VendorsApplemacosall versions
Vulnerabilities

Apple MACOS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7077CVEs
CVE-2023-32384
A buffer overflow was addressed with improved bounds checking. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. Processing an image may lead to arbitrary code execution.
Published 2023-06-23 · Modified
7.8EPSS 0.003
CVE-2025-43557
Animate | Access of Uninitialized Pointer (CWE-824)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
CVE-2025-30324
Photoshop Desktop | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
CVE-2025-30325
Photoshop Desktop | Integer Overflow or Wraparound (CWE-190)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
CVE-2024-45144
Substance3D - Stager | Out-of-bounds Write (CWE-787)
Published 2024-10-09 · Analyzed
7.8EPSS 0.003
CVE-2024-45152
Substance3D - Stager | Out-of-bounds Write (CWE-787)
Published 2024-10-09 · Analyzed
7.8EPSS 0.003
CVE-2024-45141
Substance3D - Stager | Out-of-bounds Write (CWE-787)
Published 2024-10-09 · Analyzed
7.8EPSS 0.003
CVE-2025-49561
Animate | Use After Free (CWE-416)
Published 2025-08-12 · Analyzed
7.8EPSS 0.003
CVE-2024-45140
Substance3D - Stager | Out-of-bounds Write (CWE-787)
Published 2024-10-09 · Analyzed
7.8EPSS 0.003
CVE-2024-45150
Dimension | Out-of-bounds Write (CWE-787)
Published 2024-10-09 · Analyzed
7.8EPSS 0.003
CVE-2025-24139
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.3, macOS Sonoma 14.7.3, macOS Ventura 13.7.3, macOS Ventura 13.7.5. Parsing a maliciously crafted file may lead to an unexpected app termination.
Published 2025-01-27 · Modified
7.8EPSS 0.003
CVE-2023-23536
The issue was addressed with improved bounds checks. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, macOS Big Sur 11.7.5, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6.4, tvOS 16.4, watchOS 9.4. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-05-08 · Modified
7.8EPSS 0.003
CVE-2025-24234
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. A malicious app may be able to gain root privileges.
Published 2025-03-31 · Modified
7.8EPSS 0.003
CVE-2024-23270
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5, tvOS 17.4. An app may be able to execute arbitrary code with kernel privileges.
Published 2024-03-08 · Modified
7.8EPSS 0.003
CVE-2025-54211
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2025-08-12 · Analyzed
7.8EPSS 0.003
CVE-2022-46828
In JetBrains IntelliJ IDEA before 2022.3 a DYLIB injection on macOS was possible.
Published 2022-12-08 · Modified
7.8EPSS 0.003
CVE-2024-23294
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sonoma 14.4. Processing malicious input may lead to code execution.
Published 2024-03-08 · Modified
7.8EPSS 0.003
CVE-2025-27168
Illustrator | Stack-based Buffer Overflow (CWE-121)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2025-43590
InDesign Desktop | Out-of-bounds Write (CWE-787)
Published 2025-06-10 · Analyzed
7.8EPSS 0.003
CVE-2024-47451
Illustrator | Out-of-bounds Write (CWE-787)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2024-47452
Illustrator | Out-of-bounds Write (CWE-787)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2025-43558
InDesign Desktop | Out-of-bounds Write (CWE-787)
Published 2025-06-10 · Analyzed
7.8EPSS 0.003
CVE-2025-43593
InDesign Desktop | Out-of-bounds Write (CWE-787)
Published 2025-06-10 · Analyzed
7.8EPSS 0.003
CVE-2025-30318
InDesign Desktop | Out-of-bounds Write (CWE-787)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
CVE-2022-32940
The issue was addressed with improved bounds checks. This issue is fixed in tvOS 16.1, iOS 16.1 and iPadOS 16, macOS Ventura 13, watchOS 9.1. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-11-01 · Modified
7.8EPSS 0.003
CVE-2025-21122
Photoshop Desktop | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published 2025-01-14 · Analyzed
7.8EPSS 0.003
CVE-2025-21135
Animate | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published 2025-01-14 · Analyzed
7.8EPSS 0.003
CVE-2022-32914
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.7, macOS Ventura 13, iOS 16, watchOS 9, macOS Monterey 12.6, tvOS 16. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-11-01 · Modified
7.8EPSS 0.003
CVE-2026-21277
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2026-01-13 · Analyzed
7.8EPSS 0.003
CVE-2026-21304
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2026-01-13 · Analyzed
7.8EPSS 0.003
CVE-2024-39381
After Effects | Out-of-bounds Write (CWE-787)
Published 2024-09-13 · Analyzed
7.8EPSS 0.003
CVE-2025-61814
InDesign Desktop | Use After Free (CWE-416)
Published 2025-11-11 · Analyzed
7.8EPSS 0.003
CVE-2025-61815
InDesign Desktop | Use After Free (CWE-416)
Published 2025-11-11 · Analyzed
7.8EPSS 0.003
CVE-2022-32915
A type confusion issue was addressed with improved checks. This issue is fixed in macOS Ventura 13. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-11-01 · Modified
7.8EPSS 0.003
CVE-2020-27899
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Big Sur 11.0.1, watchOS 7.1, tvOS 14.2. A local attacker may be able to elevate their privileges.
Published 2021-04-02 · Modified
7.8EPSS 0.003
CVE-2024-45137
InDesign Desktop | Unrestricted Upload of File with Dangerous Type (CWE-434)
Published 2024-10-09 · Analyzed
7.8EPSS 0.003
CVE-2024-45136
InCopy | Unrestricted Upload of File with Dangerous Type (CWE-434)
Published 2024-10-09 · Analyzed
7.8EPSS 0.003
CVE-2022-32826
An authorization issue was addressed with improved state management. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Big Sur 11.6.8, watchOS 8.7, tvOS 15.6, macOS Monterey 12.5, Security Update 2022-005 Catalina. An app may be able to gain root privileges.
Published 2022-09-23 · Modified
7.8EPSS 0.003
CVE-2025-9815
alaneuler batteryKid NSXPCListener PrivilegeHelper.swift missing authentication
Published 2025-09-02 · Analyzed
7.8EPSS 0.003
CVE-2022-32860
An out-of-bounds write was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5, macOS Big Sur 11.6.8. An app may be able to execute arbitrary code with kernel privileges.
Published 2022-12-15 · Modified
7.8EPSS 0.003
← Prev77 / 177Next →