VendorsApplemacosall versions
Vulnerabilities

Apple MACOS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7077CVEs
CVE-2023-38615
The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-09-26 · Modified
7.8EPSS 0.003
CVE-2025-43316
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26, visionOS 26. A malicious app may be able to gain root privileges.
Published 2025-09-15 · Modified
7.8EPSS 0.003
CVE-2023-47046
ZDI-CAN-21684: Adobe Audition MP4 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.003
CVE-2023-47063
Adobe Illustrator 2023 CC 27.7 Memory Corruption Out-Of-Bounds-Write Vulnerability IV.
Published 2023-12-13 · Modified
7.8EPSS 0.003
CVE-2023-44330
Adobe Photoshop 2023 CC 24.7 Memory Corruption Vulnerability III.
Published 2023-11-16 · Modified
7.8EPSS 0.003
CVE-2024-40841
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. Processing a maliciously crafted video file may lead to unexpected app termination.
Published 2024-09-16 · Modified
7.8EPSS 0.003
CVE-2025-30310
Dreamweaver Desktop | Access of Resource Using Incompatible Type ('Type Confusion') (CWE-843)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
CVE-2024-41858
Adobe InCopy has an integer overflow vulnerability when parsing SVG file
Published 2024-08-14 · Analyzed
7.8EPSS 0.003
CVE-2023-22239
Adobe After Effects Improper Input Validation Remote Code Execution Vulnerability
Published 2023-02-17 · Modified
7.8EPSS 0.003
CVE-2024-20753
Adobe Photoshop PDF File Parsing Memory Corruption Remote Code Execution Vulnerability
Published 2024-06-13 · Modified
7.8EPSS 0.003
CVE-2025-49564
Illustrator | Stack-based Buffer Overflow (CWE-121)
Published 2025-08-12 · Analyzed
7.8EPSS 0.003
CVE-2026-81987
Acrobat Reader | Integer Overflow or Wraparound (CWE-190)
Published 2026-09-08 · Analyzed
7.8EPSS 0.003
CVE-2025-21158
InDesign Desktop | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published 2025-02-11 · Analyzed
7.8EPSS 0.003
CVE-2023-6288
Code injection in Remote Desktop Manager 2023.3.9.3 and earlier on macOS allows an attacker to execute code via the DYLIB_INSERT_LIBRARIES environment variable.
Published 2023-12-06 · Modified
7.8EPSS 0.003
CVE-2026-48342
Bridge | Integer Overflow or Wraparound (CWE-190)
Published 2026-07-14 · Analyzed
7.8EPSS 0.003
CVE-2026-75863
Photoshop Desktop | Integer Overflow or Wraparound (CWE-190)
Published 2026-09-08 · Analyzed
7.8EPSS 0.003
CVE-2026-75862
Photoshop Desktop | Integer Overflow or Wraparound (CWE-190)
Published 2026-09-08 · Analyzed
7.8EPSS 0.003
CVE-2026-75771
Photoshop Desktop | Integer Overflow or Wraparound (CWE-190)
Published 2026-09-08 · Analyzed
7.8EPSS 0.003
CVE-2026-82007
Photoshop Desktop | Integer Overflow or Wraparound (CWE-190)
Published 2026-09-08 · Analyzed
7.8EPSS 0.003
CVE-2024-49514
Photoshop Desktop | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2023-42904
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Sonoma 14.2. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Published 2023-12-12 · Modified
7.8EPSS 0.003
CVE-2023-42905
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Sonoma 14.2. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Published 2023-12-12 · Modified
7.8EPSS 0.003
CVE-2023-42907
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Sonoma 14.2. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Published 2023-12-12 · Modified
7.8EPSS 0.003
CVE-2023-42903
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Sonoma 14.2. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Published 2023-12-12 · Modified
7.8EPSS 0.003
CVE-2023-42911
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Sonoma 14.2. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Published 2023-12-12 · Modified
7.8EPSS 0.003
CVE-2023-42908
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Sonoma 14.2. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Published 2023-12-12 · Modified
7.8EPSS 0.003
CVE-2023-42901
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Sonoma 14.2. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Published 2023-12-12 · Modified
7.8EPSS 0.003
CVE-2023-42912
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Sonoma 14.2. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Published 2023-12-12 · Modified
7.8EPSS 0.003
CVE-2023-42909
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Sonoma 14.2. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Published 2023-12-12 · Modified
7.8EPSS 0.003
CVE-2025-61824
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2025-11-11 · Analyzed
7.8EPSS 0.003
CVE-2025-61832
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2025-11-11 · Analyzed
7.8EPSS 0.003
CVE-2025-61820
Illustrator | Heap-based Buffer Overflow (CWE-122)
Published 2025-11-11 · Analyzed
7.8EPSS 0.003
CVE-2021-30680
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.4. A local user may be able to load unsigned kernel extensions.
Published 2021-09-08 · Modified
7.8EPSS 0.003
CVE-2024-45142
Substance3D - Stager | Write-what-where Condition (CWE-123)
Published 2024-10-09 · Analyzed
7.8EPSS 0.003
CVE-2022-22669
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3. An application may be able to execute arbitrary code with kernel privileges.
Published 2022-03-18 · Modified
7.8EPSS 0.003
CVE-2025-54209
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2025-08-12 · Analyzed
7.8EPSS 0.003
CVE-2023-26330
ZDI-CAN-20146: Adobe Dimension USD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-03-28 · Modified
7.8EPSS 0.003
CVE-2021-30906
This issue was addressed with improved checks. This issue is fixed in iOS 15.1 and iPadOS 15.1, macOS Monterey 12.0.1, tvOS 15.1, watchOS 8.1, macOS Big Sur 11.6.1. A local attacker may be able to elevate their privileges.
Published 2021-08-24 · Modified
7.8EPSS 0.003
CVE-2022-22617
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. An application may be able to gain elevated privileges.
Published 2022-03-18 · Modified
7.8EPSS 0.003
CVE-2021-30945
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.6.2, tvOS 15.2, macOS Monterey 12.1, Security Update 2021-008 Catalina, iOS 15.2 and iPadOS 15.2, watchOS 8.3. A local attacker may be able to elevate their privileges.
Published 2021-08-24 · Modified
7.8EPSS 0.003
← Prev74 / 177Next →