VendorsApplemacosall versions
Vulnerabilities

Apple MACOS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7077CVEs
CVE-2022-32905
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura 13. Processing a maliciously crafted DMG file may lead to arbitrary code execution with system privileges.
Published 2022-11-01 · Modified
7.8EPSS 0.003
CVE-2023-21595
Adobe InCopy Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-01-13 · Modified
7.8EPSS 0.003
CVE-2021-39822
Adobe InDesign BMP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-07-20 · Modified
7.8EPSS 0.003
CVE-2021-1839
The issue was addressed with improved permissions logic. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina, Security Update 2021-003 Mojave. A local attacker may be able to elevate their privileges.
Published 2021-09-08 · Modified
7.8EPSS 0.003
CVE-2021-1853
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.3. A local attacker may be able to elevate their privileges.
Published 2021-09-08 · Modified
7.8EPSS 0.003
CVE-2026-27284
InDesign Desktop | Out-of-bounds Read (CWE-125)
Published 2026-04-14 · Analyzed
7.8EPSS 0.003
CVE-2026-47908
Dreamweaver Desktop | Access of Uninitialized Pointer (CWE-824)
Published 2026-06-09 · Analyzed
7.8EPSS 0.003
CVE-2026-27269
Premiere Pro | Out-of-bounds Read (CWE-125)
Published 2026-03-10 · Analyzed
7.8EPSS 0.003
CVE-2026-27287
InCopy | Out-of-bounds Read (CWE-125)
Published 2026-04-14 · Analyzed
7.8EPSS 0.003
CVE-2026-48340
Bridge | Untrusted Pointer Dereference (CWE-822)
Published 2026-07-14 · Analyzed
7.8EPSS 0.003
CVE-2026-80161
Acrobat Reader | Access of Resource Using Incompatible Type ('Type Confusion') (CWE-843)
Published 2026-09-08 · Analyzed
7.8EPSS 0.003
CVE-2026-79907
Acrobat Reader | Double Free (CWE-415)
Published 2026-09-08 · Analyzed
7.8EPSS 0.003
CVE-2024-20782
Adobe Indesign WMF File Parsing Out Of Bound Write
Published 2024-07-09 · Modified
7.8EPSS 0.003
CVE-2024-39384
Premiere Pro | Out-of-bounds Write (CWE-787)
Published 2024-09-13 · Analyzed
7.8EPSS 0.003
CVE-2024-30271
Adobe Illustrator 2023 CC 27.7 Memory Corruption Out-Of-Bounds-Write Vulnerability III.
Published 2024-04-11 · Analyzed
7.8EPSS 0.003
CVE-2023-21589
Adobe InDesign Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-01-13 · Modified
7.8EPSS 0.003
CVE-2023-22230
Adobe Bridge Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-02-17 · Modified
7.8EPSS 0.003
CVE-2024-30272
Adobe Illustrator 2024 GIF file parsing Out-Of-Bound Write remote code execution vulnerabiity
Published 2024-04-11 · Analyzed
7.8EPSS 0.003
CVE-2023-25866
Adobe Substance 3D Stager OBJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-03-27 · Modified
7.8EPSS 0.003
CVE-2023-25870
Adobe Substance 3D Stager SVG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-03-27 · Modified
7.8EPSS 0.003
CVE-2023-26373
Adobe Dimension has an arbitrary address write vulnerability when parsing USDZ files
Published 2023-04-12 · Modified
7.8EPSS 0.003
CVE-2024-40784
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing a maliciously crafted file may lead to unexpected app termination.
Published 2024-07-29 · Modified
7.8EPSS 0.003
CVE-2025-43277
The issue was addressed with improved memory handling. This issue is fixed in iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, macOS Sonoma 14.8, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing a maliciously crafted audio file may lead to memory corruption.
Published 2025-07-29 · Modified
7.8EPSS 0.003
CVE-2026-21283
Bridge | Heap-based Buffer Overflow (CWE-122)
Published 2026-01-13 · Analyzed
7.8EPSS 0.003
CVE-2025-54223
InCopy | Use After Free (CWE-416)
Published 2025-08-12 · Analyzed
7.8EPSS 0.003
CVE-2022-32944
A memory corruption issue was addressed with improved state management. This issue is fixed in tvOS 16.1, iOS 15.7.1 and iPadOS 15.7.1, macOS Ventura 13, watchOS 9.1, iOS 16.1 and iPadOS 16, macOS Monterey 12.6.1, macOS Big Sur 11.7.1. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-11-01 · Modified
7.8EPSS 0.003
CVE-2024-40812
A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, visionOS 1.3, watchOS 10.6. A shortcut may be able to bypass Internet permission requirements.
Published 2024-07-29 · Modified
7.8EPSS 0.003
CVE-2025-31280
A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.6. Processing a maliciously crafted file may lead to heap corruption.
Published 2025-07-29 · Modified
7.8EPSS 0.003
CVE-2022-32814
A type confusion issue was addressed with improved state handling. This issue is fixed in watchOS 8.7, tvOS 15.6, iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-09-23 · Modified
7.8EPSS 0.003
CVE-2022-32820
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Big Sur 11.6.8, watchOS 8.7, tvOS 15.6, macOS Monterey 12.5, Security Update 2022-005 Catalina. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-09-23 · Modified
7.8EPSS 0.003
CVE-2022-32865
The issue was addressed with improved memory handling. This issue is fixed in iOS 16, macOS Ventura 13. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-11-01 · Modified
7.8EPSS 0.003
CVE-2025-21127
Photoshop Desktop | Uncontrolled Search Path Element (CWE-427)
Published 2025-01-14 · Analyzed
7.8EPSS 0.003
CVE-2025-24452
InDesign Desktop | Out-of-bounds Write (CWE-787)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2025-43547
Bridge | Integer Overflow or Wraparound (CWE-190)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
CVE-2025-30464
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to cause unexpected system termination or corrupt kernel memory.
Published 2025-03-31 · Modified
7.8EPSS 0.003
CVE-2025-43556
Animate | Integer Overflow or Wraparound (CWE-190)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
CVE-2025-21157
InDesign Desktop | Out-of-bounds Write (CWE-787)
Published 2025-02-11 · Analyzed
7.8EPSS 0.003
CVE-2025-30324
Photoshop Desktop | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
CVE-2021-30829
A URI parsing issue was addressed with improved parsing. This issue is fixed in Security Update 2021-005 Catalina, macOS Big Sur 11.6. A local user may be able to execute arbitrary files.
Published 2021-10-19 · Modified
7.8EPSS 0.003
CVE-2025-43555
Animate | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
← Prev76 / 177Next →