Apple

macOS

2324 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Published 14.05.2024 15:13:03
  • Last modified 14.03.2025 19:15:45

An authorization issue was addressed with improved state management. This issue is fixed in macOS Sonoma 14.5. An attacker may be able to elevate privileges.

  • EPSS 0.08%
  • Published 14.05.2024 15:13:01
  • Last modified 09.12.2024 19:28:42

A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, macOS Monterey 12.7.5, macOS Ventura 13.6.7, macOS Sonoma 14.4. An app may be able to access user-sensitive data.

  • EPSS 0.04%
  • Published 14.05.2024 14:58:48
  • Last modified 27.03.2025 20:15:21

A correctness issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5. An app may be able to read arbitrary files.

  • EPSS 0.03%
  • Published 14.05.2024 14:58:46
  • Last modified 09.12.2024 17:37:58

This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Monterey 12.7.5, macOS Ventura 13.6.5, macOS Sonoma 14.4. A malicious application may be able to access Find My data.

Exploit
  • EPSS 1.41%
  • Published 07.05.2024 19:15:08
  • Last modified 20.12.2024 17:18:09

Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • EPSS 0.07%
  • Published 24.04.2024 17:15:47
  • Last modified 12.12.2024 14:33:00

A logic issue was addressed with improved checks. This issue is fixed in iOS 17.3 and iPadOS 17.3, Safari 17.3, tvOS 17.3, macOS Sonoma 14.3, watchOS 10.3. A malicious website may cause unexpected cross-origin behavior.

  • EPSS 0.03%
  • Published 24.04.2024 17:15:47
  • Last modified 12.12.2024 14:33:00

The issue was addressed with improved checks. This issue is fixed in iOS 17.3 and iPadOS 17.3, tvOS 17.3, macOS Ventura 13.6.4, iOS 16.7.5 and iPadOS 16.7.5, macOS Monterey 12.7.3, macOS Sonoma 14.3. An app may be able to corrupt coprocessor memory.

  • EPSS 5.95%
  • Published 04.04.2024 20:15:08
  • Last modified 30.06.2025 12:59:08

Faulty input validation in the core of Apache allows malicious or exploitable backend/content generators to split HTTP responses. This issue affects Apache HTTP Server: through 2.4.58.

  • EPSS 1.22%
  • Published 04.04.2024 20:15:08
  • Last modified 30.06.2025 12:55:47

HTTP Response splitting in multiple modules in Apache HTTP Server allows an attacker that can inject malicious response headers into backend applications to cause an HTTP desynchronization attack. Users are recommended to upgrade to version 2.4.59, ...

  • EPSS 0.28%
  • Published 28.03.2024 16:15:08
  • Last modified 21.11.2024 08:23:29

This issue was addressed through improved state management. This issue is fixed in macOS Sonoma 14.2. Remote Login sessions may be able to obtain full disk access permissions.