VendorsApplemacosall versions
Vulnerabilities

Apple MACOS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7077CVEs
CVE-2024-54529
A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Ventura 13.7.2. An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges.
Published 2024-12-11 · Modified
7.8EPSS 0.003
CVE-2023-47041
ZDI-CAN-21697: Adobe Media Encoder MP4 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.003
CVE-2025-8672
TCC Bypass via Inherited Permissions in Bundled Interpreter in GIMP.app
Published 2025-08-11 · Analyzed
7.8EPSS 0.003
CVE-2025-43546
Bridge | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
CVE-2025-43545
Bridge | Access of Uninitialized Pointer (CWE-824)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
CVE-2022-34235
Adobe Premiere Elements Uncontrolled Search Path Element Privilege Escalation
Published 2022-08-11 · Modified
7.8EPSS 0.003
CVE-2026-20698
The issue was addressed with improved memory handling. This issue is fixed in iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, tvOS 26.4, visionOS 26.4, watchOS 26.4. An app may be able to cause unexpected system termination or corrupt kernel memory.
Published 2026-03-25 · Modified
7.8EPSS 0.003
CVE-2023-21574
Adobe Photoshop Improper Input Validation Remote Code Execution Vulnerability
Published 2023-02-17 · Modified
7.8EPSS 0.003
CVE-2023-21588
Adobe InDesign Improper Input Validation Remote Code Execution Vulnerability
Published 2023-01-13 · Modified
7.8EPSS 0.003
CVE-2021-30784
Multiple issues were addressed with improved logic. This issue is fixed in macOS Big Sur 11.5. A local attacker may be able to execute code on the Apple T2 Security Chip.
Published 2021-09-08 · Modified
7.8EPSS 0.003
CVE-2023-22228
Adobe Bridge Improper Input Validation Remote Code Execution Vulnerability
Published 2023-02-17 · Modified
7.8EPSS 0.003
CVE-2023-26388
ZDI-CAN-20286: Adobe Substance 3D Stager USDZ File Parsing Memory Corruption Remote Code Execution Vulnerability
Published 2023-04-12 · Modified
7.8EPSS 0.003
CVE-2024-30296
When Animate parses FLA files, there is an out-of-bounds write vulnerability at animate+0x123df28
Published 2024-05-16 · Analyzed
7.8EPSS 0.003
CVE-2024-30297
When Adobe Animate parses FLA files, there is a heap out-of-bounds write vulnerability at Animate.exe+0x125D391
Published 2024-05-16 · Analyzed
7.8EPSS 0.003
CVE-2025-27161
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2023-23525
This issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, macOS Big Sur 11.7.5. An app may be able to gain root privileges.
Published 2023-05-08 · Modified
7.8EPSS 0.003
CVE-2025-24173
This issue was addressed with additional entitlement checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. An app may be able to break out of its sandbox.
Published 2025-03-31 · Modified
7.8EPSS 0.003
CVE-2022-42820
A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 16.1 and iPadOS 16, macOS Ventura 13. An app may cause unexpected app termination or arbitrary code execution.
Published 2022-11-01 · Modified
7.8EPSS 0.003
CVE-2024-39380
After Effects | Heap-based Buffer Overflow (CWE-122)
Published 2024-09-13 · Analyzed
7.8EPSS 0.003
CVE-2024-47441
After Effects | Out-of-bounds Write (CWE-787)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2021-30739
A local attacker may be able to elevate their privileges. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave. A memory corruption issue was addressed with improved validation.
Published 2021-09-08 · Modified
7.8EPSS 0.003
CVE-2025-24159
A validation issue was addressed with improved logic. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, macOS Sonoma 14.7.3, tvOS 18.3, visionOS 2.3, watchOS 11.3. An app may be able to execute arbitrary code with kernel privileges.
Published 2025-01-27 · Modified
7.8EPSS 0.003
CVE-2024-47443
After Effects | Out-of-bounds Write (CWE-787)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2024-47442
After Effects | Out-of-bounds Write (CWE-787)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2024-45109
Photoshop Desktop | Out-of-bounds Write (CWE-787)
Published 2024-09-13 · Analyzed
7.8EPSS 0.003
CVE-2024-45108
Photoshop Desktop | Out-of-bounds Write (CWE-787)
Published 2024-09-13 · Analyzed
7.8EPSS 0.003
CVE-2025-27162
Acrobat Reader | Access of Uninitialized Pointer (CWE-824)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2025-24453
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2023-25859
Adobe Illustrator Improper Input Validation Remote Code Execution Vulnerability
Published 2023-03-22 · Modified
7.8EPSS 0.003
CVE-2025-27177
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2025-27171
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2022-22631
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. An application may be able to gain elevated privileges.
Published 2022-03-18 · Modified
7.8EPSS 0.003
CVE-2024-45114
Illustrator | Out-of-bounds Write (CWE-787)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2024-37885
Code injection in Nextcloud Desktop Client for macOS
Published 2024-06-14 · Modified
7.8EPSS 0.003
CVE-2023-47057
ZDI-CAN-21764: Adobe Premiere Pro MP4 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.003
CVE-2023-25880
ZDI-CAN-19412: Adobe Dimension GLTF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-03-28 · Modified
7.8EPSS 0.003
CVE-2023-25905
ZDI-CAN-20031: Adobe Dimension OBJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-03-28 · Modified
7.8EPSS 0.003
CVE-2023-26328
ZDI-CAN-20212: Adobe Dimension USD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-03-28 · Modified
7.8EPSS 0.003
CVE-2023-32377
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-09-26 · Modified
7.8EPSS 0.003
CVE-2023-38261
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.6 and iPadOS 16.6, macOS Ventura 13.5. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-07-27 · Modified
7.8EPSS 0.003
← Prev73 / 177Next →