cbcvebase.

Apple Macos Sonoma vulnerabilities

960 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 37 of 48
CVE-2024-27804P4MEDIUMCVSS 5.5v14.52024-05-13
CVE-2024-27804 [MEDIUM] CVE-2024-27804: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27804 Component: AppleAVD Impact: An app may be able to cause unexpected system termination Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43533P4MEDIUMCVSS 5.7v14.8.42026-02-11
CVE-2025-43533 [MEDIUM] CVE-2025-43533: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2025-43533 Component: Multi-Touch Impact: A malicious HID device may cause an unexpected process crash Description: The issue was addressed with improved bounds checks.
apple
CVE-2025-31197P4MEDIUMCVSS 5.7v14.7.52025-03-31
CVE-2025-31197 [MEDIUM] CVE-2025-31197: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-31197 Component: AirPlay Impact: An attacker on the local network may cause an unexpected app termination Description: The issue was addressed with improved checks.
apple
CVE-2025-46301P4MEDIUMCVSS 5.7v14.8.42026-02-11
CVE-2025-46301 [MEDIUM] CVE-2025-46301: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2025-46301 Component: Multi-Touch Impact: A malicious HID device may cause an unexpected process crash Description: The issue was addressed with improved bounds checks.
apple
CVE-2025-46304P4MEDIUMCVSS 5.7v14.8.42026-02-11
CVE-2025-46304 [MEDIUM] CVE-2025-46304: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2025-46304 Component: Multi-Touch Impact: A malicious HID device may cause an unexpected process crash Description: The issue was addressed with improved bounds checks.
apple
CVE-2025-46302P4MEDIUMCVSS 5.7v14.8.42026-02-11
CVE-2025-46302 [MEDIUM] CVE-2025-46302: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2025-46302 Component: Multi-Touch Impact: A malicious HID device may cause an unexpected process crash Description: The issue was addressed with improved bounds checks.
apple
CVE-2025-46305P4MEDIUMCVSS 5.7v14.8.42026-02-11
CVE-2025-46305 [MEDIUM] CVE-2025-46305: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2025-46305 Component: Multi-Touch Impact: A malicious HID device may cause an unexpected process crash Description: The issue was addressed with improved bounds checks.
apple
CVE-2025-46303P4MEDIUMCVSS 5.7v14.8.42026-02-11
CVE-2025-46303 [MEDIUM] CVE-2025-46303: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2025-46303 Component: Multi-Touch Impact: A malicious HID device may cause an unexpected process crash Description: The issue was addressed with improved bounds checks.
apple
CVE-2025-46300P4MEDIUMCVSS 5.7v14.8.42026-02-11
CVE-2025-46300 [MEDIUM] CVE-2025-46300: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2025-46300 Component: Multi-Touch Impact: A malicious HID device may cause an unexpected process crash Description: The issue was addressed with improved bounds checks.
apple
CVE-2023-42883P4MEDIUMCVSS 5.5v14.22023-12-11
CVE-2023-42883 [MEDIUM] CVE-2023-42883: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42883 Component: WebKit Impact: Processing an image may lead to a denial-of-service Description: The issue was addressed with improved memory handling.
apple
CVE-2024-44284P4MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44284 [MEDIUM] CVE-2024-44284: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44284 Component: Shortcuts Impact: A malicious app may use shortcuts to access restricted files Description: A logic issue was addressed with improved checks.
apple
CVE-2023-42860P4MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42860 [MEDIUM] CVE-2023-42860: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42860 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2024-27841P4MEDIUMCVSS 5.5v14.52024-05-13
CVE-2024-27841 [MEDIUM] CVE-2024-27841: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27841 Component: AVEVideoEncoder Impact: An app may be able to disclose kernel memory Description: The issue was addressed with improved memory handling.
apple
CVE-2024-44267P4MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44267 [MEDIUM] CVE-2024-44267: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44267 Component: PackageKit Impact: A malicious application may be able to modify protected parts of the file system Description: The issue was addressed with improved checks.
apple
CVE-2024-23241P4MEDIUMCVSS 5.5v14.42024-03-07
CVE-2024-23241 [MEDIUM] CVE-2024-23241: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23241 Component: CVE-2024-23241
apple
CVE-2025-24163P4MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24163 [MEDIUM] CVE-2025-24163: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24163 Component: CoreAudio Impact: Parsing a file may lead to an unexpected app termination Description: The issue was addressed with improved checks.
apple
CVE-2023-42889P4MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42889 [MEDIUM] CVE-2023-42889: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42889 Component: PackageKit Impact: An app may be able to bypass certain Privacy preferences Description: The issue was addressed with improved checks.
apple
CVE-2024-40800P4MEDIUMCVSS 5.5v14.62024-07-29
CVE-2024-40800 [MEDIUM] CVE-2024-40800: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40800 Component: Restore Framework Impact: An app may be able to modify protected parts of the file system Description: An input validation issue was addressed with improved input validation.
apple
CVE-2023-38596P4MEDIUMCVSS 5.5v142023-09-26
CVE-2023-38596 [MEDIUM] CVE-2023-38596: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-38596 Component: CFNetwork Impact: An app may fail to enforce App Transport Security Description: The issue was addressed with improved handling of protocols.
apple
CVE-2024-40806P4MEDIUMCVSS 5.5v14.62024-07-29
CVE-2024-40806 [MEDIUM] CVE-2024-40806: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40806 Component: ImageIO Impact: Processing a maliciously crafted file may lead to unexpected app termination Description: An out-of-bounds read issue was addressed with improved input validation.
apple
Apple Macos Sonoma vulnerabilities | cvebase