cbcvebase.

Apple Macos Sonoma vulnerabilities

960 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 46 of 48
CVE-2025-43197P4MEDIUMCVSS 4.0v14.7.72025-07-29
CVE-2025-43197 [MEDIUM] CVE-2025-43197: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43197 Component: Single Sign-On Impact: An app may be able to access sensitive user data Description: This issue was addressed with additional entitlement checks.
apple
CVE-2026-20605P4MEDIUMCVSS 4.6v14.8.42026-02-11
CVE-2026-20605 [MEDIUM] CVE-2026-20605: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2026-20605 Component: Voice Control Impact: An app may be able to crash a system process Description: The issue was addressed with improved memory handling.
apple
CVE-2024-23257P4LOWCVSS 3.3v14.42024-03-07
CVE-2024-23257 [LOW] CVE-2024-23257: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23257 Component: ImageIO Impact: Processing an image may result in disclosure of process memory Description: The issue was addressed with improved memory handling.
apple
CVE-2024-40778P4LOWCVSS 3.3v14.62024-07-29
CVE-2024-40778 [LOW] CVE-2024-40778: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40778 Component: Photos Storage Impact: Photos in the Hidden Photos Album may be viewed without authentication Description: An authentication issue was addressed with improved state management.
apple
CVE-2026-20671P4LOWCVSS 3.1v14.8.42026-02-11
CVE-2026-20671 [LOW] CVE-2026-20671: macOS Sonoma 14.8.4 Apple Security Update: About the security content of macOS Sonoma 14.8.4 Product: macOS Sonoma Version: 14.8.4 CVE: CVE-2026-20671 Component: Kernel Impact: An attacker in a privileged network position may be able to intercept network traffic Description: A logic issue was addressed with improved checks.
apple
CVE-2024-23291P4LOWCVSS 3.3v14.42024-03-07
CVE-2024-23291 [LOW] CVE-2024-23291: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23291 Component: CVE-2024-23291
apple
CVE-2024-23217P4LOWCVSS 3.3v14.32024-01-22
CVE-2024-23217 [LOW] CVE-2024-23217: macOS Sonoma 14.3 Apple Security Update: About the security content of macOS Sonoma 14.3 Product: macOS Sonoma Version: 14.3 CVE: CVE-2024-23217 Component: Shortcuts Impact: An app may be able to bypass certain Privacy preferences Description: A privacy issue was addressed with improved handling of temporary files.
apple
CVE-2024-23211P4LOWCVSS 3.3v14.32024-01-22
CVE-2024-23211 [LOW] CVE-2024-23211: macOS Sonoma 14.3 Apple Security Update: About the security content of macOS Sonoma 14.3 Product: macOS Sonoma Version: 14.3 CVE: CVE-2024-23211 Component: Safari Impact: A user's private browsing activity may be visible in Settings Description: A privacy issue was addressed with improved handling of user preferences.
apple
CVE-2023-40395P4LOWCVSS 3.3v142023-09-26
CVE-2023-40395 [LOW] CVE-2023-40395: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-40395 Component: Game Center Impact: An app may be able to access contacts Description: The issue was addressed with improved handling of caches.
apple
CVE-2024-40798P4LOWCVSS 3.3v14.62024-07-29
CVE-2024-40798 [LOW] CVE-2024-40798: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40798 Component: Security Impact: An app may be able to read Safari's browsing history Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2023-40427P4LOWCVSS 3.3v142023-09-26
CVE-2023-40427 [LOW] CVE-2023-40427: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-40427 Component: Maps Impact: An app may be able to read sensitive location information Description: The issue was addressed with improved handling of caches.
apple
CVE-2024-23289P4LOWCVSS 3.3v14.42024-03-07
CVE-2024-23289 [LOW] CVE-2024-23289: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23289 Component: Siri Impact: A person with physical access to a device may be able to use Siri to access private calendar information Description: A lock screen issue was addressed with improved state management.
apple
CVE-2024-27799P4LOWCVSS 3.3v14.52024-05-13
CVE-2024-27799 [LOW] CVE-2024-27799: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27799 Component: IOHIDFamily Impact: An unprivileged app may be able to log keystrokes in other apps including those using secure input mode Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-24121P4LOWCVSS 3.3v14.7.32025-01-27
CVE-2025-24121 [LOW] CVE-2025-24121: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24121 Component: AppleMobileFileIntegrity Impact: An app may be able to modify protected parts of the file system Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43301P4LOWCVSS 3.3v14.82025-09-15
CVE-2025-43301 [LOW] CVE-2025-43301: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-43301 Component: Notification Center Impact: An app may be able to access contact info related to notifications in Notification Center Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2023-38612P4LOWCVSS 3.3v142023-09-26
CVE-2023-38612 [LOW] CVE-2023-38612: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-38612 Component: Ask to Buy Impact: An app may be able to access protected user data Description: The issue was addressed with improved checks.
apple
CVE-2025-43395P4LOWCVSS 3.3v14.8.22025-11-03
CVE-2025-43395 [LOW] CVE-2025-43395: macOS Sonoma 14.8.2 Apple Security Update: About the security content of macOS Sonoma 14.8.2 Product: macOS Sonoma Version: 14.8.2 CVE: CVE-2025-43395 Component: CloudKit Impact: An app may be able to break out of its sandbox Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2023-42969P4LOWCVSS 3.3v142023-09-26
CVE-2023-42969 [LOW] CVE-2023-42969: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-42969 Impact: An app may be able to break out of its sandbox Description: The issue was addressed with improved handling of caches.
apple
CVE-2025-43516P4LOWCVSS 3.3v14.8.32025-12-12
CVE-2025-43516 [LOW] CVE-2025-43516: macOS Sonoma 14.8.3 Apple Security Update: About the security content of macOS Sonoma 14.8.3 Product: macOS Sonoma Version: 14.8.3 CVE: CVE-2025-43516 Component: Voice Control Impact: A user with Voice Control enabled may be able to transcribe another user's activity Description: A session management issue was addressed with improved checks.
apple
CVE-2025-43349P4LOWCVSS 2.8v14.82025-09-15
CVE-2025-43349 [LOW] CVE-2025-43349: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-43349 Component: CoreAudio Impact: Processing a maliciously crafted video file may lead to unexpected app termination Description: An out-of-bounds write issue was addressed with improved input validation.
apple
Apple Macos Sonoma vulnerabilities | cvebase