025-01-27
CVE-2025-24115 [MEDIUM] CVE-2025-24115: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24115 Component: LaunchServices Impact: An app may be able to read files outside of its sandbox Description: A path handling issue was addressed with improved validation.
apple
Apple Macos Sonoma vulnerabilities | cvebase