VendorsApplemacosany version
Vulnerabilities

Apple MACOS any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7031CVEs
CVE-2020-9592
Adobe Acrobat and Reader versions 2020.006.20042 and earlier, 2017.011.30166 and earlier, 2017.011.30166 and earlier, and 2015.006.30518 and earlier have a security bypass vulnerability. Successful exploitation could lead to security feature bypass.
Published 2020-06-25 · Modified
7.8EPSS 0.023
CVE-2020-9596
Adobe Acrobat and Reader versions 2020.006.20042 and earlier, 2017.011.30166 and earlier, 2017.011.30166 and earlier, and 2015.006.30518 and earlier have a security bypass vulnerability. Successful exploitation could lead to security feature bypass.
Published 2020-06-25 · Modified
7.8EPSS 0.023
CVE-2024-41869
Acrobat Reader | Use After Free (CWE-416)
Published 2024-09-13 · Analyzed
7.8EPSS 0.023
CVE-2021-30924
A denial of service issue was addressed with improved state handling. This issue is fixed in macOS Monterey 12.0.1. A remote attacker can cause a device to unexpectedly restart.
Published 2021-08-24 · Modified
7.8EPSS 0.023
CVE-2020-35931
An issue was discovered in Foxit Reader before 10.1.1 (and before 4.1.1 on macOS) and PhantomPDF before 9.7.5 and 10.x before 10.1.1 (and before 4.1.1 on macOS). An attacker can spoof a certified PDF document via an Evil Annotation Attack because the products fail to consider a null value for a Subtype entry of the Annotation dictionary, in an incremental update.
Published 2020-12-31 · Modified
7.8EPSS 0.023
CVE-2022-23186
Adobe Illustrator Out-of-bounds Write could lead to Arbitrary code execution
Published 2022-02-16 · Modified
7.8EPSS 0.023
CVE-2023-44336
TALOS-2023-1794 - Adobe Acrobat Reader Thermometer use-after-free vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.023
CVE-2021-45056
Adobe InCopy JPEG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2022-01-13 · Modified
7.8EPSS 0.023
CVE-2020-9613
Adobe Acrobat and Reader versions 2020.006.20042 and earlier, 2017.011.30166 and earlier, 2017.011.30166 and earlier, and 2015.006.30518 and earlier have a security bypass vulnerability. Successful exploitation could lead to security feature bypass.
Published 2020-06-25 · Modified
7.8EPSS 0.022
CVE-2020-9614
Adobe Acrobat and Reader versions 2020.006.20042 and earlier, 2017.011.30166 and earlier, 2017.011.30166 and earlier, and 2015.006.30518 and earlier have a security bypass vulnerability. Successful exploitation could lead to security feature bypass.
Published 2020-06-25 · Modified
7.8EPSS 0.022
CVE-2022-30649
Adobe Illustrator Out-of-bounds Write could lead to Arbitrary code execution
Published 2022-06-15 · Modified
7.8EPSS 0.022
CVE-2021-45053
Adobe InCopy JPEG2000 Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2022-01-13 · Modified
7.8EPSS 0.022
CVE-2021-45057
Adobe InDesign JPEG2000 Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2022-01-13 · Modified
7.8EPSS 0.022
CVE-2021-45058
Adobe InDesign JPEG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2022-01-13 · Modified
7.8EPSS 0.022
CVE-2022-1720
Buffer Over-read in function grab_file_name in vim/vim
Published 2022-05-16 · Modified
7.8EPSS 0.022
CVE-2023-44359
ZDI-CAN-21936: Adobe Acrobat Reader DC Font Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.021
CVE-2023-44367
ZDI-CAN-21929: Adobe Acrobat Reader DC Font Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.021
CVE-2021-42735
Adobe Photoshop Memory Corruption could lead to Arbitrary code execution
Published 2022-06-15 · Modified
7.8EPSS 0.021
CVE-2022-28846
Adobe Bridge SVG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2022-06-15 · Modified
7.8EPSS 0.021
CVE-2022-28847
Adobe Bridge Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2022-06-15 · Modified
7.8EPSS 0.021
CVE-2022-28848
Adobe Bridge PCX Out-of-bounds Write Remote Code Execution Vulnerability
Published 2022-06-15 · Modified
7.8EPSS 0.021
CVE-2023-21609
Adobe Acrobat Reader DC AcroForm Annotation Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-01-18 · Modified
7.8EPSS 0.021
CVE-2023-26395
Adobe Acrobat parsing PDF Out-of-bounds Write Arbitrary code execution
Published 2023-04-12 · Modified
7.8EPSS 0.021
CVE-2024-39426
ZDI-CAN-24312: Adobe Acrobat Reader DC Annotation Memory Corruption Remote Code Execution Vulnerability
Published 2024-08-14 · Analyzed
7.8EPSS 0.021
CVE-2021-30660
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. A malicious application may be able to disclose kernel memory.
Published 2021-09-08 · Modified
7.8EPSS 0.021
CVE-2024-27815
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to execute arbitrary code with kernel privileges.
Published 2024-06-10 · Modified
7.8EPSS 0.020
CVE-2023-44338
ZDI-CAN-21493: Adobe Acrobat Reader DC Annotation Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.020
CVE-2023-44337
ZDI-CAN-21509: Adobe Acrobat Reader DC Font Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.020
CVE-2023-44365
ZDI-CAN-21931: Adobe Acrobat Reader DC Font Parsing Uninitialized Variable Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.020
CVE-2024-20727
[TianfuCup] out-of-bounds access vulnerability when parsing jpeg2000
Published 2024-02-15 · Modified
7.8EPSS 0.020
CVE-2021-46818
Adobe Media Encoder M4A file memory corruption vulnerability could lead to remote code execution
Published 2022-06-13 · Modified
7.8EPSS 0.020
CVE-2021-42732
Adobe InDesign crashes when parsing the GIF file
Published 2022-06-15 · Modified
7.8EPSS 0.020
CVE-2021-45444
In zsh before 5.8.1, an attacker can achieve code execution if they control a command output inside the prompt, as demonstrated by a %F argument. This occurs because of recursive PROMPT_SUBST expansion.
Published 2022-02-13 · Modified
7.8EPSS 0.020
CVE-2020-9876
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Opening a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution.
Published 2020-10-22 · Modified
7.8EPSS 0.020
CVE-2021-46817
Adobe Media Encoder M4A file memory corruption vulnerability could lead to remote code execution
Published 2022-06-13 · Modified
7.8EPSS 0.019
CVE-2022-1629
Buffer Over-read in function find_next_quote in vim/vim
Published 2022-05-10 · Modified
7.8EPSS 0.019
CVE-2021-30849
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, watchOS 8, Safari 15, tvOS 15, iOS 15 and iPadOS 15, iTunes 12.12 for Windows. Processing maliciously crafted web content may lead to arbitrary code execution.
Published 2021-10-19 · Modified
7.8EPSS 0.019
CVE-2022-22651
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.3. A remote attacker may be able to cause unexpected system termination or corrupt kernel memory.
Published 2022-03-18 · Modified
7.8EPSS 0.019
CVE-2021-43755
Adobe After Effects Memory Corruption could lead to Arbitrary Code Execution
Published 2022-06-15 · Modified
7.8EPSS 0.019
CVE-2023-44366
ZDI-CAN-21928: Adobe Acrobat Reader DC Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.018
← Prev55 / 176Next →