Apple watchOS vulnerabilities
2,036 known vulnerabilities affecting apple/watchos.
Total CVEs
2,036
CISA KEV
51
actively exploited
Public exploits
137
Exploited in wild
85
Severity breakdown
CRITICAL160HIGH1024MEDIUM782LOW68UNKNOWN2
Vulnerabilities
Page 53 of 102
CVE-2017-13880P3HIGHCVSS 7.8fixed in 4.2≥ unspecified, < 4.22021-12-23
CVE-2017-13880 [HIGH] CVE-2017-13880: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 11
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 11.2, watchOS 4.2. An application may be able to execute arbitrary code with kernel privilege.
nvdapple
CVE-2018-4203P3HIGHCVSS 7.5fixed in 5.02019-04-03
CVE-2018-4203 [HIGH] CWE-125 CVE-2018-4203: An out-of-bounds read was addressed with improved bounds checking. This issue affected versions prio
An out-of-bounds read was addressed with improved bounds checking. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2022-22612P3HIGHCVSS 7.8fixed in 8.5≥ unspecified, < 8.52022-03-18
CVE-2022-22612 [HIGH] CWE-787 CVE-2022-22612: A memory consumption issue was addressed with improved memory handling. This issue is fixed in tvOS
A memory consumption issue was addressed with improved memory handling. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, iTunes 12.12.3 for Windows, watchOS 8.5, macOS Monterey 12.3. Processing a maliciously crafted image may lead to heap corruption.
nvdapple
CVE-2025-30471P3HIGHCVSS 7.5fixed in 11.42025-03-31
CVE-2025-30471 [HIGH] CWE-20 CVE-2025-30471: A validation issue was addressed with improved logic. This issue is fixed in iOS 18.4 and iPadOS 18.
A validation issue was addressed with improved logic. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. A remote user may be able to cause a denial-of-service.
nvdapple
CVE-2024-27832P3HIGHCVSS 7.8fixed in 10.52024-06-10
CVE-2024-27832 [HIGH] CWE-703 CVE-2024-27832: The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS
The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to elevate privileges.
nvdapple
CVE-2022-22609P3HIGHCVSS 7.5fixed in 8.5≥ unspecified, < 8.52022-03-18
CVE-2022-22609 [HIGH] CVE-2022-22609: The issue was addressed with additional permissions checks. This issue is fixed in tvOS 15.4, iOS 15
The issue was addressed with additional permissions checks. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3, watchOS 8.5. A malicious application may be able to read other applications' settings.
nvdapple
CVE-2024-27811P3HIGHCVSS 7.8fixed in 10.52024-06-10
CVE-2024-27811 [HIGH] CWE-269 CVE-2024-27811: The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS
The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to elevate privileges.
nvdapple
CVE-2024-48958P3HIGHCVSS 7.8v11.42025-04-01
CVE-2024-48958 [HIGH] CVE-2024-48958: watchOS 11.4
Apple Security Update: About the security content of watchOS 11.4
Product: watchOS
Version: 11.4
CVE: CVE-2024-48958
Component: CVE-2024-48958
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-24129P3HIGHCVSS 7.5fixed in 11.32025-01-27
CVE-2025-24129 [HIGH] CWE-843 CVE-2025-24129: A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.3 and iPadO
A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.3, visionOS 2.3. An attacker on the local network may cause an unexpected app termination.
nvd
CVE-2022-32907P3HIGHCVSS 7.8fixed in 9.0≥ unspecified, < 9+1 more2022-11-01
CVE-2022-32907 [HIGH] CWE-269 CVE-2022-32907: This issue was addressed with improved checks. This issue is fixed in tvOS 16, iOS 16, watchOS 9. An
This issue was addressed with improved checks. This issue is fixed in tvOS 16, iOS 16, watchOS 9. An app may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2024-27801P3HIGHCVSS 7.8fixed in 10.52024-06-10
CVE-2024-27801 [HIGH] CVE-2024-27801: The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS
The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to elevate privileges.
nvdapple
CVE-2023-41068P3HIGHCVSS 7.8fixed in 10.0≥ unspecified, < 102023-09-27
CVE-2023-41068 [HIGH] CVE-2023-41068: An access issue was addressed with improved access restrictions. This issue is fixed in tvOS 17, iOS
An access issue was addressed with improved access restrictions. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, iOS 16.7 and iPadOS 16.7. A user may be able to elevate privileges.
nvdapple
CVE-2022-32819P3HIGHCVSS 7.8fixed in 8.7≥ unspecified, < 8.7+1 more2022-09-23
CVE-2022-32819 [HIGH] CWE-269 CVE-2022-32819: A logic issue was addressed with improved state management. This issue is fixed in iOS 15.6 and iPad
A logic issue was addressed with improved state management. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Big Sur 11.6.8, watchOS 8.7, tvOS 15.6, macOS Monterey 12.5, Security Update 2022-005 Catalina. An app may be able to gain root privileges.
nvdapple
CVE-2025-24855P3HIGHCVSS 7.8v11.32025-01-27
CVE-2025-24855 [HIGH] CVE-2025-24855: watchOS 11.3
Apple Security Update: About the security content of watchOS 11.3
Product: watchOS
Version: 11.3
CVE: CVE-2025-24855
Component: LaunchServices
Impact: An app may be able to fingerprint the user
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2021-1757P3HIGHCVSS 7.8fixed in 7.32021-04-02
CVE-2021-1757 [HIGH] CWE-125 CVE-2021-1757: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A local attacker may be able to elevate their privileges.
nvd
CVE-2021-30945P3HIGHCVSS 7.8fixed in 8.3≥ unspecified, < 8.32021-08-24
CVE-2021-30945 [HIGH] CVE-2021-30945: This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.6.2, tvOS 15.
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.6.2, tvOS 15.2, macOS Monterey 12.1, Security Update 2021-008 Catalina, iOS 15.2 and iPadOS 15.2, watchOS 8.3. A local attacker may be able to elevate their privileges.
nvdapple
CVE-2021-1868P3HIGHCVSS 7.8fixed in 7.4≥ unspecified, < 7.42021-09-08
CVE-2021-1868 [HIGH] CWE-269 CVE-2021-1868: A logic issue was addressed with improved state management. This issue is fixed in Security Update 2
A logic issue was addressed with improved state management. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. A local attacker may be able to elevate their privileges.
nvd
CVE-2022-32889P3HIGHCVSS 7.8fixed in 9.0≥ unspecified, < 92022-11-01
CVE-2022-32889 [HIGH] CVE-2022-32889: The issue was addressed with improved memory handling. This issue is fixed in iOS 16, watchOS 9. An
The issue was addressed with improved memory handling. This issue is fixed in iOS 16, watchOS 9. An app may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2023-38565P3HIGHCVSS 7.8fixed in 9.6≥ unspecified, < 9.62023-07-27
CVE-2023-38565 [HIGH] CVE-2023-38565: A path handling issue was addressed with improved validation. This issue is fixed in macOS Monterey
A path handling issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.6.8, iOS 16.6 and iPadOS 16.6, macOS Big Sur 11.7.9, macOS Ventura 13.5, watchOS 9.6. An app may be able to gain root privileges.
nvdapple
CVE-2023-42848P3HIGHCVSS 7.8fixed in 10.1≥ unspecified, < 10.12024-02-21
CVE-2023-42848 [HIGH] CWE-787 CVE-2023-42848: The issue was addressed with improved bounds checks. This issue is fixed in watchOS 10.1, macOS Sono
The issue was addressed with improved bounds checks. This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1, iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1, macOS Ventura 13.6.1. Processing a maliciously crafted image may lead to heap corruption.
nvdapple