Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 41 of 48
CVE-2023-41079P4MEDIUMCVSS 5.5v142023-09-26
CVE-2023-41079 [MEDIUM] CVE-2023-41079: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-41079
Component: Shortcuts
Impact: An app may be able to bypass Privacy preferences
Description: The issue was addressed with improved permissions logic.
apple
CVE-2023-41980P4MEDIUMCVSS 5.5v142023-09-26
CVE-2023-41980 [MEDIUM] CVE-2023-41980: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-41980
Component: FileProvider
Impact: An app may be able to bypass Privacy preferences
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-24139P4MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24139 [MEDIUM] CVE-2025-24139: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24139
Component: Security
Impact: An app may be able to access protected user data
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2023-41986P4MEDIUMCVSS 5.5v142023-09-26
CVE-2023-41986 [MEDIUM] CVE-2023-41986: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-41986
Component: Music
Impact: An app may be able to modify protected parts of the file system
Description: The issue was addressed with improved checks.
apple
CVE-2024-23285P4MEDIUMCVSS 5.5v14.42024-03-07
CVE-2024-23285 [MEDIUM] CVE-2024-23285: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23285
Component: Music
Impact: An app may be able to create symlinks to protected regions of the disk
Description: This issue was addressed with improved handling of symlinks.
apple
CVE-2023-23495P4MEDIUMCVSS 5.5v142023-09-26
CVE-2023-23495 [MEDIUM] CVE-2023-23495: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-23495
Component: Graphics Drivers
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A race condition was addressed with improved state handling.
apple
CVE-2023-40450P4MEDIUMCVSS 5.5v142023-09-26
CVE-2023-40450 [MEDIUM] CVE-2023-40450: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40450
Component: System Preferences
Impact: An app may bypass Gatekeeper checks
Description: The issue was addressed with improved checks.
apple
CVE-2023-40430P4MEDIUMCVSS 5.5v142023-09-26
CVE-2023-40430 [MEDIUM] CVE-2023-40430: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40430
Component: Sandbox
Impact: An app may be able to access removable volumes without user consent
Description: A logic issue was addressed with improved checks.
apple
CVE-2023-41994P4MEDIUMCVSS 5.5v142023-09-26
CVE-2023-41994 [MEDIUM] CVE-2023-41994: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-41994
Component: CoreMedia
Impact: A camera extension may be able to access the camera view from apps other than the app for which it was granted permission
Description: A logic issue was addressed with improved checks
apple
CVE-2025-24111P4MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24111 [MEDIUM] CVE-2025-24111: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24111
Component: Display
Impact: An app may be able to cause unexpected system termination
Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2025-31196P4MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-31196 [MEDIUM] CVE-2025-31196: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31196
Component: CoreGraphics
Impact: Processing a maliciously crafted file may lead to a denial-of-service or potentially disclose memory contents
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2025-31245P4MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-31245 [MEDIUM] CVE-2025-31245: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31245
Component: Pro Res
Impact: An app may be able to cause unexpected system termination
Description: The issue was addressed with improved checks.
apple
CVE-2025-43398P4MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43398 [MEDIUM] CVE-2025-43398: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43398
Component: Kernel
Impact: An app may be able to cause unexpected system termination
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-40810P4MEDIUMCVSS 5.5v14.62024-07-29
CVE-2024-40810 [MEDIUM] CVE-2024-40810: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40810
Component: IOMobileFrameBuffer
Impact: An app may be able to cause a coprocessor crash
Description: An out-of-bounds write issue was addressed with improved input validation.
apple
CVE-2025-43397P4MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43397 [MEDIUM] CVE-2025-43397: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43397
Component: SoftwareUpdate
Impact: An app may be able to cause a denial-of-service
Description: A permissions issue was addressed by removing the vulnerable code.
apple
CVE-2025-43478P4MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43478 [MEDIUM] CVE-2025-43478: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43478
Component: ASP TCP
Impact: An app may be able to cause unexpected system termination
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2025-43284P4MEDIUMCVSS 5.5v14.7.72025-07-29
CVE-2025-43284 [MEDIUM] CVE-2025-43284: macOS Sonoma 14.7.7
Apple Security Update: About the security content of macOS Sonoma 14.7.7
Product: macOS Sonoma
Version: 14.7.7
CVE: CVE-2025-43284
Component: GPU Drivers
Impact: An app may be able to cause unexpected system termination
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2026-20621P4MEDIUMCVSS 5.5v14.8.42026-02-11
CVE-2026-20621 [MEDIUM] CVE-2026-20621: macOS Sonoma 14.8.4
Apple Security Update: About the security content of macOS Sonoma 14.8.4
Product: macOS Sonoma
Version: 14.8.4
CVE: CVE-2026-20621
Component: Wi-Fi
Impact: An app may be able to cause unexpected system termination or corrupt kernel memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43311P4MEDIUMCVSS 5.1v14.82025-09-15
CVE-2025-43311 [MEDIUM] CVE-2025-43311: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43311
Component: Touch Bar
Impact: An app may be able to access protected user data
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-24099P4MEDIUMCVSS 5.1v14.7.32025-01-27
CVE-2025-24099 [MEDIUM] CVE-2025-24099: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24099
Component: PackageKit
Impact: A local attacker may be able to elevate their privileges
Description: The issue was addressed with improved checks.
apple