Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 35 of 48
CVE-2024-23269P4MEDIUMCVSS 5.5v14.42024-03-07
CVE-2024-23269 [MEDIUM] CVE-2024-23269: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23269
Component: AppleMobileFileIntegrity
Impact: An app may be able to modify protected parts of the file system
Description: A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions.
apple
CVE-2024-44168P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44168 [MEDIUM] CVE-2024-44168: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-44168
Component: AppleMobileFileIntegrity
Impact: An app may be able to modify protected parts of the file system
Description: A library injection issue was addressed with additional restrictions.
apple
CVE-2023-42840P4MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42840 [MEDIUM] CVE-2023-42840: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42840
Component: PackageKit
Impact: An app may be able to access user-sensitive data
Description: The issue was addressed with improved checks.
apple
CVE-2023-40528P4MEDIUMCVSS 5.5v142023-09-26
CVE-2023-40528 [MEDIUM] CVE-2023-40528: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40528
Component: Core Data
Impact: An app may be able to bypass Privacy preferences
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-31187P4MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-31187 [MEDIUM] CVE-2025-31187: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-31187
Component: Dock
Impact: An app may be able to modify protected parts of the file system
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-24138P4MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24138 [MEDIUM] CVE-2025-24138: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24138
Component: Spotlight
Impact: A malicious application may be able to leak sensitive user information
Description: This issue was addressed through improved state management.
apple
CVE-2025-24280P4MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24280 [MEDIUM] CVE-2025-24280: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24280
Component: Shortcuts
Impact: An app may be able to access user-sensitive data
Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2025-24276P4MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24276 [MEDIUM] CVE-2025-24276: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24276
Component: App Store
Impact: A malicious app may be able to access private information
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2024-44216P4MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44216 [MEDIUM] CVE-2024-44216: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44216
Component: Installer
Impact: An app may be able to access user-sensitive data
Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2024-44257P4MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44257 [MEDIUM] CVE-2024-44257: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44257
Component: WindowServer
Impact: An app may be able to access sensitive user data
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-44128P4MEDIUMCVSS 5.5v14.72024-09-16
CVE-2024-44128 [MEDIUM] CVE-2024-44128: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-44128
Component: Automator
Impact: An Automator Quick Action workflow may be able to bypass Gatekeeper
Description: This issue was addressed by adding an additional prompt for user consent.
apple
CVE-2024-23281P4MEDIUMCVSS 5.5v14.42024-03-07
CVE-2024-23281 [MEDIUM] CVE-2024-23281: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23281
Component: System Settings
Impact: An app may be able to access sensitive user data
Description: This issue was addressed with improved state management.
apple
CVE-2024-23267P4MEDIUMCVSS 5.5v14.42024-03-07
CVE-2024-23267 [MEDIUM] CVE-2024-23267: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23267
Component: PackageKit
Impact: An app may be able to bypass certain Privacy preferences
Description: The issue was addressed with improved checks.
apple
CVE-2024-40811P4MEDIUMCVSS 5.5v14.62024-07-29
CVE-2024-40811 [MEDIUM] CVE-2024-40811: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40811
Component: StorageKit
Impact: A malicious app may be able to gain root privileges
Description: The issue was addressed with improved checks.
apple
CVE-2025-24114P4MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24114 [MEDIUM] CVE-2025-24114: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24114
Component: AppleMobileFileIntegrity
Impact: An app may be able to modify protected parts of the file system
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2024-23260P4MEDIUMCVSS 5.5v14.42024-03-07
CVE-2024-23260 [MEDIUM] CVE-2024-23260: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23260
Component: TV App
Impact: An app may be able to access user-sensitive data
Description: This issue was addressed by removing additional entitlements.
apple
CVE-2023-42936P4MEDIUMCVSS 5.5v14.22023-12-11
CVE-2023-42936 [MEDIUM] CVE-2023-42936: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42936
Component: Sandbox
Impact: An app may be able to access user-sensitive data
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-23230P4MEDIUMCVSS 5.5v14.42024-03-07
CVE-2024-23230 [MEDIUM] CVE-2024-23230: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23230
Component: SharedFileList
Impact: An app may be able to access sensitive user data
Description: This issue was addressed with improved file handling.
apple
CVE-2023-42853P4MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42853 [MEDIUM] CVE-2023-42853: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42853
Component: PackageKit
Impact: An app may be able to access user-sensitive data
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43326P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43326 [MEDIUM] CVE-2025-43326: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43326
Component: GPU Drivers
Impact: An app may be able to access sensitive user data
Description: An out-of-bounds read was addressed with improved bounds checking.
apple