Apple Macos Ventura vulnerabilities

980 known vulnerabilities affecting apple/macos_ventura.

Total CVEs
980
CISA KEV
24
actively exploited
Public exploits
4
Exploited in wild
20
Severity breakdown
CRITICAL75HIGH370MEDIUM484LOW48UNKNOWN3

Vulnerabilities

Page 5 of 49
CVE-2025-24246CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24246 [CRITICAL] CVE-2025-24246: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24246 Component: OpenSSH Impact: An app may be able to access user-sensitive data Description: An injection issue was addressed with improved validation.
apple
CVE-2025-24231CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24231 [CRITICAL] CVE-2025-24231: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24231 Component: AppleMobileFileIntegrity Impact: An app may be able to modify protected parts of the file system Description: The issue was addressed with improved checks.
apple
CVE-2025-24181CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24181 [CRITICAL] CVE-2025-24181: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24181 Component: Sandbox Impact: An app may be able to access protected user data Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-24250CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24250 [CRITICAL] CVE-2025-24250: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24250 Component: Security Impact: A malicious app acting as a HTTPS proxy could get access to sensitive user data Description: This issue was addressed with improved access restrictions.
apple
CVE-2025-24241CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24241 [CRITICAL] CVE-2025-24241: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24241 Component: WindowServer Impact: An app may be able to trick a user into copying sensitive data to the pasteboard Description: A configuration issue was addressed with additional restrictions.
apple
CVE-2025-30444CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-30444 [CRITICAL] CVE-2025-30444: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-30444 Component: SMB Impact: Mounting a maliciously crafted SMB network share may lead to system termination Description: A race condition was addressed with improved locking.
apple
CVE-2025-30433CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-30433 [CRITICAL] CVE-2025-30433: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-30433 Component: Shortcuts Impact: A shortcut may be able to access files that are normally inaccessible to the Shortcuts app Description: This issue was addressed with improved access restrictions.
apple
CVE-2025-30465CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-30465 [CRITICAL] CVE-2025-30465: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-30465 Component: Shortcuts Impact: A shortcut may be able to access files that are normally inaccessible to the Shortcuts app Description: A permissions issue was addressed with improved validation.
apple
CVE-2025-24190CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24190 [CRITICAL] CVE-2025-24190: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24190 Component: CoreMedia Impact: Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24253CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24253 [CRITICAL] CVE-2025-24253: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24253 Component: StorageKit Impact: An app may be able to access protected user data Description: This issue was addressed with improved handling of symlinks.
apple
CVE-2025-24256CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24256 [CRITICAL] CVE-2025-24256: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24256 Component: GPU Drivers Impact: An app may be able to disclose kernel memory Description: The issue was addressed with improved bounds checks.
apple
CVE-2025-24172CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24172 [CRITICAL] CVE-2025-24172: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24172 Component: Mail Impact: "Block All Remote Content" may not apply for all mail previews Description: A permissions issue was addressed with additional sandbox restrictions.
apple
CVE-2025-24237CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24237 [CRITICAL] CVE-2025-24237: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24237 Component: BiometricKit Impact: An app may be able to cause unexpected system termination Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2025-24266CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24266 [CRITICAL] CVE-2025-24266: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24266 Component: Xsan Impact: An app may be able to cause unexpected system termination Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2025-30462CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-30462 [CRITICAL] CVE-2025-30462: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-30462 Component: Dock Impact: An app may be able to modify protected parts of the file system Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-24249CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24249 [CRITICAL] CVE-2025-24249: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24249 Component: Installer Impact: An app may be able to check the existence of an arbitrary path on the file system Description: A permissions issue was addressed with additional sandbox restrictions.
apple
CVE-2025-24230CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24230 [CRITICAL] CVE-2025-24230: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24230 Component: CoreAudio Impact: Playing a malicious audio file may lead to an unexpected app termination Description: An out-of-bounds read issue was addressed with improved input validation.
apple
CVE-2025-30457CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-30457 [CRITICAL] CVE-2025-30457: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-30457 Component: SystemMigration Impact: A malicious app may be able to create symlinks to protected regions of the disk Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-30452CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-30452 [CRITICAL] CVE-2025-30452: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-30452 Component: Sandbox Impact: An input validation issue was addressed Description: The issue was addressed with improved checks.
apple
CVE-2025-24247CRITICALCVSS 9.8v13.7.52025-03-31
CVE-2025-24247 [CRITICAL] CVE-2025-24247: macOS Ventura 13.7.5 Apple Security Update: About the security content of macOS Ventura 13.7.5 Product: macOS Ventura Version: 13.7.5 CVE: CVE-2025-24247 Component: WindowServer Impact: An attacker may be able to cause unexpected app termination Description: A type confusion issue was addressed with improved checks.
apple