cbcvebase.

Apple watchOS vulnerabilities

2,036 known vulnerabilities affecting apple/watchos.

Total CVEs
2,036
CISA KEV
51
actively exploited
Public exploits
137
Exploited in wild
85
Severity breakdown
CRITICAL160HIGH1024MEDIUM782LOW68UNKNOWN2

Vulnerabilities

Page 85 of 102
CVE-2023-42946P4MEDIUMCVSS 5.5fixed in 10.1≥ unspecified, < 10.12024-02-21
CVE-2023-42946 [MEDIUM] CVE-2023-42946: This issue was addressed with improved redaction of sensitive information. This issue is fixed in tv This issue was addressed with improved redaction of sensitive information. This issue is fixed in tvOS 17.1, watchOS 10.1, macOS Sonoma 14.1, iOS 17.1 and iPadOS 17.1. An app may be able to leak sensitive user information.
nvdapple
CVE-2022-42843P4MEDIUMCVSS 5.5fixed in 9.2≥ unspecified, < 9.22022-12-15
CVE-2022-42843 [MEDIUM] CWE-200 CVE-2022-42843: This issue was addressed with improved data protection. This issue is fixed in iOS 16.2 and iPadOS 1 This issue was addressed with improved data protection. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, tvOS 16.2, watchOS 9.2. A user may be able to view sensitive user information.
nvdapple
CVE-2023-23499P4MEDIUMCVSS 5.5fixed in 9.3≥ unspecified, < 9.32023-02-27
CVE-2023-23499 [MEDIUM] CWE-200 CVE-2023-23499: This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Monterey 12.6.3, This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, watchOS 9.3, macOS Big Sur 11.7.3, tvOS 16.3, iOS 16.3 and iPadOS 16.3. An app may be able to access user-sensitive data.
nvdapple
CVE-2021-1739P4MEDIUMCVSS 5.5fixed in 7.4≥ unspecified, < 7.42021-09-08
CVE-2021-1739 [MEDIUM] CWE-22 CVE-2021-1739: A parsing issue in the handling of directory paths was addressed with improved path validation. This A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. A local user may be able to modify protected parts of the file system.
nvd
CVE-2019-8568P4MEDIUMCVSS 5.5fixed in 5.2.1≥ unspecified, < watchOS 5.2.12019-12-18
CVE-2019-8568 [MEDIUM] CWE-59 CVE-2019-8568: A validation issue existed in the handling of symlinks. This issue was addressed with improved valid A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1. A local user may be able to modify protected parts of the file system.
nvdapple
CVE-2018-4282P4MEDIUMCVSS 5.5fixed in 4.3.22019-04-03
CVE-2018-4282 [MEDIUM] CWE-125 CVE-2018-4282: An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue affected versions prior to iOS 11.4.1, tvOS 11.4.1, watchOS 4.3.2.
nvdapple
CVE-2024-23207P4MEDIUMCVSS 5.5fixed in 10.32024-01-23
CVE-2024-23207 [MEDIUM] CWE-200 CVE-2024-23207: This issue was addressed with improved redaction of sensitive information. This issue is fixed in iO This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS Monterey 12.7.3, macOS Sonoma 14.3, macOS Ventura 13.6.4, watchOS 10.3. An app may be able to access sensitive user data.
nvdapple
CVE-2024-23215P4MEDIUMCVSS 5.5fixed in 10.32024-01-23
CVE-2024-23215 [MEDIUM] CVE-2024-23215: An issue was addressed with improved handling of temporary files. This issue is fixed in iOS 17.3 an An issue was addressed with improved handling of temporary files. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, tvOS 17.3, watchOS 10.3. An app may be able to access user-sensitive data.
nvdapple
CVE-2022-42859P4MEDIUMCVSS 5.5fixed in 9.2≥ unspecified, < 9.22022-12-15
CVE-2022-42859 [MEDIUM] CWE-284 CVE-2022-42859: Multiple issues were addressed by removing the vulnerable code. This issue is fixed in iOS 16.2 and Multiple issues were addressed by removing the vulnerable code. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, watchOS 9.2. An app may be able to bypass Privacy preferences.
nvdapple
CVE-2025-30470P4MEDIUMCVSS 5.5fixed in 11.42025-03-31
CVE-2025-30470 [MEDIUM] CWE-22 CVE-2025-30470: A path handling issue was addressed with improved logic. This issue is fixed in iOS 18.4 and iPadOS A path handling issue was addressed with improved logic. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, visionOS 2.4, watchOS 11.4. An app may be able to read sensitive location information.
nvdapple
CVE-2019-7293P4MEDIUMCVSS 5.5fixed in 5.2≥ unspecified, < watchOS 5.22019-12-18
CVE-2019-7293 [MEDIUM] CWE-787 CVE-2019-7293: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12 A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A local user may be able to read kernel memory.
nvdapple
CVE-2020-9989P4MEDIUMCVSS 5.5fixed in 7.0≥ unspecified, < 7.02020-12-08
CVE-2020-9989 [MEDIUM] CVE-2020-9989: The issue was addressed with improved deletion. This issue is fixed in macOS Big Sur 11.0.1, watchOS The issue was addressed with improved deletion. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.0, iOS 14.0 and iPadOS 14.0. A local user may be able to discover a user’s deleted messages.
nvdapple
CVE-2024-40788P4MEDIUMCVSS 5.5fixed in 10.62024-07-29
CVE-2024-40788 [MEDIUM] CWE-843 CVE-2024-40788: A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 16.7. A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, visionOS 1.3, watchOS 10.6. A local attacker may be able to cause unexpected system shutdown.
nvdapple
CVE-2023-40418P4MEDIUMCVSS 5.5fixed in 10.0≥ unspecified, < 102023-09-27
CVE-2023-40418 [MEDIUM] CVE-2023-40418: An authentication issue was addressed with improved state management. This issue is fixed in watchOS An authentication issue was addressed with improved state management. This issue is fixed in watchOS 10. An Apple Watch Ultra may not lock when using the Depth app.
nvdapple
CVE-2023-40399P4MEDIUMCVSS 5.5fixed in 10.0≥ unspecified, < 102023-09-27
CVE-2023-40399 [MEDIUM] CVE-2023-40399: The issue was addressed with improved memory handling. This issue is fixed in tvOS 17, iOS 17 and iP The issue was addressed with improved memory handling. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to disclose kernel memory.
nvdapple
CVE-2023-40424P4MEDIUMCVSS 5.5fixed in 10.0≥ unspecified, < 102023-09-27
CVE-2023-40424 [MEDIUM] CVE-2023-40424: The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, watchOS 1 The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to access user-sensitive data.
nvdapple
CVE-2021-30697P4MEDIUMCVSS 5.5fixed in 7.52021-09-08
CVE-2021-30697 [MEDIUM] CVE-2021-30697: A logic issue was addressed with improved state management. This issue is fixed in tvOS 14.6, Securi A logic issue was addressed with improved state management. This issue is fixed in tvOS 14.6, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. A local user may be able to leak sensitive user information.
nvdapple
CVE-2023-40410P4MEDIUMCVSS 5.5fixed in 10.0≥ unspecified, < 102023-09-27
CVE-2023-40410 [MEDIUM] CWE-125 CVE-2023-40410: An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ven An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to disclose kernel memory.
nvdapple
CVE-2018-4448P4MEDIUMCVSS 5.5fixed in 5.1.22020-10-27
CVE-2018-4448 [MEDIUM] CVE-2018-4448: A memory initialization issue was addressed with improved memory handling. This issue is fixed in ma A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS 12.1.1, watchOS 5.1.2, macOS Mojave 10.14.2, Security Update 2018-003 High Sierra, Security Update 2018-006 Sierra, tvOS 12.1.1. A local user may be able to read kern
nvdapple
CVE-2024-40784P4MEDIUMCVSS 5.5fixed in 10.62024-07-29
CVE-2024-40784 [MEDIUM] CWE-190 CVE-2024-40784: An integer overflow was addressed with improved input validation. This issue is fixed in iOS 16.7.9 An integer overflow was addressed with improved input validation. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing a maliciously crafted file may lead to unexpected app termination.
nvdapple
Apple watchOS vulnerabilities | cvebase