Apple Macos Tahoe vulnerabilities
322 known vulnerabilities affecting apple/macos_tahoe.
Total CVEs
322
CISA KEV
5
actively exploited
Public exploits
5
Exploited in wild
11
Severity breakdown
CRITICAL10HIGH82MEDIUM202LOW28
Vulnerabilities
Page 4 of 17
CVE-2026-20611P3HIGHCVSS 7.8v26.32026-02-11
CVE-2026-20611 [HIGH] CVE-2026-20611: macOS Tahoe 26.3
Apple Security Update: About the security content of macOS Tahoe 26.3
Product: macOS Tahoe
Version: 26.3
CVE: CVE-2026-20611
Component: CoreAudio
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2025-46291P3HIGHCVSS 7.8v26.22025-12-12
CVE-2025-46291 [HIGH] CVE-2025-46291: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-46291
Component: LaunchServices
Impact: An app may bypass Gatekeeper checks
Description: A logic issue was addressed with improved validation.
apple
CVE-2025-43402P3HIGHCVSS 7.8v26.12025-11-03
CVE-2025-43402 [HIGH] CVE-2025-43402: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43402
Component: WindowServer
Impact: An app may be able to cause unexpected system termination or corrupt process memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43361P3HIGHCVSS 7.8v262025-09-15
CVE-2025-43361 [HIGH] CVE-2025-43361: macOS Tahoe 26
Apple Security Update: About the security content of macOS Tahoe 26
Product: macOS Tahoe
Version: 26
CVE: CVE-2025-43361
Component: Audio
Impact: A malicious app may be able to read kernel memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-43401P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43401 [HIGH] CVE-2025-43401: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43401
Component: CoreAnimation
Impact: A remote attacker may be able to cause a denial-of-service
Description: A denial-of-service issue was addressed with improved validation.
apple
CVE-2025-43474P3HIGHCVSS 7.8v26.12025-11-03
CVE-2025-43474 [HIGH] CVE-2025-43474: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43474
Component: GPU Drivers
Impact: An app may be able to cause unexpected system termination or read kernel memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2025-43286P3HIGHCVSS 7.8v262025-09-15
CVE-2025-43286 [HIGH] CVE-2025-43286: macOS Tahoe 26
Apple Security Update: About the security content of macOS Tahoe 26
Product: macOS Tahoe
Version: 26
CVE: CVE-2025-43286
Component: SharedFileList
Impact: An app may be able to break out of its sandbox
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-43341P3HIGHCVSS 7.8v262025-09-15
CVE-2025-43341 [HIGH] CVE-2025-43341: macOS Tahoe 26
Apple Security Update: About the security content of macOS Tahoe 26
Product: macOS Tahoe
Version: 26
CVE: CVE-2025-43341
Component: Storage
Impact: An app may be able to gain root privileges
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-30465P3CRITICALCVSS 9.8v26.12025-11-03
CVE-2025-30465 [CRITICAL] CVE-2025-30465: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-30465
Component: Shortcuts
Impact: A shortcut may be able to access files that are normally inaccessible to the Shortcuts app
Description: A permissions issue was addressed with improved validation.
apple
CVE-2026-20652P3HIGHCVSS 7.5v26.32026-02-11
CVE-2026-20652 [HIGH] CVE-2026-20652: macOS Tahoe 26.3
Apple Security Update: About the security content of macOS Tahoe 26.3
Product: macOS Tahoe
Version: 26.3
CVE: CVE-2026-20652
Component: WebKit
Impact: A remote attacker may be able to cause a denial-of-service
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43436P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43436 [HIGH] CVE-2025-43436: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43436
Component: CoreServices
Impact: An app may be able to enumerate a user's installed apps
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2026-20650P3HIGHCVSS 7.5v26.32026-02-11
CVE-2026-20650 [HIGH] CVE-2026-20650: macOS Tahoe 26.3
Apple Security Update: About the security content of macOS Tahoe 26.3
Product: macOS Tahoe
Version: 26.3
CVE: CVE-2026-20650
Component: Bluetooth
Impact: An attacker in a privileged network position may be able to perform denial-of-service attack using crafted Bluetooth packets
Description: A denial-of-service issue was addressed with improved validation.
apple
CVE-2025-43373P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43373 [HIGH] CVE-2025-43373: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43373
Component: Wi-Fi
Impact: An app may be able to cause unexpected system termination or corrupt kernel memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43502P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43502 [HIGH] CVE-2025-43502: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43502
Component: Safari
Impact: An app may be able to bypass certain Privacy preferences
Description: A privacy issue was addressed by removing sensitive data.
apple
CVE-2026-20649P3HIGHCVSS 7.5v26.32026-02-11
CVE-2026-20649 [HIGH] CVE-2026-20649: macOS Tahoe 26.3
Apple Security Update: About the security content of macOS Tahoe 26.3
Product: macOS Tahoe
Version: 26.3
CVE: CVE-2026-20649
Component: Game Center
Impact: A user may be able to view sensitive user information
Description: A logging issue was addressed with improved data redaction.
apple
CVE-2024-49761P3MEDIUMCVSS 6.6v26.12025-11-03
CVE-2024-49761 [MEDIUM] CVE-2024-49761: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2024-49761
Component: CVE-2024-49761
apple
CVE-2025-43372P3HIGHCVSS 7.8v262025-09-15
CVE-2025-43372 [HIGH] CVE-2025-43372: macOS Tahoe 26
Apple Security Update: About the security content of macOS Tahoe 26
Product: macOS Tahoe
Version: 26
CVE: CVE-2025-43372
Component: CoreMedia
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: The issue was addressed with improved input validation.
apple
CVE-2025-31259P3HIGHCVSS 7.8v262025-09-15
CVE-2025-31259 [HIGH] CVE-2025-31259: macOS Tahoe 26
Apple Security Update: About the security content of macOS Tahoe 26
Product: macOS Tahoe
Version: 26
CVE: CVE-2025-31259
Component: Screenshots
Impact: An app may be able to capture a screenshot of an app entering or exiting full screen mode
Description: A privacy issue was addressed with improved checks.
apple
CVE-2025-43386P3HIGHCVSS 7.8v26.12025-11-03
CVE-2025-43386 [HIGH] CVE-2025-43386: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43386
Component: Model I/O
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2026-20620P3HIGHCVSS 7.7v26.32026-02-11
CVE-2026-20620 [HIGH] CVE-2026-20620: macOS Tahoe 26.3
Apple Security Update: About the security content of macOS Tahoe 26.3
Product: macOS Tahoe
Version: 26.3
CVE: CVE-2026-20620
Component: GPU Drivers
Impact: An attacker may be able to cause unexpected system termination or read kernel memory
Description: An out-of-bounds read issue was addressed with improved input validation.
apple