Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 46 of 48
CVE-2025-43197P4MEDIUMCVSS 4.0v14.7.72025-07-29
CVE-2025-43197 [MEDIUM] CVE-2025-43197: macOS Sonoma 14.7.7
Apple Security Update: About the security content of macOS Sonoma 14.7.7
Product: macOS Sonoma
Version: 14.7.7
CVE: CVE-2025-43197
Component: Single Sign-On
Impact: An app may be able to access sensitive user data
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2026-20605P4MEDIUMCVSS 4.6v14.8.42026-02-11
CVE-2026-20605 [MEDIUM] CVE-2026-20605: macOS Sonoma 14.8.4
Apple Security Update: About the security content of macOS Sonoma 14.8.4
Product: macOS Sonoma
Version: 14.8.4
CVE: CVE-2026-20605
Component: Voice Control
Impact: An app may be able to crash a system process
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-23257P4LOWCVSS 3.3v14.42024-03-07
CVE-2024-23257 [LOW] CVE-2024-23257: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23257
Component: ImageIO
Impact: Processing an image may result in disclosure of process memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-40778P4LOWCVSS 3.3v14.62024-07-29
CVE-2024-40778 [LOW] CVE-2024-40778: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40778
Component: Photos Storage
Impact: Photos in the Hidden Photos Album may be viewed without authentication
Description: An authentication issue was addressed with improved state management.
apple
CVE-2026-20671P4LOWCVSS 3.1v14.8.42026-02-11
CVE-2026-20671 [LOW] CVE-2026-20671: macOS Sonoma 14.8.4
Apple Security Update: About the security content of macOS Sonoma 14.8.4
Product: macOS Sonoma
Version: 14.8.4
CVE: CVE-2026-20671
Component: Kernel
Impact: An attacker in a privileged network position may be able to intercept network traffic
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-23291P4LOWCVSS 3.3v14.42024-03-07
CVE-2024-23291 [LOW] CVE-2024-23291: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23291
Component: CVE-2024-23291
apple
CVE-2024-23217P4LOWCVSS 3.3v14.32024-01-22
CVE-2024-23217 [LOW] CVE-2024-23217: macOS Sonoma 14.3
Apple Security Update: About the security content of macOS Sonoma 14.3
Product: macOS Sonoma
Version: 14.3
CVE: CVE-2024-23217
Component: Shortcuts
Impact: An app may be able to bypass certain Privacy preferences
Description: A privacy issue was addressed with improved handling of temporary files.
apple
CVE-2024-23211P4LOWCVSS 3.3v14.32024-01-22
CVE-2024-23211 [LOW] CVE-2024-23211: macOS Sonoma 14.3
Apple Security Update: About the security content of macOS Sonoma 14.3
Product: macOS Sonoma
Version: 14.3
CVE: CVE-2024-23211
Component: Safari
Impact: A user's private browsing activity may be visible in Settings
Description: A privacy issue was addressed with improved handling of user preferences.
apple
CVE-2023-40395P4LOWCVSS 3.3v142023-09-26
CVE-2023-40395 [LOW] CVE-2023-40395: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40395
Component: Game Center
Impact: An app may be able to access contacts
Description: The issue was addressed with improved handling of caches.
apple
CVE-2024-40798P4LOWCVSS 3.3v14.62024-07-29
CVE-2024-40798 [LOW] CVE-2024-40798: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40798
Component: Security
Impact: An app may be able to read Safari's browsing history
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2023-40427P4LOWCVSS 3.3v142023-09-26
CVE-2023-40427 [LOW] CVE-2023-40427: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40427
Component: Maps
Impact: An app may be able to read sensitive location information
Description: The issue was addressed with improved handling of caches.
apple
CVE-2024-23289P4LOWCVSS 3.3v14.42024-03-07
CVE-2024-23289 [LOW] CVE-2024-23289: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23289
Component: Siri
Impact: A person with physical access to a device may be able to use Siri to access private calendar information
Description: A lock screen issue was addressed with improved state management.
apple
CVE-2024-27799P4LOWCVSS 3.3v14.52024-05-13
CVE-2024-27799 [LOW] CVE-2024-27799: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-27799
Component: IOHIDFamily
Impact: An unprivileged app may be able to log keystrokes in other apps including those using secure input mode
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-24121P4LOWCVSS 3.3v14.7.32025-01-27
CVE-2025-24121 [LOW] CVE-2025-24121: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24121
Component: AppleMobileFileIntegrity
Impact: An app may be able to modify protected parts of the file system
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43301P4LOWCVSS 3.3v14.82025-09-15
CVE-2025-43301 [LOW] CVE-2025-43301: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43301
Component: Notification Center
Impact: An app may be able to access contact info related to notifications in Notification Center
Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2023-38612P4LOWCVSS 3.3v142023-09-26
CVE-2023-38612 [LOW] CVE-2023-38612: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-38612
Component: Ask to Buy
Impact: An app may be able to access protected user data
Description: The issue was addressed with improved checks.
apple
CVE-2025-43395P4LOWCVSS 3.3v14.8.22025-11-03
CVE-2025-43395 [LOW] CVE-2025-43395: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43395
Component: CloudKit
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2023-42969P4LOWCVSS 3.3v142023-09-26
CVE-2023-42969 [LOW] CVE-2023-42969: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-42969
Impact: An app may be able to break out of its sandbox
Description: The issue was addressed with improved handling of caches.
apple
CVE-2025-43516P4LOWCVSS 3.3v14.8.32025-12-12
CVE-2025-43516 [LOW] CVE-2025-43516: macOS Sonoma 14.8.3
Apple Security Update: About the security content of macOS Sonoma 14.8.3
Product: macOS Sonoma
Version: 14.8.3
CVE: CVE-2025-43516
Component: Voice Control
Impact: A user with Voice Control enabled may be able to transcribe another user's activity
Description: A session management issue was addressed with improved checks.
apple
CVE-2025-43349P4LOWCVSS 2.8v14.82025-09-15
CVE-2025-43349 [LOW] CVE-2025-43349: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43349
Component: CoreAudio
Impact: Processing a maliciously crafted video file may lead to unexpected app termination
Description: An out-of-bounds write issue was addressed with improved input validation.
apple