Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 47 of 48
CVE-2024-23245P4LOWCVSS 3.3v14.42024-03-07
CVE-2024-23245 [LOW] CVE-2024-23245: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23245
Component: Shortcuts
Impact: Third-party shortcuts may use a legacy action from Automator to send events to apps without user consent
Description: This issue was addressed by adding an additional prompt for user consent.
apple
CVE-2023-41065P4LOWCVSS 3.3v142023-09-26
CVE-2023-41065 [LOW] CVE-2023-41065: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-41065
Component: BOM
Impact: Processing a file may lead to a denial-of-service or potentially disclose memory contents
Description: The issue was addressed with improved bounds checks.
apple
CVE-2024-40795P4LOWCVSS 3.3v14.62024-07-29
CVE-2024-40795 [LOW] CVE-2024-40795: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40795
Component: Family Sharing
Impact: An app may be able to read sensitive location information
Description: This issue was addressed with improved data protection.
apple
CVE-2024-23210P4LOWCVSS 3.3v14.32024-01-22
CVE-2024-23210 [LOW] CVE-2024-23210: macOS Sonoma 14.3
Apple Security Update: About the security content of macOS Sonoma 14.3
Product: macOS Sonoma
Version: 14.3
CVE: CVE-2024-23210
Component: Time Zone
Impact: An app may be able to view a user's phone number in system logs
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2023-35990P4LOWCVSS 3.3v142023-09-26
CVE-2023-35990 [LOW] CVE-2023-35990: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-35990
Component: Safari
Impact: An app may be able to identify what other apps a user has installed
Description: The issue was addressed with improved checks.
apple
CVE-2023-42857P4LOWCVSS 3.3v14.12023-10-25
CVE-2023-42857 [LOW] CVE-2023-42857: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42857
Component: Contacts
Impact: An app may be able to access sensitive user data
Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2024-23227P4LOWCVSS 3.3v14.42024-03-07
CVE-2024-23227 [LOW] CVE-2024-23227: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23227
Component: Airport
Impact: An app may be able to read sensitive location information
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-40791P4LOWCVSS 3.3v14.72024-09-16
CVE-2024-40791 [LOW] CVE-2024-40791: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-40791
Component: Mail Accounts
Impact: An app may be able to access information about a user's contacts
Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2024-44222P4LOWCVSS 3.3v14.7.12024-10-28
CVE-2024-44222 [LOW] CVE-2024-44222: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44222
Component: Maps
Impact: An app may be able to read sensitive location information
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-40832P4LOWCVSS 3.3v14.62024-07-29
CVE-2024-40832 [LOW] CVE-2024-40832: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40832
Component: Messages
Impact: An app may be able to view a contact's phone number in system logs
Description: The issue was addressed with improved checks.
apple
CVE-2023-29497P4LOWCVSS 3.3v142023-09-26
CVE-2023-29497 [LOW] CVE-2023-29497: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-29497
Component: Calendar
Impact: An app may be able to access calendar data saved to a temporary directory
Description: A privacy issue was addressed with improved handling of temporary files.
apple
CVE-2025-24100P4LOWCVSS 3.3v14.7.32025-01-27
CVE-2025-24100 [LOW] CVE-2025-24100: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24100
Component: AppleMobileFileIntegrity
Impact: An app may be able to access information about a user's contacts
Description: A logic issue was addressed with improved restrictions.
apple
CVE-2024-44172P4LOWCVSS 3.3v14.7.32025-01-27
CVE-2024-44172 [LOW] CVE-2024-44172: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2024-44172
Component: Contacts
Impact: An app may be able to access contacts
Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2025-43255P4LOWCVSS 3.3v14.7.72025-07-29
CVE-2025-43255 [LOW] CVE-2025-43255: macOS Sonoma 14.7.7
Apple Security Update: About the security content of macOS Sonoma 14.7.7
Product: macOS Sonoma
Version: 14.7.7
CVE: CVE-2025-43255
Component: GPU Drivers
Impact: An app may be able to cause unexpected system termination
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2023-42949P4LOWCVSS 3.3v142023-09-26
CVE-2023-42949 [LOW] CVE-2023-42949: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-42949
Component: Photos
Impact: An app may be able to access edited photos saved to a temporary directory
Description: This issue was addressed with improved data protection.
apple
CVE-2024-27837P4LOWCVSS 3.3v14.52024-05-13
CVE-2024-27837 [LOW] CVE-2024-27837: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-27837
Component: AppleMobileFileIntegrity
Impact: A local attacker may gain access to Keychain items
Description: A downgrade issue was addressed with additional code-signing restrictions.
apple
CVE-2025-43236P4LOWCVSS 3.3v14.7.72025-07-29
CVE-2025-43236 [LOW] CVE-2025-43236: macOS Sonoma 14.7.7
Apple Security Update: About the security content of macOS Sonoma 14.7.7
Product: macOS Sonoma
Version: 14.7.7
CVE: CVE-2025-43236
Component: Power Management
Impact: An attacker may be able to cause unexpected app termination
Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2023-42948P4LOWCVSS 3.3v142023-09-26
CVE-2023-42948 [LOW] CVE-2023-42948: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-42948
Component: System Settings
Impact: A Wi-Fi password may not be deleted when activating a Mac in macOS Recovery
Description: This issue was addressed through improved state management.
apple
CVE-2023-42957P4LOWCVSS 3.3v142023-09-26
CVE-2023-42957 [LOW] CVE-2023-42957: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-42957
Component: Maps
Impact: An app may be able to read sensitive location information
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2023-42925P4LOWCVSS 3.3v142023-09-26
CVE-2023-42925 [LOW] CVE-2023-42925: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-42925
Component: AppSandbox
Impact: An app may be able to access Notes attachments
Description: The issue was addressed with improved restriction of data container access.
apple