Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 30 of 48
CVE-2025-24205P4MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24205 [MEDIUM] CVE-2025-24205: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24205
Component: Siri
Impact: An app may be able to access user-sensitive data
Description: An authorization issue was addressed with improved state management.
apple
CVE-2024-23231P4MEDIUMCVSS 5.5v14.42024-03-07
CVE-2024-23231 [MEDIUM] CVE-2024-23231: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23231
Component: Share Sheet
Impact: An app may be able to access user-sensitive data
Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2025-30443P4MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-30443 [MEDIUM] CVE-2025-30443: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30443
Component: AppleMobileFileIntegrity
Impact: An app may be able to access user-sensitive data
Description: A privacy issue was addressed by removing the vulnerable code.
apple
CVE-2024-44254P4MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44254 [MEDIUM] CVE-2024-44254: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44254
Component: Shortcuts
Impact: An app may be able to access sensitive user data
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-27871P4MEDIUMCVSS 5.5v14.62024-07-29
CVE-2024-27871 [MEDIUM] CVE-2024-27871: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-27871
Component: Sandbox
Impact: An app may be able to access protected user data
Description: A path handling issue was addressed with improved validation.
apple
CVE-2025-24278P4MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24278 [MEDIUM] CVE-2025-24278: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24278
Component: System Settings
Impact: An app may be able to access protected user data
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2024-27806P4MEDIUMCVSS 5.5v14.52024-05-13
CVE-2024-27806 [MEDIUM] CVE-2024-27806: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-27806
Component: CVE-2024-27806
apple
CVE-2024-23283P4MEDIUMCVSS 5.5v14.42024-03-07
CVE-2024-23283 [MEDIUM] CVE-2024-23283: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23283
Component: CVE-2024-23283
apple
CVE-2024-44281P4MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44281 [MEDIUM] CVE-2024-44281: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44281
Component: Shortcuts
Impact: A malicious app may use shortcuts to access restricted files
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43190P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43190 [MEDIUM] CVE-2025-43190: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43190
Component: Spell Check
Impact: An app may be able to access sensitive user data
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2024-44178P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44178 [MEDIUM] CVE-2024-44178: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-44178
Component: PackageKit
Impact: An app may be able to modify protected parts of the file system
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2024-27805P4MEDIUMCVSS 5.5v14.52024-05-13
CVE-2024-27805 [MEDIUM] CVE-2024-27805: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-27805
Component: Core Data
Impact: An app may be able to access sensitive user data
Description: An issue was addressed with improved validation of environment variables.
apple
CVE-2024-44153P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44153 [MEDIUM] CVE-2024-44153: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-44153
Component: Accounts
Impact: An app may be able to access user-sensitive data
Description: The issue was addressed with improved permissions logic.
apple
CVE-2024-44158P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44158 [MEDIUM] CVE-2024-44158: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-44158
Component: Shortcuts
Impact: A shortcut may output sensitive user data without consent
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-27887P4MEDIUMCVSS 5.5v14.42024-03-07
CVE-2024-27887 [MEDIUM] CVE-2024-27887: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-27887
Component: NSSpellChecker
Impact: An app may be able to access user-sensitive data
Description: A path handling issue was addressed with improved validation.
apple
CVE-2024-40860P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-40860 [MEDIUM] CVE-2024-40860: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-40860
Component: Shortcuts
Impact: An app may be able to observe data displayed to the user by Shortcuts
Description: A privacy issue was addressed with improved handling of temporary files.
apple
CVE-2024-40801P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-40801 [MEDIUM] CVE-2024-40801: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-40801
Component: Security Initialization
Impact: An app may be able to access protected user data
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2024-40844P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-40844 [MEDIUM] CVE-2024-40844: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-40844
Component: Shortcuts
Impact: An app may be able to observe data displayed to the user by Shortcuts
Description: A privacy issue was addressed with improved handling of temporary files.
apple
CVE-2024-40807P4MEDIUMCVSS 5.5v14.62024-07-29
CVE-2024-40807 [MEDIUM] CVE-2024-40807: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40807
Component: Shortcuts
Impact: A shortcut may be able to use sensitive data with certain actions without prompting the user
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43348P4MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43348 [MEDIUM] CVE-2025-43348: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43348
Component: Finder
Impact: An app may bypass Gatekeeper checks
Description: A logic issue was addressed with improved validation.
apple