cbcvebase.

Apple Macos Sonoma vulnerabilities

960 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 47 of 48
CVE-2024-23245P4LOWCVSS 3.3v14.42024-03-07
CVE-2024-23245 [LOW] CVE-2024-23245: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23245 Component: Shortcuts Impact: Third-party shortcuts may use a legacy action from Automator to send events to apps without user consent Description: This issue was addressed by adding an additional prompt for user consent.
apple
CVE-2023-41065P4LOWCVSS 3.3v142023-09-26
CVE-2023-41065 [LOW] CVE-2023-41065: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-41065 Component: BOM Impact: Processing a file may lead to a denial-of-service or potentially disclose memory contents Description: The issue was addressed with improved bounds checks.
apple
CVE-2024-40795P4LOWCVSS 3.3v14.62024-07-29
CVE-2024-40795 [LOW] CVE-2024-40795: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40795 Component: Family Sharing Impact: An app may be able to read sensitive location information Description: This issue was addressed with improved data protection.
apple
CVE-2024-23210P4LOWCVSS 3.3v14.32024-01-22
CVE-2024-23210 [LOW] CVE-2024-23210: macOS Sonoma 14.3 Apple Security Update: About the security content of macOS Sonoma 14.3 Product: macOS Sonoma Version: 14.3 CVE: CVE-2024-23210 Component: Time Zone Impact: An app may be able to view a user's phone number in system logs Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2023-35990P4LOWCVSS 3.3v142023-09-26
CVE-2023-35990 [LOW] CVE-2023-35990: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-35990 Component: Safari Impact: An app may be able to identify what other apps a user has installed Description: The issue was addressed with improved checks.
apple
CVE-2023-42857P4LOWCVSS 3.3v14.12023-10-25
CVE-2023-42857 [LOW] CVE-2023-42857: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42857 Component: Contacts Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2024-23227P4LOWCVSS 3.3v14.42024-03-07
CVE-2024-23227 [LOW] CVE-2024-23227: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23227 Component: Airport Impact: An app may be able to read sensitive location information Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-40791P4LOWCVSS 3.3v14.72024-09-16
CVE-2024-40791 [LOW] CVE-2024-40791: macOS Sonoma 14.7 Apple Security Update: About the security content of macOS Sonoma 14.7 Product: macOS Sonoma Version: 14.7 CVE: CVE-2024-40791 Component: Mail Accounts Impact: An app may be able to access information about a user's contacts Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2024-44222P4LOWCVSS 3.3v14.7.12024-10-28
CVE-2024-44222 [LOW] CVE-2024-44222: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44222 Component: Maps Impact: An app may be able to read sensitive location information Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-40832P4LOWCVSS 3.3v14.62024-07-29
CVE-2024-40832 [LOW] CVE-2024-40832: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40832 Component: Messages Impact: An app may be able to view a contact's phone number in system logs Description: The issue was addressed with improved checks.
apple
CVE-2023-29497P4LOWCVSS 3.3v142023-09-26
CVE-2023-29497 [LOW] CVE-2023-29497: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-29497 Component: Calendar Impact: An app may be able to access calendar data saved to a temporary directory Description: A privacy issue was addressed with improved handling of temporary files.
apple
CVE-2025-24100P4LOWCVSS 3.3v14.7.32025-01-27
CVE-2025-24100 [LOW] CVE-2025-24100: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24100 Component: AppleMobileFileIntegrity Impact: An app may be able to access information about a user's contacts Description: A logic issue was addressed with improved restrictions.
apple
CVE-2024-44172P4LOWCVSS 3.3v14.7.32025-01-27
CVE-2024-44172 [LOW] CVE-2024-44172: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2024-44172 Component: Contacts Impact: An app may be able to access contacts Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2025-43255P4LOWCVSS 3.3v14.7.72025-07-29
CVE-2025-43255 [LOW] CVE-2025-43255: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43255 Component: GPU Drivers Impact: An app may be able to cause unexpected system termination Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2023-42949P4LOWCVSS 3.3v142023-09-26
CVE-2023-42949 [LOW] CVE-2023-42949: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-42949 Component: Photos Impact: An app may be able to access edited photos saved to a temporary directory Description: This issue was addressed with improved data protection.
apple
CVE-2024-27837P4LOWCVSS 3.3v14.52024-05-13
CVE-2024-27837 [LOW] CVE-2024-27837: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27837 Component: AppleMobileFileIntegrity Impact: A local attacker may gain access to Keychain items Description: A downgrade issue was addressed with additional code-signing restrictions.
apple
CVE-2025-43236P4LOWCVSS 3.3v14.7.72025-07-29
CVE-2025-43236 [LOW] CVE-2025-43236: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43236 Component: Power Management Impact: An attacker may be able to cause unexpected app termination Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2023-42948P4LOWCVSS 3.3v142023-09-26
CVE-2023-42948 [LOW] CVE-2023-42948: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-42948 Component: System Settings Impact: A Wi-Fi password may not be deleted when activating a Mac in macOS Recovery Description: This issue was addressed through improved state management.
apple
CVE-2023-42957P4LOWCVSS 3.3v142023-09-26
CVE-2023-42957 [LOW] CVE-2023-42957: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-42957 Component: Maps Impact: An app may be able to read sensitive location information Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2023-42925P4LOWCVSS 3.3v142023-09-26
CVE-2023-42925 [LOW] CVE-2023-42925: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-42925 Component: AppSandbox Impact: An app may be able to access Notes attachments Description: The issue was addressed with improved restriction of data container access.
apple
Apple Macos Sonoma vulnerabilities | cvebase