VendorsApplemacosall versions
Vulnerabilities

Apple MACOS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7077CVEs
CVE-2023-4736
Untrusted Search Path in vim/vim
Published 2023-09-02 · Modified
7.8EPSS 0.005
CVE-2022-38429
Adobe Photoshop SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38430
Adobe Photoshop MP4 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2024-30306
ZDI-CAN-23106: Adobe Acrobat Reader DC AcroForm Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2024-05-02 · Analyzed
7.8EPSS 0.005
CVE-2022-34243
Adobe Photoshop U3D File Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.005
CVE-2023-22242
ZDI-CAN-19515: Adobe Acrobat Reader DC AcroForm Annotation Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-01-27 · Modified
7.8EPSS 0.005
CVE-2022-28835
Adobe InCopy Font Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2023-09-11 · Modified
7.8EPSS 0.005
CVE-2022-30644
Adobe Illustrator Font Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2023-09-07 · Modified
7.8EPSS 0.005
CVE-2025-64899
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2025-12-09 · Analyzed
7.8EPSS 0.005
CVE-2022-38408
Adobe Illustrator Improper Input Validation Arbitrary code execution
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-34245
Adobe InDesign Font Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.005
CVE-2022-34246
Adobe InDesign Font Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.005
CVE-2022-34249
Adobe InCopy Font Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.005
CVE-2022-34250
Adobe InCopy Font Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.005
CVE-2019-20044
In Zsh before 5.8, attackers able to execute commands can regain privileges dropped by the --no-PRIVILEGED option. Zsh fails to overwrite the saved uid, so the original privileges can be restored by executing MODULE_PATH=/dir/with/module zmodload with a module that calls setuid().
Published 2020-02-24 · Modified
7.8EPSS 0.005
CVE-2024-44160
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. Processing a maliciously crafted texture may lead to unexpected app termination.
Published 2024-09-16 · Modified
7.8EPSS 0.005
CVE-2023-27930
A type confusion issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-06-23 · Modified
7.8EPSS 0.005
CVE-2023-0288
Heap-based Buffer Overflow in vim/vim
Published 2023-01-13 · Analyzed
7.8EPSS 0.005
CVE-2025-64785
Acrobat Reader | Untrusted Search Path (CWE-426)
Published 2025-12-09 · Analyzed
7.8EPSS 0.005
CVE-2024-49507
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2024-11-12 · Analyzed
7.8EPSS 0.005
CVE-2024-49508
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2024-11-12 · Analyzed
7.8EPSS 0.005
CVE-2022-34263
Adobe Illustrator Font Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2022-08-11 · Modified
7.8EPSS 0.005
CVE-2024-49537
After Effects | Stack-based Buffer Overflow (CWE-121)
Published 2024-12-10 · Analyzed
7.8EPSS 0.005
CVE-2024-53955
Bridge | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published 2024-12-10 · Analyzed
7.8EPSS 0.005
CVE-2022-34241
Adobe Character Animator SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.005
CVE-2022-38440
Adobe Dimension SKP File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-10-14 · Modified
7.8EPSS 0.005
CVE-2022-38441
Adobe Dimension GLB File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-10-14 · Modified
7.8EPSS 0.005
CVE-2019-16470
CoolType.dll crash - Tianfu Cup
Published 2023-09-11 · Modified
7.8EPSS 0.005
CVE-2023-41984
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-09-26 · Modified
7.8EPSS 0.005
CVE-2022-32811
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8, Security Update 2022-005 Catalina. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-08-24 · Modified
7.8EPSS 0.005
CVE-2022-38412
Adobe Animate SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2024-40846
The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. Processing a maliciously crafted video file may lead to unexpected app termination.
Published 2024-09-16 · Modified
7.8EPSS 0.005
CVE-2023-32418
The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.6.8, macOS Ventura 13.5, macOS Big Sur 11.7.9. Processing a file may lead to unexpected app termination or arbitrary code execution.
Published 2023-07-27 · Modified
7.8EPSS 0.005
CVE-2026-62871
.NET Elevation of Privilege Vulnerability
Published 2026-08-11 · Analyzed
7.8EPSS 0.005
CVE-2026-58641
.NET Elevation of Privilege Vulnerability
Published 2026-08-11 · Analyzed
7.8EPSS 0.005
CVE-2023-25908
Adobe Photoshop SVG file Use After Free Arbitrary code execution
Published 2023-03-27 · Modified
7.8EPSS 0.005
CVE-2023-47075
ZDI-CAN-22006: Adobe Illustrator JP2 File Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2023-12-13 · Modified
7.8EPSS 0.005
CVE-2024-20746
Adobe Premiere Pro Out-of-bounds Write Arbitrary code execution
Published 2024-03-18 · Analyzed
7.8EPSS 0.005
CVE-2022-35704
Adobe Bridge SVG File Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2022-09-19 · Modified
7.8EPSS 0.005
CVE-2018-5546
The svpn and policyserver components of the F5 BIG-IP APM client prior to version 7.1.7.1 for Linux and macOS runs as a privileged process and can allow an unprivileged user to get ownership of files owned by root on the local client host. A malicious local unprivileged user may gain knowledge of sensitive information, manipulate certain data, or assume super-user privileges on the local client host.
Published 2018-08-17 · Modified
7.8EPSS 0.005
← Prev63 / 177Next →