Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 31 of 48
CVE-2025-43394P4MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43394 [MEDIUM] CVE-2025-43394: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43394
Component: Audio
Impact: A malicious app may be able to read kernel memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2024-44253P4MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44253 [MEDIUM] CVE-2024-44253: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44253
Component: PackageKit
Impact: An app may be able to modify protected parts of the file system
Description: The issue was addressed with improved checks.
apple
CVE-2024-54469P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-54469 [MEDIUM] CVE-2024-54469: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-54469
Component: FileProvider
Impact: A local user may be able to leak sensitive user information
Description: The issue was addressed with improved checks.
apple
CVE-2025-43293P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43293 [MEDIUM] CVE-2025-43293: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43293
Component: SharedFileList
Impact: An app may be able to access sensitive user data
Description: The issue was addressed with improved input validation.
apple
CVE-2023-40389P4MEDIUMCVSS 5.5v14.22023-12-11
CVE-2023-40389 [MEDIUM] CVE-2023-40389: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-40389
Component: Transparency
Impact: An app may be able to access sensitive user data
Description: The issue was addressed with improved restriction of data container access.
apple
CVE-2024-44166P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44166 [MEDIUM] CVE-2024-44166: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-44166
Component: System Settings
Impact: An app may be able to access user-sensitive data
Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2024-44182P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44182 [MEDIUM] CVE-2024-44182: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-44182
Component: App Intents
Impact: An app may be able to access sensitive data logged when a shortcut fails to launch another app
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-44181P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44181 [MEDIUM] CVE-2024-44181: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-44181
Component: Maps
Impact: An app may be able to read sensitive location information
Description: An issue was addressed with improved handling of temporary files.
apple
CVE-2024-44135P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44135 [MEDIUM] CVE-2024-44135: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-44135
Component: AppSandbox
Impact: An app may be able to access protected files within an App Sandbox container
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2024-54471P4MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-54471 [MEDIUM] CVE-2024-54471: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-54471
Component: NetAuth
Impact: A malicious application may be able to leak a user's credentials
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2023-42834P4MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42834 [MEDIUM] CVE-2023-42834: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42834
Component: Find My
Impact: An app may be able to access sensitive user data
Description: A privacy issue was addressed with improved handling of files.
apple
CVE-2025-43231P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43231 [MEDIUM] CVE-2025-43231: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43231
Component: LaunchServices
Impact: An app may be able to access user-sensitive data
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43225P4MEDIUMCVSS 5.5v14.7.72025-07-29
CVE-2025-43225 [MEDIUM] CVE-2025-43225: macOS Sonoma 14.7.7
Apple Security Update: About the security content of macOS Sonoma 14.7.7
Product: macOS Sonoma
Version: 14.7.7
CVE: CVE-2025-43225
Component: Notes
Impact: An app may be able to access sensitive user data
Description: A logging issue was addressed with improved data redaction.
apple
CVE-2025-43319P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43319 [MEDIUM] CVE-2025-43319: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43319
Component: MediaLibrary
Impact: An app may be able to access protected user data
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-43195P4MEDIUMCVSS 5.5v14.7.72025-07-29
CVE-2025-43195 [MEDIUM] CVE-2025-43195: macOS Sonoma 14.7.7
Apple Security Update: About the security content of macOS Sonoma 14.7.7
Product: macOS Sonoma
Version: 14.7.7
CVE: CVE-2025-43195
Component: CoreServices
Impact: An app may be able to access sensitive user data
Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
apple
CVE-2025-43246P4MEDIUMCVSS 5.5v14.7.72025-07-29
CVE-2025-43246 [MEDIUM] CVE-2025-43246: macOS Sonoma 14.7.7
Apple Security Update: About the security content of macOS Sonoma 14.7.7
Product: macOS Sonoma
Version: 14.7.7
CVE: CVE-2025-43246
Component: Spotlight
Impact: An app may be able to access sensitive user data
Description: This issue was addressed with improved checks.
apple
CVE-2025-43367P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43367 [MEDIUM] CVE-2025-43367: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43367
Component: Siri
Impact: An app may be able to access protected user data
Description: A privacy issue was addressed by moving sensitive data.
apple
CVE-2025-43291P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43291 [MEDIUM] CVE-2025-43291: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43291
Component: SharedFileList
Impact: An app may be able to modify protected parts of the file system
Description: A permissions issue was addressed by removing the vulnerable code.
apple
CVE-2025-24197P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-24197 [MEDIUM] CVE-2025-24197: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-24197
Component: Spotlight
Impact: An app may be able to access sensitive user data
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-31268P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-31268 [MEDIUM] CVE-2025-31268: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-31268
Impact: An app may be able to access protected user data
Description: A permissions issue was addressed with additional restrictions.
apple