Apple Macos Tahoe vulnerabilities
322 known vulnerabilities affecting apple/macos_tahoe.
Total CVEs
322
CISA KEV
5
actively exploited
Public exploits
5
Exploited in wild
11
Severity breakdown
CRITICAL10HIGH82MEDIUM202LOW28
Vulnerabilities
Page 1 of 17
CVE-2025-14174P1HIGHCVSS 8.8KEVPoCv26.22025-12-12
CVE-2025-14174 [HIGH] CVE-2025-14174: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-14174
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in res
apple
CVE-2025-43529P1HIGHCVSS 8.8KEVPoCv26.22025-12-12
CVE-2025-43529 [HIGH] CVE-2025-43529: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-43529
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in res
apple
CVE-2026-20700P1HIGHCVSS 7.8KEVPoCv26.32026-02-11
CVE-2026-20700 [HIGH] CVE-2026-20700: macOS Tahoe 26.3
Apple Security Update: About the security content of macOS Tahoe 26.3
Product: macOS Tahoe
Version: 26.3
CVE: CVE-2026-20700
Component: CoreServices
Impact: An app may be able to access sensitive user data
Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
apple
CVE-2025-43510P1HIGHCVSS 7.8KEVv26.12025-11-03
CVE-2025-43510 [HIGH] CVE-2025-43510: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43510
Component: Kernel
Impact: A malicious application may cause unexpected changes in memory shared between processes
Description: A memory corruption issue was addressed with improved lock state checking.
apple
CVE-2025-43520P1MEDIUMCVSS 5.5KEVv26.12025-11-03
CVE-2025-43520 [MEDIUM] CVE-2025-43520: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43520
Component: Kernel
Impact: A malicious application may be able to cause unexpected system termination or write kernel memory
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2025-46289P2MEDIUMCVSS 5.5Exploitedv26.22025-12-12
CVE-2025-46289 [MEDIUM] CVE-2025-46289: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-46289
Component: AppSandbox
Impact: An app may be able to access protected user data
Description: A logic issue was addressed with improved file handling.
apple
CVE-2025-43512P2HIGHCVSS 7.8Exploitedv26.22025-12-12
CVE-2025-43512 [HIGH] CVE-2025-43512: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-43512
Component: Kernel
Impact: An app may be able to elevate privileges
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43542P2HIGHCVSS 7.5Exploitedv26.22025-12-12
CVE-2025-43542 [HIGH] CVE-2025-43542: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-43542
Component: FaceTime
Impact: Password fields may be unintentionally revealed when remotely controlling a device over FaceTime
Description: This issue was addressed with improved state management.
apple
CVE-2025-43482P2MEDIUMCVSS 5.5Exploitedv26.22025-12-12
CVE-2025-43482 [MEDIUM] CVE-2025-43482: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-43482
Component: Audio
Impact: An app may be able to cause a denial-of-service
Description: The issue was addressed with improved input validation.
apple
CVE-2025-43517P2LOWCVSS 3.3Exploitedv26.22025-12-12
CVE-2025-43517 [LOW] CVE-2025-43517: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-43517
Component: Call History
Impact: An app may be able to access protected user data
Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2025-43532P2LOWCVSS 2.8Exploitedv26.22025-12-12
CVE-2025-43532 [LOW] CVE-2025-43532: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-43532
Component: Foundation
Impact: Processing malicious data may lead to unexpected app termination
Description: A memory corruption issue was addressed with improved bounds checking.
apple
CVE-2025-6965P2HIGHCVSS 7.2PoCv262025-09-15
CVE-2025-6965 [HIGH] CVE-2025-6965: macOS Tahoe 26
Apple Security Update: About the security content of macOS Tahoe 26
Product: macOS Tahoe
Version: 26
CVE: CVE-2025-6965
Component: CVE-2025-6965
apple
CVE-2025-32462P2LOWCVSS 2.8PoCv26.12025-11-03
CVE-2025-32462 [LOW] CVE-2025-32462: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-32462
Component: CVE-2025-32462
Impact: An app may be able to access user-sensitive data
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-43539P3HIGHCVSS 8.8v26.22025-12-12
CVE-2025-43539 [HIGH] CVE-2025-43539: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-43539
Component: AppleJPEG
Impact: Processing a file may lead to memory corruption
Description: The issue was addressed with improved bounds checks.
apple
CVE-2024-27280P3CRITICALCVSS 9.8v262025-09-15
CVE-2024-27280 [CRITICAL] CVE-2024-27280: macOS Tahoe 26
Apple Security Update: About the security content of macOS Tahoe 26
Product: macOS Tahoe
Version: 26
CVE: CVE-2024-27280
Component: CVE-2024-27280
apple
CVE-2025-43433P3HIGHCVSS 8.8v26.12025-11-03
CVE-2025-43433 [HIGH] CVE-2025-43433: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43433
Component: WebKit
Impact: Processing maliciously crafted web content may lead to memory corruption
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43343P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-43343 [CRITICAL] CVE-2025-43343: macOS Tahoe 26
Apple Security Update: About the security content of macOS Tahoe 26
Product: macOS Tahoe
Version: 26
CVE: CVE-2025-43343
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected process crash
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43428P3CRITICALCVSS 9.8v26.22025-12-12
CVE-2025-43428 [CRITICAL] CVE-2025-43428: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-43428
Component: Photos
Impact: Photos in the Hidden Photos Album may be viewed without authentication
Description: A configuration issue was addressed with additional restrictions.
apple
CVE-2025-43431P3HIGHCVSS 8.8v26.12025-11-03
CVE-2025-43431 [HIGH] CVE-2025-43431: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43431
Component: WebKit
Impact: Processing maliciously crafted web content may lead to memory corruption
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43419P3HIGHCVSS 8.8v262025-09-15
CVE-2025-43419 [HIGH] CVE-2025-43419: macOS Tahoe 26
Apple Security Update: About the security content of macOS Tahoe 26
Product: macOS Tahoe
Version: 26
CVE: CVE-2025-43419
Component: WebKit
Impact: Processing maliciously crafted web content may lead to memory corruption
Description: The issue was addressed with improved memory handling.
apple
1 / 17Next →