VendorsApplemacosall versions
Vulnerabilities

Apple MACOS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7076CVEs
CVE-2023-4751
Heap-based Buffer Overflow in vim/vim
Published 2023-09-03 · Analyzed
7.8EPSS 0.006
CVE-2022-38436
Adobe Illustrator CDR File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-10-25 · Modified
7.8EPSS 0.006
CVE-2025-30330
Illustrator | Heap-based Buffer Overflow (CWE-122)
Published 2025-05-13 · Analyzed
7.8EPSS 0.006
CVE-2022-46690
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, tvOS 16.2, watchOS 9.2. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-12-15 · Modified
7.8EPSS 0.006
CVE-2022-32924
The issue was addressed with improved memory handling. This issue is fixed in tvOS 16.1, macOS Big Sur 11.7, macOS Ventura 13, watchOS 9.1, iOS 16.1 and iPadOS 16, macOS Monterey 12.6. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-11-01 · Modified
7.8EPSS 0.006
CVE-2024-30303
ZDI-CAN-23044: Adobe Acrobat Reader DC AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-02 · Analyzed
7.8EPSS 0.006
CVE-2025-43576
Acrobat Reader | Use After Free (CWE-416)
Published 2025-06-10 · Analyzed
7.8EPSS 0.005
CVE-2019-8342
A Local Privilege Escalation in libqcocoa.dylib in Foxit Reader 3.1.0.0111 on macOS has been discovered due to an incorrect permission set.
Published 2019-05-13 · Modified
7.8EPSS 0.005
CVE-2023-4733
Use After Free in vim/vim
Published 2023-09-04 · Analyzed
7.8EPSS 0.005
CVE-2024-20745
ZDI-CAN-22671: Adobe Premiere Pro AVI File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2024-03-18 · Analyzed
7.8EPSS 0.005
CVE-2024-52997
Photoshop Desktop | Use After Free (CWE-416)
Published 2024-12-10 · Analyzed
7.8EPSS 0.005
CVE-2024-53953
Animate | Use After Free (CWE-416)
Published 2024-12-10 · Analyzed
7.8EPSS 0.005
CVE-2023-38112
Foxit PDF Reader XFA Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
7.8EPSS 0.005
CVE-2023-38107
Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
7.8EPSS 0.005
CVE-2023-38111
Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
7.8EPSS 0.005
CVE-2023-38117
Foxit PDF Reader AcroForm Doc Object Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
7.8EPSS 0.005
CVE-2023-4750
Use After Free in vim/vim
Published 2023-09-04 · Analyzed
7.8EPSS 0.005
CVE-2019-5012
An exploitable privilege escalation vulnerability exists in the Wacom, driver version 6.3.32-3, update helper service in the startProcess command. The command takes a user-supplied script argument and executes it under root context. A user with local access can use this vulnerability to raise their privileges to root. An attacker would need local access to the machine for a successful exploit.
Published 2019-10-24 · Modified
7.8EPSS 0.005
CVE-2022-42801
A logic issue was addressed with improved checks. This issue is fixed in tvOS 16.1, iOS 15.7.1 and iPadOS 15.7.1, macOS Ventura 13, watchOS 9.1, iOS 16.1 and iPadOS 16, macOS Monterey 12.6.1. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-11-01 · Modified
7.8EPSS 0.005
CVE-2024-45112
Acrobat Reader | Access of Resource Using Incompatible Type ('Type Confusion') (CWE-843)
Published 2024-09-13 · Analyzed
7.8EPSS 0.005
CVE-2022-35705
Adobe Bridge MP4 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-19 · Modified
7.8EPSS 0.005
CVE-2022-35707
Adobe Bridge SGI File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-19 · Modified
7.8EPSS 0.005
CVE-2022-38442
Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2022-10-14 · Modified
7.8EPSS 0.005
CVE-2022-38444
Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2022-10-14 · Modified
7.8EPSS 0.005
CVE-2025-24243
The issue was addressed with improved memory handling. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. Processing a maliciously crafted file may lead to arbitrary code execution.
Published 2025-03-31 · Modified
7.8EPSS 0.005
CVE-2021-28547
Adobe Creative Cloud for macOS Privilege Escalation Vulnerability
Published 2021-09-29 · Modified
7.8EPSS 0.005
CVE-2022-38426
Adobe Photoshop U3D File Parsing Uninitialized Variable Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38427
Adobe Photoshop U3D File Parsing Uninitialized Variable Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2025-43372
The issue was addressed with improved input validation. This issue is fixed in iOS 26 and iPadOS 26, macOS Sonoma 14.8.2, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory.
Published 2025-09-15 · Modified
7.8EPSS 0.005
CVE-2024-53956
Premiere Pro | Heap-based Buffer Overflow (CWE-122)
Published 2024-12-10 · Analyzed
7.8EPSS 0.005
CVE-2023-0433
Heap-based Buffer Overflow in vim/vim
Published 2023-01-21 · Analyzed
7.8EPSS 0.005
CVE-2018-16962
Webroot SecureAnywhere before 9.0.8.34 on macOS mishandles access to the driver by a process that lacks root privileges.
Published 2018-09-12 · Modified
7.8EPSS 0.005
CVE-2022-38431
Adobe Photoshop SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38401
Adobe InCopy PCX File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38402
Adobe InCopy SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38413
Adobe InDesign SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38414
Adobe InDesign SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38415
Adobe InDesign PCX File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38433
Adobe Photoshop SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2023-4736
Untrusted Search Path in vim/vim
Published 2023-09-02 · Modified
7.8EPSS 0.005
← Prev62 / 177Next →