Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 3 of 48
CVE-2024-1580P3MEDIUMCVSS 5.9v14.4.12024-03-25
CVE-2024-1580 [MEDIUM] CVE-2024-1580: macOS Sonoma 14.4.1
Apple Security Update: About the security content of macOS Sonoma 14.4.1
Product: macOS Sonoma
Version: 14.4.1
CVE: CVE-2024-1580
Component: CoreMedia
Impact: Processing an image may lead to arbitrary code execution
Description: An out-of-bounds write issue was addressed with improved input validation.
apple
CVE-2023-40414P3CRITICALCVSS 9.8v142023-09-26
CVE-2023-40414 [CRITICAL] CVE-2023-40414: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40414
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-39434P3HIGHCVSS 8.8v142023-09-26
CVE-2023-39434 [HIGH] CVE-2023-39434: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-39434
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-35074P3HIGHCVSS 8.8v142023-09-26
CVE-2023-35074 [HIGH] CVE-2023-35074: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-35074
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-23214P3HIGHCVSS 8.8v14.32024-01-22
CVE-2024-23214 [HIGH] CVE-2024-23214: macOS Sonoma 14.3
Apple Security Update: About the security content of macOS Sonoma 14.3
Product: macOS Sonoma
Version: 14.3
CVE: CVE-2024-23214
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2024-27851P3HIGHCVSS 8.8v14.52024-05-13
CVE-2024-27851 [HIGH] CVE-2024-27851: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-27851
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: The issue was addressed with improved bounds checks.
apple
CVE-2024-56171P3HIGHCVSS 7.8v14.7.52025-03-31
CVE-2024-56171 [HIGH] CVE-2024-56171: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2024-56171
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
apple
CVE-2023-42950P3HIGHCVSS 8.8v14.22023-12-11
CVE-2023-42950 [HIGH] CVE-2023-42950: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42950
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2024-27859P3HIGHCVSS 8.8v14.42024-03-07
CVE-2024-27859 [HIGH] CVE-2024-27859: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-27859
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42970P3HIGHCVSS 8.8v142023-09-26
CVE-2023-42970 [HIGH] CVE-2023-42970: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-42970
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2025-24230P3CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24230 [CRITICAL] CVE-2025-24230: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24230
Component: CoreAudio
Impact: Playing a malicious audio file may lead to an unexpected app termination
Description: An out-of-bounds read issue was addressed with improved input validation.
apple
CVE-2025-24190P3CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24190 [CRITICAL] CVE-2025-24190: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24190
Component: CoreMedia
Impact: Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24252P3HIGHCVSS 8.8v14.7.52025-03-31
CVE-2025-24252 [HIGH] CVE-2025-24252: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24252
Component: AirPlay
Impact: An attacker on the local network may be able to corrupt process memory
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-41060P3HIGHCVSS 8.8v142023-09-26
CVE-2023-41060 [HIGH] CVE-2023-41060: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-41060
Component: Kernel
Impact: A remote user may be able to cause kernel code execution
Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-42833P3HIGHCVSS 8.8v142023-09-26
CVE-2023-42833 [HIGH] CVE-2023-42833: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-42833
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: A correctness issue was addressed with improved checks.
apple
CVE-2024-23209P3HIGHCVSS 8.8v14.32024-01-22
CVE-2024-23209 [HIGH] CVE-2024-23209: macOS Sonoma 14.3
Apple Security Update: About the security content of macOS Sonoma 14.3
Product: macOS Sonoma
Version: 14.3
CVE: CVE-2024-23209
Component: CVE-2024-23209
apple
CVE-2025-24211P3CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24211 [CRITICAL] CVE-2025-24211: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24211
Component: CoreMedia
Impact: Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory
Description: This issue was addressed with improved memory handling.
apple
CVE-2025-43209P3CRITICALCVSS 9.8v14.7.72025-07-29
CVE-2025-43209 [CRITICAL] CVE-2025-43209: macOS Sonoma 14.7.7
Apple Security Update: About the security content of macOS Sonoma 14.7.7
Product: macOS Sonoma
Version: 14.7.7
CVE: CVE-2025-43209
Component: ICU
Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2023-40448P3HIGHCVSS 8.6v142023-09-26
CVE-2023-40448 [HIGH] CVE-2023-40448: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40448
Component: App Store
Impact: A remote attacker may be able to break out of Web Content sandbox
Description: The issue was addressed with improved handling of protocols.
apple
CVE-2025-24196P3HIGHCVSS 8.8v14.7.52025-03-31
CVE-2025-24196 [HIGH] CVE-2025-24196: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24196
Component: Kernel
Impact: An attacker with user privileges may be able to read kernel memory
Description: A type confusion issue was addressed with improved memory handling.
apple