VendorsApplemacosany version
Vulnerabilities

Apple MACOS any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7031CVEs
CVE-2022-34249
Adobe InCopy Font Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.005
CVE-2022-34250
Adobe InCopy Font Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.005
CVE-2019-20044
In Zsh before 5.8, attackers able to execute commands can regain privileges dropped by the --no-PRIVILEGED option. Zsh fails to overwrite the saved uid, so the original privileges can be restored by executing MODULE_PATH=/dir/with/module zmodload with a module that calls setuid().
Published 2020-02-24 · Modified
7.8EPSS 0.005
CVE-2024-44160
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. Processing a maliciously crafted texture may lead to unexpected app termination.
Published 2024-09-16 · Modified
7.8EPSS 0.005
CVE-2023-27930
A type confusion issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-06-23 · Modified
7.8EPSS 0.005
CVE-2023-0288
Heap-based Buffer Overflow in vim/vim
Published 2023-01-13 · Analyzed
7.8EPSS 0.005
CVE-2025-64785
Acrobat Reader | Untrusted Search Path (CWE-426)
Published 2025-12-09 · Analyzed
7.8EPSS 0.005
CVE-2024-49507
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2024-11-12 · Analyzed
7.8EPSS 0.005
CVE-2024-49508
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2024-11-12 · Analyzed
7.8EPSS 0.005
CVE-2022-34263
Adobe Illustrator Font Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2022-08-11 · Modified
7.8EPSS 0.005
CVE-2024-49537
After Effects | Stack-based Buffer Overflow (CWE-121)
Published 2024-12-10 · Analyzed
7.8EPSS 0.005
CVE-2024-53955
Bridge | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published 2024-12-10 · Analyzed
7.8EPSS 0.005
CVE-2022-34241
Adobe Character Animator SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.005
CVE-2022-38440
Adobe Dimension SKP File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-10-14 · Modified
7.8EPSS 0.005
CVE-2022-38441
Adobe Dimension GLB File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-10-14 · Modified
7.8EPSS 0.005
CVE-2019-16470
CoolType.dll crash - Tianfu Cup
Published 2023-09-11 · Modified
7.8EPSS 0.005
CVE-2023-41984
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-09-26 · Modified
7.8EPSS 0.005
CVE-2022-32811
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8, Security Update 2022-005 Catalina. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-08-24 · Modified
7.8EPSS 0.005
CVE-2022-38412
Adobe Animate SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2024-40846
The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. Processing a maliciously crafted video file may lead to unexpected app termination.
Published 2024-09-16 · Modified
7.8EPSS 0.005
CVE-2023-32418
The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.6.8, macOS Ventura 13.5, macOS Big Sur 11.7.9. Processing a file may lead to unexpected app termination or arbitrary code execution.
Published 2023-07-27 · Modified
7.8EPSS 0.005
CVE-2026-62871
.NET Elevation of Privilege Vulnerability
Published 2026-08-11 · Analyzed
7.8EPSS 0.005
CVE-2026-58641
.NET Elevation of Privilege Vulnerability
Published 2026-08-11 · Analyzed
7.8EPSS 0.005
CVE-2023-25908
Adobe Photoshop SVG file Use After Free Arbitrary code execution
Published 2023-03-27 · Modified
7.8EPSS 0.005
CVE-2023-47075
ZDI-CAN-22006: Adobe Illustrator JP2 File Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2023-12-13 · Modified
7.8EPSS 0.005
CVE-2024-20746
Adobe Premiere Pro Out-of-bounds Write Arbitrary code execution
Published 2024-03-18 · Analyzed
7.8EPSS 0.005
CVE-2022-35704
Adobe Bridge SVG File Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2022-09-19 · Modified
7.8EPSS 0.005
CVE-2018-5546
The svpn and policyserver components of the F5 BIG-IP APM client prior to version 7.1.7.1 for Linux and macOS runs as a privileged process and can allow an unprivileged user to get ownership of files owned by root on the local client host. A malicious local unprivileged user may gain knowledge of sensitive information, manipulate certain data, or assume super-user privileges on the local client host.
Published 2018-08-17 · Modified
7.8EPSS 0.005
CVE-2023-40423
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Monterey 12.7.1, iOS 16.7.2 and iPadOS 16.7.2, macOS Ventura 13.6.1, macOS Sonoma 14.1. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-10-25 · Modified
7.8EPSS 0.005
CVE-2024-49509
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2024-11-12 · Analyzed
7.8EPSS 0.005
CVE-2025-43550
Acrobat Reader | Use After Free (CWE-416)
Published 2025-06-10 · Analyzed
7.8EPSS 0.005
CVE-2025-43577
Acrobat Reader | Use After Free (CWE-416)
Published 2025-06-10 · Analyzed
7.8EPSS 0.005
CVE-2022-28852
Adobe InDesign 2022 Out-of-Bound Write Arbitrary code execution
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-28853
Adobe InDesign 2022 Out-of-Bound Write Arbitrary code execution
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2025-27158
Acrobat Reader | Access of Uninitialized Pointer (CWE-824)
Published 2025-03-11 · Analyzed
7.8EPSS 0.004
CVE-2025-43573
Acrobat Reader | Use After Free (CWE-416)
Published 2025-06-10 · Analyzed
7.8EPSS 0.004
CVE-2025-43574
Acrobat Reader | Use After Free (CWE-416)
Published 2025-06-10 · Analyzed
7.8EPSS 0.004
CVE-2022-28832
Adobe InDesign Font Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2023-09-11 · Modified
7.8EPSS 0.004
CVE-2023-42902
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Sonoma 14.2. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Published 2023-12-12 · Modified
7.8EPSS 0.004
CVE-2024-52982
Animate | Improper Input Validation (CWE-20)
Published 2024-12-10 · Analyzed
7.8EPSS 0.004
← Prev63 / 176Next →