cbcvebase.

Apple Macos Sonoma vulnerabilities

960 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 3 of 48
CVE-2024-1580P3MEDIUMCVSS 5.9v14.4.12024-03-25
CVE-2024-1580 [MEDIUM] CVE-2024-1580: macOS Sonoma 14.4.1 Apple Security Update: About the security content of macOS Sonoma 14.4.1 Product: macOS Sonoma Version: 14.4.1 CVE: CVE-2024-1580 Component: CoreMedia Impact: Processing an image may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved input validation.
apple
CVE-2023-40414P3CRITICALCVSS 9.8v142023-09-26
CVE-2023-40414 [CRITICAL] CVE-2023-40414: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-40414 Component: WebKit Impact: Processing web content may lead to arbitrary code execution Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-39434P3HIGHCVSS 8.8v142023-09-26
CVE-2023-39434 [HIGH] CVE-2023-39434: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-39434 Component: WebKit Impact: Processing web content may lead to arbitrary code execution Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-35074P3HIGHCVSS 8.8v142023-09-26
CVE-2023-35074 [HIGH] CVE-2023-35074: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-35074 Component: WebKit Impact: Processing web content may lead to arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2024-23214P3HIGHCVSS 8.8v14.32024-01-22
CVE-2024-23214 [HIGH] CVE-2024-23214: macOS Sonoma 14.3 Apple Security Update: About the security content of macOS Sonoma 14.3 Product: macOS Sonoma Version: 14.3 CVE: CVE-2024-23214 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2024-27851P3HIGHCVSS 8.8v14.52024-05-13
CVE-2024-27851 [HIGH] CVE-2024-27851: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27851 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: The issue was addressed with improved bounds checks.
apple
CVE-2024-56171P3HIGHCVSS 7.8v14.7.52025-03-31
CVE-2024-56171 [HIGH] CVE-2024-56171: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2024-56171 Component: CVE-2024-56171 Impact: An app may be able to break out of its sandbox Description: This issue was addressed through improved state management.
apple
CVE-2023-42950P3HIGHCVSS 8.8v14.22023-12-11
CVE-2023-42950 [HIGH] CVE-2023-42950: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42950 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A use after free issue was addressed with improved memory management.
apple
CVE-2024-27859P3HIGHCVSS 8.8v14.42024-03-07
CVE-2024-27859 [HIGH] CVE-2024-27859: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-27859 Component: WebKit Impact: Processing web content may lead to arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42970P3HIGHCVSS 8.8v142023-09-26
CVE-2023-42970 [HIGH] CVE-2023-42970: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-42970 Component: WebKit Impact: Processing web content may lead to arbitrary code execution Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2025-24230P3CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24230 [CRITICAL] CVE-2025-24230: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24230 Component: CoreAudio Impact: Playing a malicious audio file may lead to an unexpected app termination Description: An out-of-bounds read issue was addressed with improved input validation.
apple
CVE-2025-24190P3CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24190 [CRITICAL] CVE-2025-24190: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24190 Component: CoreMedia Impact: Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24252P3HIGHCVSS 8.8v14.7.52025-03-31
CVE-2025-24252 [HIGH] CVE-2025-24252: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24252 Component: AirPlay Impact: An attacker on the local network may be able to corrupt process memory Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-41060P3HIGHCVSS 8.8v142023-09-26
CVE-2023-41060 [HIGH] CVE-2023-41060: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-41060 Component: Kernel Impact: A remote user may be able to cause kernel code execution Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-42833P3HIGHCVSS 8.8v142023-09-26
CVE-2023-42833 [HIGH] CVE-2023-42833: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-42833 Component: WebKit Impact: Processing web content may lead to arbitrary code execution Description: A correctness issue was addressed with improved checks.
apple
CVE-2024-23209P3HIGHCVSS 8.8v14.32024-01-22
CVE-2024-23209 [HIGH] CVE-2024-23209: macOS Sonoma 14.3 Apple Security Update: About the security content of macOS Sonoma 14.3 Product: macOS Sonoma Version: 14.3 CVE: CVE-2024-23209 Component: CVE-2024-23209
apple
CVE-2025-24211P3CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24211 [CRITICAL] CVE-2025-24211: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24211 Component: CoreMedia Impact: Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory Description: This issue was addressed with improved memory handling.
apple
CVE-2025-43209P3CRITICALCVSS 9.8v14.7.72025-07-29
CVE-2025-43209 [CRITICAL] CVE-2025-43209: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43209 Component: ICU Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2023-40448P3HIGHCVSS 8.6v142023-09-26
CVE-2023-40448 [HIGH] CVE-2023-40448: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-40448 Component: App Store Impact: A remote attacker may be able to break out of Web Content sandbox Description: The issue was addressed with improved handling of protocols.
apple
CVE-2025-24196P3HIGHCVSS 8.8v14.7.52025-03-31
CVE-2025-24196 [HIGH] CVE-2025-24196: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24196 Component: Kernel Impact: An attacker with user privileges may be able to read kernel memory Description: A type confusion issue was addressed with improved memory handling.
apple
Apple Macos Sonoma vulnerabilities | cvebase