VendorsApplexcodeall versions
Vulnerabilities

Apple Xcode

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

97CVEs
CVE-2022-22608
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Xcode 13.3. Opening a maliciously crafted file may lead to unexpected application termination or arbitrary code execution.
Published 2022-03-18 · Modified
7.8EPSS 0.009
CVE-2022-22605
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Xcode 13.3. Opening a maliciously crafted file may lead to unexpected application termination or arbitrary code execution.
Published 2022-03-18 · Modified
7.8EPSS 0.008
CVE-2022-26747
This issue was addressed with improved checks. This issue is fixed in Xcode 13.4. An app may be able to gain elevated privileges.
Published 2022-05-26 · Modified
7.8EPSS 0.006
CVE-2022-29187
Bypass of safe.directory protections in Git
Published 2022-07-12 · Modified
7.8EPSS 0.004
CVE-2016-4705
otool in Apple Xcode before 8 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified vectors, a different vulnerability than CVE-2016-4704.
Published 2016-09-18 · Modified
7.8EPSS 0.003
CVE-2023-32396
This issue was addressed with improved checks. This issue is fixed in Xcode 15, tvOS 17, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to gain elevated privileges.
Published 2023-09-26 · Modified
7.8EPSS 0.003
CVE-2016-1765
otool in Apple Xcode before 7.3 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified vectors.
Published 2016-03-24 · Modified
7.8EPSS 0.003
CVE-2016-4704
otool in Apple Xcode before 8 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified vectors, a different vulnerability than CVE-2016-4705.
Published 2016-09-18 · Modified
7.8EPSS 0.003
CVE-2022-42797
An injection issue was addressed with improved input validation. This issue is fixed in Xcode 14.1. An app may be able to gain root privileges.
Published 2023-02-27 · Modified
7.8EPSS 0.003
CVE-2024-44162
This issue was addressed by enabling hardened runtime. This issue is fixed in Xcode 16. A malicious application may gain access to a user's Keychain items.
Published 2024-09-16 · Modified
7.8EPSS 0.002
CVE-2016-0742
The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (invalid pointer dereference and worker process crash) via a crafted UDP DNS response.
Published 2016-02-15 · Modified
7.5EPSS 0.820
CVE-2017-7529
Nginx versions since 0.5.6 up to and including 1.13.2 are vulnerable to integer overflow vulnerability in nginx range filter module resulting into leak of potentially sensitive information triggered by specially crafted request.
Published 2017-07-13 · Modified
7.5EPSS 0.626
CVE-2014-6394
visionmedia send before 0.8.4 for Node.js uses a partial comparison for verifying whether a directory is within the document root, which allows remote attackers to access restricted directories, as demonstrated using "public-restricted" under a "public" directory.
Published 2014-10-08 · Modified
7.5EPSS 0.043
CVE-2015-7030
The Swift implementation in Apple Xcode before 7.1 mishandles type conversion, which has unspecified impact and attack vectors.
Published 2015-10-23 · Modified
7.5EPSS 0.016
CVE-2015-1149
Integer overflow in the simulator in Swift in Apple Xcode before 6.3 allows context-dependent attackers to cause a denial of service or possibly have unspecified other impact by triggering an incorrect result of a type conversion.
Published 2015-04-10 · Modified
7.5EPSS 0.016
CVE-2024-40862
A privacy issue was addressed by removing sensitive data. This issue is fixed in Xcode 16. An attacker may be able to determine the Apple ID of the owner of the computer.
Published 2024-09-16 · Modified
7.5EPSS 0.005
CVE-2024-44228
This issue was addressed with improved permissions checking. This issue is fixed in Xcode 16. An app may be able to inherit Xcode permissions and access user data.
Published 2024-10-28 · Modified
7.5EPSS 0.004
CVE-2025-43375
The issue was addressed with improved checks. This issue is fixed in Xcode 26. Processing an overly large path value may crash a process.
Published 2025-09-15 · Modified
7.5EPSS 0.003
CVE-2006-5327
Untrusted search path vulnerability in OpenBase SQL 10.0 and earlier, as used in Apple Xcode 2.2 2.2 and earlier and possibly other products, allows local users to execute arbitrary code via a modified PATH that references a malicious gzip program, which is executed by gnutar with certain TAR_OPTIONS environment variable settings, when gnutar is invoked by OpenBase.
Published 2006-10-17 · Modified
7.2EPSS 0.006
CVE-2006-5328
OpenBase SQL 10.0 and earlier, as used in Apple Xcode 2.2 2.2 and earlier and possibly other products, allows local users to create arbitrary files via a symlink attack on the simulation.sql file.
Published 2006-10-17 · Modified
7.2EPSS 0.003
CVE-2025-43263
The issue was addressed with improved checks. This issue is fixed in Xcode 26. An app may be able to read and write files outside of its sandbox.
Published 2025-09-15 · Modified
7.1EPSS 0.002
CVE-2023-27945
This issue was addressed with improved entitlements. This issue is fixed in Xcode 14.3, macOS Big Sur 11.7.7, macOS Monterey 12.6.6. A sandboxed app may be able to collect system logs.
Published 2023-05-08 · Modified
6.3EPSS 0.002
CVE-2026-28889
A permissions issue was addressed with additional restrictions. This issue is fixed in Xcode 26.4. An app may be able to read arbitrary files as root.
Published 2026-03-25 · Analyzed
6.2EPSS 0.001
CVE-2022-39253
Git subject to exposure of sensitive information via local clone of symbolic links
Published 2022-10-19 · Modified
5.5EPSS 0.013
CVE-2021-1800
A path handling issue was addressed with improved validation. This issue is fixed in Xcode 12.4. A malicious application may be able to access arbitrary files on the host device while running an app that uses on-demand resources with Xcode.
Published 2021-04-02 · Modified
5.5EPSS 0.006
CVE-2024-23298
A logic issue was addressed with improved state management. This issue is fixed in Xcode 15.3. An app may bypass Gatekeeper checks.
Published 2024-03-15 · Modified
5.5EPSS 0.005
CVE-2023-40391
The issue was addressed with improved memory handling. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, macOS Sonoma 14, Xcode 15. An app may be able to disclose kernel memory.
Published 2023-09-26 · Modified
5.5EPSS 0.003
CVE-2025-24226
The issue was addressed with improved checks. This issue is fixed in Xcode 16.3. A malicious app may be able to access private information.
Published 2025-03-31 · Modified
5.5EPSS 0.003
CVE-2024-44191
This issue was addressed through improved state management. This issue is fixed in Xcode 16, iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18, visionOS 2, watchOS 11. An app may gain unauthorized access to Bluetooth.
Published 2024-09-16 · Modified
5.5EPSS 0.003
CVE-2023-40435
This issue was addressed by enabling hardened runtime. This issue is fixed in Xcode 15. An app may be able to access App Store credentials.
Published 2023-09-26 · Modified
5.5EPSS 0.002
CVE-2025-30441
This issue was addressed through improved state management. This issue is fixed in Xcode 16.3. An app may be able to overwrite arbitrary files.
Published 2025-03-31 · Modified
5.5EPSS 0.002
CVE-2022-32920
The issue was addressed with improved checks. This issue is fixed in Xcode 14.0. Parsing a file may lead to disclosure of user information.
Published 2023-09-06 · Modified
5.5EPSS 0.002
CVE-2026-65393
A permissions issue was addressed with improved validation. This issue is fixed in Xcode 27, macOS Golden Gate 27. An app may be able to access user-sensitive data.
Published 2026-09-14 · Modified
5.5EPSS 0.002
CVE-2026-28890
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Xcode 26.4. An app may be able to cause unexpected system termination.
Published 2026-03-25 · Analyzed
5.5EPSS 0.001
CVE-2019-20372
NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read unauthorized web pages in environments where NGINX is being fronted by a load balancer.
Published 2020-01-09 · Modified
5.3EPSS 0.150
CVE-2016-0747
The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 does not properly limit CNAME resolution, which allows remote attackers to cause a denial of service (worker process resource consumption) via vectors related to arbitrary name resolution.
Published 2016-02-15 · Modified
5.3EPSS 0.084
CVE-2015-0248
The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 and 1.8.0 through 1.8.11 allow remote attackers to cause a denial of service (assertion failure and abort) via crafted parameter combinations related to dynamically evaluated revision numbers.
Published 2015-04-08 · Modified
5.0EPSS 0.121
CVE-2014-3580
The mod_dav_svn Apache HTTPD server module in Apache Subversion 1.x before 1.7.19 and 1.8.x before 1.8.11 allows remote attackers to cause a denial of service (NULL pointer dereference and server crash) via a REPORT request for a resource that does not exist.
Published 2014-12-18 · Modified
5.0EPSS 0.111
CVE-2015-3184
mod_authz_svn in Apache Subversion 1.7.x before 1.7.21 and 1.8.x before 1.8.14, when using Apache httpd 2.4.x, does not properly restrict anonymous access, which allows remote anonymous users to read hidden files via the path name.
Published 2015-08-12 · Modified
5.0EPSS 0.106
CVE-2014-8108
The mod_dav_svn Apache HTTPD server module in Apache Subversion 1.7.x before 1.7.19 and 1.8.x before 1.8.11 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a request for a URI that triggers a lookup for a virtual transaction name that does not exist.
Published 2014-12-18 · Modified
5.0EPSS 0.101
← Prev2 / 3Next →