VendorsApplemacosall versions
Vulnerabilities

Apple MACOS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7077CVEs
CVE-2025-54218
InCopy | Out-of-bounds Write (CWE-787)
Published 2025-08-12 · Analyzed
7.8EPSS 0.003
CVE-2025-54216
InCopy | Out-of-bounds Write (CWE-787)
Published 2025-08-12 · Analyzed
7.8EPSS 0.003
CVE-2023-27949
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, macOS Monterey 12.6.4, iOS 15.7.4 and iPadOS 15.7.4. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Published 2023-05-08 · Modified
7.8EPSS 0.003
CVE-2025-24277
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to gain root privileges.
Published 2025-03-31 · Modified
7.8EPSS 0.003
CVE-2025-54221
InCopy | Out-of-bounds Write (CWE-787)
Published 2025-08-12 · Analyzed
7.8EPSS 0.003
CVE-2023-32379
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.4. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-09-06 · Modified
7.8EPSS 0.003
CVE-2023-32734
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.6 and iPadOS 16.6, tvOS 16.6, macOS Ventura 13.5, watchOS 9.6. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-07-27 · Modified
7.8EPSS 0.003
CVE-2020-7288
Privilege Escalation vulnerability in EDR for Mac
Published 2020-05-08 · Modified
7.8EPSS 0.003
CVE-2020-7291
Privilege Escalation vulnerability MAR for Mac
Published 2020-05-08 · Modified
7.8EPSS 0.003
CVE-2025-54215
InCopy | Out-of-bounds Write (CWE-787)
Published 2025-08-12 · Analyzed
7.8EPSS 0.003
CVE-2025-54207
InDesign Desktop | Access of Uninitialized Pointer (CWE-824)
Published 2025-08-12 · Analyzed
7.8EPSS 0.003
CVE-2025-9328
Foxit PDF Reader PRC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2025-09-02 · Analyzed
7.8EPSS 0.003
CVE-2025-9329
Foxit PDF Reader PRC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2025-09-02 · Analyzed
7.8EPSS 0.003
CVE-2025-30449
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to gain root privileges.
Published 2025-03-31 · Modified
7.8EPSS 0.003
CVE-2025-43196
A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An app may be able to gain root privileges.
Published 2025-07-29 · Modified
7.8EPSS 0.002
CVE-2025-47107
InCopy | Heap-based Buffer Overflow (CWE-122)
Published 2025-06-10 · Analyzed
7.8EPSS 0.002
CVE-2022-42858
A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.1. An app may be able to execute arbitrary code with kernel privileges
Published 2023-04-10 · Modified
7.8EPSS 0.002
CVE-2023-23516
The issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.7.3, macOS Ventura 13.2, macOS Monterey 12.6.3. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-06-23 · Modified
7.8EPSS 0.002
CVE-2020-36615
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.0.1. Processing a maliciously crafted font may lead to arbitrary code execution.
Published 2023-08-14 · Modified
7.8EPSS 0.002
CVE-2023-44209
Local privilege escalation due to improper soft link handling. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 29051, Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186.
Published 2023-10-04 · Modified
7.8EPSS 0.002
CVE-2024-23285
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sonoma 14.4. An app may be able to create symlinks to protected regions of the disk.
Published 2024-03-08 · Modified
7.8EPSS 0.002
CVE-2021-30827
A permissions issue existed. This issue was addressed with improved permission validation. This issue is fixed in Security Update 2021-005 Catalina, macOS Big Sur 11.6. A local attacker may be able to elevate their privileges.
Published 2021-10-19 · Modified
7.8EPSS 0.002
CVE-2026-21276
InDesign Desktop | Access of Uninitialized Pointer (CWE-824)
Published 2026-01-13 · Analyzed
7.8EPSS 0.002
CVE-2026-21275
InDesign Desktop | Access of Uninitialized Pointer (CWE-824)
Published 2026-01-13 · Analyzed
7.8EPSS 0.002
CVE-2025-34189
Vasion Print (formerly PrinterLogic) Insecure Inter-Process Communication Allows Local Session Hijacking
Published 2025-09-19 · Modified
7.8EPSS 0.002
CVE-2023-27969
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, tvOS 16.4, watchOS 9.4. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-05-08 · Modified
7.8EPSS 0.002
CVE-2025-23315
NVIDIA NeMo Framework for all platforms contains a vulnerability in the export and deploy component, where malicious data created by an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.
Published 2025-08-26 · Analyzed
7.8EPSS 0.002
CVE-2022-37877
A vulnerability in the ClearPass OnGuard macOS agent could allow malicious users on a macOS instance to elevate their user privileges. A successful exploit could allow these users to execute arbitrary code with root level privileges on the macOS instance in Aruba ClearPass Policy Manager version(s): 6.10.x: 6.10.6 and below; 6.9.x: 6.9.11 and below. Aruba has released upgrades for Aruba ClearPass Policy Manager that address this security vulnerability.
Published 2022-09-20 · Modified
7.8EPSS 0.002
CVE-2023-32405
A logic issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. An app may be able to gain root privileges.
Published 2023-06-23 · Modified
7.8EPSS 0.002
CVE-2024-54522
The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, tvOS 18.2, watchOS 11.2. An app may be able to corrupt coprocessor memory.
Published 2025-01-27 · Modified
7.8EPSS 0.002
CVE-2023-28209
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
Published 2023-09-06 · Modified
7.8EPSS 0.002
CVE-2023-28210
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
Published 2023-09-06 · Modified
7.8EPSS 0.002
CVE-2023-28211
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
Published 2023-09-06 · Modified
7.8EPSS 0.002
CVE-2023-28212
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
Published 2023-09-06 · Modified
7.8EPSS 0.002
CVE-2023-28213
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
Published 2023-09-06 · Modified
7.8EPSS 0.002
CVE-2023-28214
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
Published 2023-09-06 · Modified
7.8EPSS 0.002
CVE-2023-28215
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
Published 2023-09-06 · Modified
7.8EPSS 0.002
CVE-2023-32356
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
Published 2023-09-06 · Modified
7.8EPSS 0.002
CVE-2023-32381
A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.6.8, iOS 16.6 and iPadOS 16.6, tvOS 16.6, macOS Big Sur 11.7.9, macOS Ventura 13.5, watchOS 9.6. An app may be able to execute arbitrary code with kernel privileges.
Published 2023-07-26 · Modified
7.8EPSS 0.002
CVE-2024-54517
The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, tvOS 18.2, watchOS 11.2. An app may be able to corrupt coprocessor memory.
Published 2025-01-27 · Modified
7.8EPSS 0.002
← Prev80 / 177Next →