Apple Macos Ventura vulnerabilities

980 known vulnerabilities affecting apple/macos_ventura.

Total CVEs
980
CISA KEV
24
actively exploited
Public exploits
4
Exploited in wild
20
Severity breakdown
CRITICAL75HIGH370MEDIUM484LOW48UNKNOWN3

Vulnerabilities

Page 21 of 49
CVE-2024-23207MEDIUMCVSS 5.5v13.6.42024-01-22
CVE-2024-23207 [MEDIUM] CVE-2024-23207: macOS Ventura 13.6.4 Apple Security Update: About the security content of macOS Ventura 13.6.4 Product: macOS Ventura Version: 13.6.4 CVE: CVE-2024-23207 Component: Mail Search Impact: An app may be able to access sensitive user data Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2023-42937MEDIUMCVSS 5.5v13.6.42024-01-22
CVE-2023-42937 [MEDIUM] CVE-2023-42937: macOS Ventura 13.6.4 Apple Security Update: About the security content of macOS Ventura 13.6.4 Product: macOS Ventura Version: 13.6.4 CVE: CVE-2023-42937 Component: Accessibility Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2023-42887MEDIUMCVSS 6.3v13.6.42024-01-22
CVE-2023-42887 [MEDIUM] CVE-2023-42887: macOS Ventura 13.6.4 Apple Security Update: About the security content of macOS Ventura 13.6.4 Product: macOS Ventura Version: 13.6.4 CVE: CVE-2023-42887 Component: NSOpenPanel Impact: An app may be able to read arbitrary files Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2024-23224MEDIUMCVSS 5.5v13.6.42024-01-22
CVE-2024-23224 [MEDIUM] CVE-2024-23224: macOS Ventura 13.6.4 Apple Security Update: About the security content of macOS Ventura 13.6.4 Product: macOS Ventura Version: 13.6.4 CVE: CVE-2024-23224 Component: Finder Impact: An app may be able to access sensitive user data Description: The issue was addressed with improved checks.
apple
CVE-2023-40528MEDIUMCVSS 5.5v13.6.42024-01-22
CVE-2023-40528 [MEDIUM] CVE-2023-40528: macOS Ventura 13.6.4 Apple Security Update: About the security content of macOS Ventura 13.6.4 Product: macOS Ventura Version: 13.6.4 CVE: CVE-2023-40528 Component: Core Data Impact: An app may be able to bypass Privacy preferences Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2023-42935MEDIUMCVSS 5.5v13.6.42024-01-22
CVE-2023-42935 [MEDIUM] CVE-2023-42935: macOS Ventura 13.6.4 Apple Security Update: About the security content of macOS Ventura 13.6.4 Product: macOS Ventura Version: 13.6.4 CVE: CVE-2023-42935 Component: LoginWindow Impact: A local attacker may be able to view the previous logged in user’s desktop from the fast user switching screen Description: An authentication issue was addressed with improved state management.
apple
CVE-2023-42888MEDIUMCVSS 5.5v13.6.42024-01-22
CVE-2023-42888 [MEDIUM] CVE-2023-42888: macOS Ventura 13.6.4 Apple Security Update: About the security content of macOS Ventura 13.6.4 Product: macOS Ventura Version: 13.6.4 CVE: CVE-2023-42888 Component: ImageIO Impact: Processing a maliciously crafted image may result in disclosure of process memory Description: The issue was addressed with improved checks.
apple
CVE-2023-38546LOWCVSS 3.7v13.6.42024-01-22
CVE-2023-38546 [LOW] CVE-2023-38546: macOS Ventura 13.6.4 Apple Security Update: About the security content of macOS Ventura 13.6.4 Product: macOS Ventura Version: 13.6.4 CVE: CVE-2023-38546 Component: CVE-2023-38546
apple
CVE-2023-42886HIGHCVSS 7.8v13.6.32023-12-11
CVE-2023-42886 [HIGH] CVE-2023-42886: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2023-42886 Component: CoreServices Impact: A user may be able to cause unexpected app termination or arbitrary code execution Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2023-42974HIGHCVSS 7.0v13.6.32023-12-11
CVE-2023-42974 [HIGH] CVE-2023-42974: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2023-42974 Component: IOUSBDeviceFamily Impact: An app may be able to execute arbitrary code with kernel privileges Description: A race condition was addressed with improved state handling.
apple
CVE-2023-42931HIGHCVSS 7.8v13.6.32023-12-11
CVE-2023-42931 [HIGH] CVE-2023-42931: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2023-42931 Component: DiskArbitration Impact: A process may gain admin privileges without proper authentication Description: The issue was addressed with improved checks.
apple
CVE-2023-42947HIGHCVSS 8.6v13.6.32023-12-11
CVE-2023-42947 [HIGH] CVE-2023-42947: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2023-42947 Component: TCC Impact: An app may be able to break out of its sandbox Description: A path handling issue was addressed with improved validation.
apple
CVE-2023-42899HIGHCVSS 7.8v13.6.32023-12-11
CVE-2023-42899 [HIGH] CVE-2023-42899: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2023-42899 Component: ImageIO Impact: Processing an image may lead to arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2023-5344HIGHCVSS 7.5v13.6.32023-12-11
CVE-2023-5344 [HIGH] CVE-2023-5344: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2023-5344 Component: CVE-2023-5344
apple
CVE-2023-42892HIGHCVSS 7.8v13.6.32023-12-11
CVE-2023-42892 [HIGH] CVE-2023-42892: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2023-42892 Component: FileURL Impact: A local attacker may be able to elevate their privileges Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-42894MEDIUMCVSS 5.5v13.6.32023-12-11
CVE-2023-42894 [MEDIUM] CVE-2023-42894: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2023-42894 Component: AppleEvents Impact: An app may be able to access information about a user's contacts Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2020-19189MEDIUMCVSS 6.5v13.6.32023-12-11
CVE-2020-19189 [MEDIUM] CVE-2020-19189: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2020-19189 Component: CVE-2020-19189
apple
CVE-2023-42922MEDIUMCVSS 5.5v13.6.32023-12-11
CVE-2023-42922 [MEDIUM] CVE-2023-42922: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2023-42922 Component: Find My Impact: An app may be able to read sensitive location information Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2023-42893MEDIUMCVSS 5.5v13.6.32023-12-11
CVE-2023-42893 [MEDIUM] CVE-2023-42893: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2023-42893 Component: CVE-2023-42893
apple
CVE-2020-19187MEDIUMCVSS 6.5v13.6.32023-12-11
CVE-2020-19187 [MEDIUM] CVE-2020-19187: macOS Ventura 13.6.3 Apple Security Update: About the security content of macOS Ventura 13.6.3 Product: macOS Ventura Version: 13.6.3 CVE: CVE-2020-19187 Component: CVE-2020-19187
apple