Apple Macos Ventura vulnerabilities

980 known vulnerabilities affecting apple/macos_ventura.

Total CVEs
980
CISA KEV
24
actively exploited
Public exploits
4
Exploited in wild
20
Severity breakdown
CRITICAL75HIGH370MEDIUM484LOW48UNKNOWN3

Vulnerabilities

Page 16 of 49
CVE-2024-40787HIGHCVSS 7.1v13.6.82024-07-29
CVE-2024-40787 [HIGH] CVE-2024-40787: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40787 Component: Shortcuts Impact: A shortcut may be able to bypass Internet permission requirements Description: This issue was addressed by adding an additional prompt for user consent.
apple
CVE-2024-40812HIGHCVSS 7.8v13.6.82024-07-29
CVE-2024-40812 [HIGH] CVE-2024-40812: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40812 Component: Shortcuts Impact: A shortcut may be able to bypass Internet permission requirements Description: A logic issue was addressed with improved checks.
apple
CVE-2024-40828HIGHCVSS 7.8v13.6.82024-07-29
CVE-2024-40828 [HIGH] CVE-2024-40828: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40828 Component: StorageKit Impact: A malicious app may be able to gain root privileges Description: The issue was addressed with improved checks.
apple
CVE-2024-40781HIGHCVSS 7.8v13.6.82024-07-29
CVE-2024-40781 [HIGH] CVE-2024-40781: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40781 Component: PackageKit Impact: A local attacker may be able to elevate their privileges Description: The issue was addressed with improved checks.
apple
CVE-2024-23261HIGHCVSS 7.5v13.6.82024-07-29
CVE-2024-23261 [HIGH] CVE-2024-23261: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-23261 Component: Time Zone Impact: An attacker may be able to read information belonging to another user Description: A logic issue was addressed with improved state management.
apple
CVE-2024-40799HIGHCVSS 7.1v13.6.82024-07-29
CVE-2024-40799 [HIGH] CVE-2024-40799: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40799 Component: CoreGraphics Impact: Processing a maliciously crafted file may lead to unexpected app termination Description: An out-of-bounds read issue was addressed with improved input validation.
apple
CVE-2024-40803HIGHCVSS 7.5v13.6.82024-07-29
CVE-2024-40803 [HIGH] CVE-2024-40803: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40803 Component: Keychain Access Impact: An attacker may be able to cause unexpected app termination Description: A type confusion issue was addressed with improved checks.
apple
CVE-2024-6387HIGHCVSS 8.1PoCv13.6.82024-07-29
CVE-2024-6387 [HIGH] CVE-2024-6387: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-6387 Component: CVE-2024-6387
apple
CVE-2024-40815HIGHCVSS 7.5v13.6.82024-07-29
CVE-2024-40815 [HIGH] CVE-2024-40815: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40815 Component: DesktopServices Impact: An app may be able to overwrite arbitrary files Description: The issue was addressed with improved checks.
apple
CVE-2024-40802HIGHCVSS 7.8v13.6.82024-07-29
CVE-2024-40802 [HIGH] CVE-2024-40802: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40802 Component: PackageKit Impact: A local attacker may be able to elevate their privileges Description: The issue was addressed with improved checks.
apple
CVE-2023-52356HIGHCVSS 7.5v13.6.82024-07-29
CVE-2023-52356 [HIGH] CVE-2023-52356: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2023-52356 Component: CVE-2023-52356
apple
CVE-2024-40829MEDIUMCVSS 4.6v13.6.82024-07-29
CVE-2024-40829 [MEDIUM] CVE-2024-40829: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40829 Component: VoiceOver Impact: A user may be able to view restricted content from the lock screen Description: The issue was addressed with improved checks.
apple
CVE-2024-27877MEDIUMCVSS 6.1v13.6.82024-07-29
CVE-2024-27877 [MEDIUM] CVE-2024-27877: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-27877 Component: AppleVA Impact: Processing a maliciously crafted file may lead to a denial-of-service or potentially disclose memory contents Description: The issue was addressed with improved memory handling.
apple
CVE-2024-2379MEDIUMCVSS 6.3v13.6.82024-07-29
CVE-2024-2379 [MEDIUM] CVE-2024-2379: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-2379 Component: CVE-2024-2379
apple
CVE-2024-27882MEDIUMCVSS 4.4v13.6.82024-07-29
CVE-2024-27882 [MEDIUM] CVE-2024-27882: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-27882 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2024-40784MEDIUMCVSS 5.5v13.6.82024-07-29
CVE-2024-40784 [MEDIUM] CVE-2024-40784: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40784 Component: ImageIO Impact: Processing a maliciously crafted file may lead to unexpected app termination Description: An integer overflow was addressed with improved input validation.
apple
CVE-2024-40834MEDIUMCVSS 4.4v13.6.82024-07-29
CVE-2024-40834 [MEDIUM] CVE-2024-40834: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40834 Component: Shortcuts Impact: A shortcut may be able to bypass sensitive Shortcuts app settings Description: This issue was addressed by adding an additional prompt for user consent.
apple
CVE-2024-40793MEDIUMCVSS 5.5v13.6.82024-07-29
CVE-2024-40793 [MEDIUM] CVE-2024-40793: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40793 Component: Shortcuts Impact: An app may be able to access user-sensitive data Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2024-40817MEDIUMCVSS 6.1v13.6.82024-07-29
CVE-2024-40817 [MEDIUM] CVE-2024-40817: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40817 Component: Safari Impact: Visiting a website that frames malicious content may lead to UI spoofing Description: The issue was addressed with improved UI handling.
apple
CVE-2024-40807MEDIUMCVSS 5.5v13.6.82024-07-29
CVE-2024-40807 [MEDIUM] CVE-2024-40807: macOS Ventura 13.6.8 Apple Security Update: About the security content of macOS Ventura 13.6.8 Product: macOS Ventura Version: 13.6.8 CVE: CVE-2024-40807 Component: Shortcuts Impact: A shortcut may be able to use sensitive data with certain actions without prompting the user Description: A logic issue was addressed with improved checks.
apple