cbcvebase.

Apple Macos Sonoma vulnerabilities

960 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 31 of 48
CVE-2025-43394P4MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43394 [MEDIUM] CVE-2025-43394: macOS Sonoma 14.8.2 Apple Security Update: About the security content of macOS Sonoma 14.8.2 Product: macOS Sonoma Version: 14.8.2 CVE: CVE-2025-43394 Component: Audio Impact: A malicious app may be able to read kernel memory Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2024-44253P4MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44253 [MEDIUM] CVE-2024-44253: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44253 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: The issue was addressed with improved checks.
apple
CVE-2024-54469P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-54469 [MEDIUM] CVE-2024-54469: macOS Sonoma 14.7 Apple Security Update: About the security content of macOS Sonoma 14.7 Product: macOS Sonoma Version: 14.7 CVE: CVE-2024-54469 Component: FileProvider Impact: A local user may be able to leak sensitive user information Description: The issue was addressed with improved checks.
apple
CVE-2025-43293P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43293 [MEDIUM] CVE-2025-43293: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-43293 Component: SharedFileList Impact: An app may be able to access sensitive user data Description: The issue was addressed with improved input validation.
apple
CVE-2023-40389P4MEDIUMCVSS 5.5v14.22023-12-11
CVE-2023-40389 [MEDIUM] CVE-2023-40389: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-40389 Component: Transparency Impact: An app may be able to access sensitive user data Description: The issue was addressed with improved restriction of data container access.
apple
CVE-2024-44166P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44166 [MEDIUM] CVE-2024-44166: macOS Sonoma 14.7 Apple Security Update: About the security content of macOS Sonoma 14.7 Product: macOS Sonoma Version: 14.7 CVE: CVE-2024-44166 Component: System Settings Impact: An app may be able to access user-sensitive data Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2024-44182P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44182 [MEDIUM] CVE-2024-44182: macOS Sonoma 14.7 Apple Security Update: About the security content of macOS Sonoma 14.7 Product: macOS Sonoma Version: 14.7 CVE: CVE-2024-44182 Component: App Intents Impact: An app may be able to access sensitive data logged when a shortcut fails to launch another app Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-44181P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44181 [MEDIUM] CVE-2024-44181: macOS Sonoma 14.7 Apple Security Update: About the security content of macOS Sonoma 14.7 Product: macOS Sonoma Version: 14.7 CVE: CVE-2024-44181 Component: Maps Impact: An app may be able to read sensitive location information Description: An issue was addressed with improved handling of temporary files.
apple
CVE-2024-44135P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44135 [MEDIUM] CVE-2024-44135: macOS Sonoma 14.7 Apple Security Update: About the security content of macOS Sonoma 14.7 Product: macOS Sonoma Version: 14.7 CVE: CVE-2024-44135 Component: AppSandbox Impact: An app may be able to access protected files within an App Sandbox container Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2024-54471P4MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-54471 [MEDIUM] CVE-2024-54471: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-54471 Component: NetAuth Impact: A malicious application may be able to leak a user's credentials Description: This issue was addressed with additional entitlement checks.
apple
CVE-2023-42834P4MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42834 [MEDIUM] CVE-2023-42834: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42834 Component: Find My Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved handling of files.
apple
CVE-2025-43231P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43231 [MEDIUM] CVE-2025-43231: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-43231 Component: LaunchServices Impact: An app may be able to access user-sensitive data Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43225P4MEDIUMCVSS 5.5v14.7.72025-07-29
CVE-2025-43225 [MEDIUM] CVE-2025-43225: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43225 Component: Notes Impact: An app may be able to access sensitive user data Description: A logging issue was addressed with improved data redaction.
apple
CVE-2025-43319P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43319 [MEDIUM] CVE-2025-43319: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-43319 Component: MediaLibrary Impact: An app may be able to access protected user data Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-43195P4MEDIUMCVSS 5.5v14.7.72025-07-29
CVE-2025-43195 [MEDIUM] CVE-2025-43195: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43195 Component: CoreServices Impact: An app may be able to access sensitive user data Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
apple
CVE-2025-43246P4MEDIUMCVSS 5.5v14.7.72025-07-29
CVE-2025-43246 [MEDIUM] CVE-2025-43246: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43246 Component: Spotlight Impact: An app may be able to access sensitive user data Description: This issue was addressed with improved checks.
apple
CVE-2025-43367P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43367 [MEDIUM] CVE-2025-43367: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-43367 Component: Siri Impact: An app may be able to access protected user data Description: A privacy issue was addressed by moving sensitive data.
apple
CVE-2025-43291P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43291 [MEDIUM] CVE-2025-43291: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-43291 Component: SharedFileList Impact: An app may be able to modify protected parts of the file system Description: A permissions issue was addressed by removing the vulnerable code.
apple
CVE-2025-24197P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-24197 [MEDIUM] CVE-2025-24197: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-24197 Component: Spotlight Impact: An app may be able to access sensitive user data Description: A logic issue was addressed with improved checks.
apple
CVE-2025-31268P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-31268 [MEDIUM] CVE-2025-31268: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-31268 Impact: An app may be able to access protected user data Description: A permissions issue was addressed with additional restrictions.
apple
Apple Macos Sonoma vulnerabilities | cvebase