📦 Tvos

by Apple

🔍 What is Tvos?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-43359

CRITICAL CVSS 9.8 Sep 15, 2025

This CVE describes a UDP socket binding vulnerability in Apple operating systems where a UDP server socket bound to a local interface may unexpectedly become bound to all interfaces. This affects mult...

CVE-2025-43342

CRITICAL CVSS 9.8 Sep 15, 2025

This vulnerability in Apple's Safari browser and related operating systems allows processing malicious web content to cause unexpected process crashes. It affects users of Safari, iOS, iPadOS, tvOS, w...

CVE-2025-43347

CRITICAL CVSS 9.8 Sep 15, 2025

An input validation vulnerability in Apple operating systems allows attackers to execute arbitrary code or cause denial of service by sending specially crafted input. This affects users of visionOS, t...

CVE-2025-31255

CRITICAL CVSS 9.8 Sep 15, 2025

This CVE describes an authorization bypass vulnerability in Apple operating systems that allows malicious apps to access sensitive user data without proper permissions. It affects multiple Apple platf...

CVE-2025-43234

CRITICAL CVSS 9.8 Jul 30, 2025

This CVE describes memory corruption vulnerabilities in Apple's graphics processing that could allow arbitrary code execution. Attackers can exploit these flaws by tricking users into processing malic...

CVE-2025-43209

CRITICAL CVSS 9.8 Jul 30, 2025

This is a critical out-of-bounds memory access vulnerability in Apple's Safari browser across multiple Apple operating systems. Processing malicious web content can cause Safari to crash unexpectedly,...

CVE-2025-31281

CRITICAL CVSS 9.1 Jul 30, 2025

This CVE describes an input validation vulnerability in Apple operating systems that allows maliciously crafted files to cause unexpected app termination. The vulnerability affects visionOS, tvOS, mac...

CVE-2025-43186

CRITICAL CVSS 9.8 Jul 30, 2025

This is a critical memory corruption vulnerability in Apple's file parsing components across multiple operating systems. Exploitation could allow arbitrary code execution when processing malicious fil...

CVE-2025-31200

CRITICAL CVSS 9.8 Apr 16, 2025

This is a critical memory corruption vulnerability in Apple's media processing that allows remote code execution via malicious audio streams. Attackers can exploit it by tricking users into opening cr...

CVE-2025-31182

CRITICAL CVSS 9.8 Mar 31, 2025

This vulnerability allows malicious applications to delete files they shouldn't have permission to access by exploiting improper symlink handling. It affects Apple devices running vulnerable versions ...

CVE-2025-30426

CRITICAL CVSS 9.8 Mar 31, 2025

This vulnerability allows an app to enumerate a user's installed applications without proper authorization. It affects Apple devices running vulnerable versions of visionOS, tvOS, iPadOS, iOS, and mac...

CVE-2025-24230

CRITICAL CVSS 9.8 Mar 31, 2025

This CVE describes an out-of-bounds read vulnerability in Apple's audio file processing that could allow unexpected app termination. Attackers could exploit this by tricking users into playing malicio...

CVE-2025-24211

CRITICAL CVSS 9.8 Mar 31, 2025

A memory corruption vulnerability in Apple's video processing components allows attackers to cause unexpected app termination or corrupt process memory by tricking users into opening malicious video f...

CVE-2025-24190

CRITICAL CVSS 9.8 Mar 31, 2025

This is a critical memory corruption vulnerability in Apple's video processing components across multiple operating systems. Processing a maliciously crafted video file can cause unexpected applicatio...

CVE-2025-24178

CRITICAL CVSS 9.8 Mar 31, 2025

This vulnerability allows a malicious app to escape its sandbox restrictions on affected Apple operating systems, potentially gaining unauthorized access to system resources or other apps' data. It af...

CVE-2025-24085

CRITICAL CVSS 10.0 Jan 27, 2025

This CVE describes a use-after-free vulnerability (CWE-416) in Apple operating systems that allows malicious applications to elevate privileges. It affects iOS, iPadOS, visionOS, macOS, watchOS, and t...

CVE-2024-54534

CRITICAL CVSS 9.8 Dec 12, 2024

This is a critical memory corruption vulnerability in Apple's WebKit browser engine that affects multiple Apple operating systems and Safari. Processing malicious web content could allow attackers to ...

CVE-2024-44206

CRITICAL CVSS 9.3 Oct 24, 2024

This vulnerability allows users to bypass web content restrictions through improper URL protocol handling in Apple operating systems and Safari. It affects users running vulnerable versions of tvOS, v...

CVE-2023-40414

CRITICAL CVSS 9.8 Jan 10, 2024

This is a critical use-after-free vulnerability in Apple's WebKit browser engine that allows arbitrary code execution when processing malicious web content. It affects all Apple devices running outdat...

CVE-2023-40400

CRITICAL CVSS 9.8 Sep 27, 2023

This vulnerability allows a remote attacker to cause unexpected app termination or execute arbitrary code on affected Apple devices. It affects multiple Apple operating systems including iOS, iPadOS, ...

CVE-2026-20700

HIGH CVSS 7.8 Feb 11, 2026

A memory corruption vulnerability in Apple operating systems allows attackers with memory write capability to execute arbitrary code. This affects watchOS, tvOS, macOS, visionOS, iOS, and iPadOS versi...

CVE-2026-20641

HIGH CVSS 7.1 Feb 11, 2026

This CVE describes a privacy vulnerability in Apple operating systems where an app could potentially identify what other apps a user has installed, exposing sensitive user data. It affects multiple Ap...

CVE-2026-20649

HIGH CVSS 7.5 Feb 11, 2026

This CVE describes a logging vulnerability where sensitive user information was not properly redacted in system logs. Attackers with access to log files could potentially view private user data. The v...

CVE-2026-20650

HIGH CVSS 7.5 Feb 11, 2026

This CVE describes a Bluetooth denial-of-service vulnerability affecting multiple Apple operating systems. An attacker in a privileged network position can send crafted Bluetooth packets to cause deni...

CVE-2026-20628

HIGH CVSS 7.1 Feb 11, 2026

This CVE describes a sandbox escape vulnerability in multiple Apple operating systems where an app can bypass its security restrictions. It affects users of watchOS, tvOS, macOS, iOS, iPadOS, and visi...

CVE-2026-20617

HIGH CVSS 7.0 Feb 11, 2026

A race condition vulnerability in Apple operating systems allows malicious applications to potentially gain root privileges. This affects users running vulnerable versions of iOS, iPadOS, macOS, watch...

CVE-2026-20611

HIGH CVSS 7.1 Feb 11, 2026

This CVE describes an out-of-bounds memory access vulnerability in Apple's media file processing across multiple operating systems. Attackers can craft malicious media files that cause application cra...

CVE-2025-43529

HIGH CVSS 8.8 Dec 17, 2025

A use-after-free vulnerability in Apple's WebKit browser engine allows processing malicious web content to execute arbitrary code. This affects multiple Apple operating systems and Safari browser vers...

CVE-2025-43520

HIGH CVSS 7.1 Dec 12, 2025

This CVE describes a memory corruption vulnerability in Apple operating systems that could allow a malicious application to cause system crashes or write to kernel memory. It affects multiple Apple pl...

CVE-2025-43510

HIGH CVSS 7.8 Dec 12, 2025

This CVE describes a memory corruption vulnerability in Apple operating systems that could allow a malicious application to manipulate shared memory between processes. The issue affects multiple Apple...

CVE-2025-14174

HIGH CVSS 8.8 Dec 12, 2025

This vulnerability allows remote attackers to perform out-of-bounds memory access in ANGLE (Almost Native Graphics Layer Engine) in Google Chrome on macOS. Attackers can exploit this by tricking users...

CVE-2025-43407

HIGH CVSS 7.8 Nov 4, 2025

This vulnerability allows an application to escape its sandbox restrictions on affected Apple operating systems. It affects users running vulnerable versions of tvOS, macOS, iOS, iPadOS, and visionOS....

CVE-2025-43386

HIGH CVSS 7.8 Nov 4, 2025

An out-of-bounds memory access vulnerability in Apple's media file processing allows malicious media files to cause application crashes or memory corruption. This affects users of Apple's operating sy...

CVE-2025-43361

HIGH CVSS 7.8 Nov 4, 2025

This CVE-2025-43361 is an out-of-bounds read vulnerability in Apple operating systems that allows malicious applications to read kernel memory. It affects multiple Apple platforms including iOS, iPadO...

CVE-2025-43323

HIGH CVSS 8.1 Nov 4, 2025

This vulnerability allows apps to bypass entitlement checks and fingerprint users on Apple devices. It affects visionOS, tvOS, iOS, iPadOS, and watchOS before version 26. The issue enables unauthorize...

CVE-2025-43329

HIGH CVSS 8.8 Sep 15, 2025

This CVE describes a sandbox escape vulnerability in Apple's mobile operating systems where an app can bypass its security restrictions. It affects iOS, iPadOS, tvOS, and watchOS users running vulnera...

CVE-2025-43224

HIGH CVSS 7.1 Jul 30, 2025

An out-of-bounds memory access vulnerability in Apple's media processing components allows attackers to cause denial of service or potentially execute arbitrary code by tricking users into opening mal...

CVE-2025-43227

HIGH CVSS 7.5 Jul 30, 2025

This vulnerability in Apple's WebKit browser engine allows malicious web content to bypass security controls and access sensitive user information. It affects Safari and all Apple operating systems th...

CVE-2025-24224

HIGH CVSS 7.5 Jul 30, 2025

This vulnerability allows a remote attacker to cause unexpected system termination (crash/reboot) on affected Apple devices. It affects multiple Apple operating systems including iOS, iPadOS, tvOS, ma...

CVE-2025-31273

HIGH CVSS 8.8 Jul 30, 2025

This memory corruption vulnerability in Apple's WebKit browser engine allows attackers to execute arbitrary code by tricking users into visiting malicious websites. It affects Safari and all Apple ope...

CVE-2025-31277

HIGH CVSS 8.8 Jul 30, 2025

This is a memory corruption vulnerability in Apple's WebKit browser engine affecting multiple Apple operating systems. Processing malicious web content could allow attackers to execute arbitrary code ...

CVE-2025-24189

HIGH CVSS 8.8 May 19, 2025

This memory corruption vulnerability in Apple's WebKit browser engine allows attackers to execute arbitrary code by tricking users into visiting malicious websites. It affects Safari and all Apple ope...

CVE-2025-31223

HIGH CVSS 8.0 May 12, 2025

This memory corruption vulnerability in Apple's WebKit browser engine allows attackers to execute arbitrary code by tricking users into visiting malicious websites. It affects all Apple devices runnin...

CVE-2025-31234

HIGH CVSS 8.2 May 12, 2025

This CVE describes a memory corruption vulnerability in Apple operating systems that could allow an attacker to cause system crashes or corrupt kernel memory. The issue affects multiple Apple platform...

CVE-2025-31219

HIGH CVSS 7.1 May 12, 2025

This is a memory corruption vulnerability in Apple operating systems that could allow an attacker to cause system crashes or corrupt kernel memory. It affects multiple Apple platforms including iOS, m...

CVE-2025-31221

HIGH CVSS 7.5 May 12, 2025

This CVE describes an integer overflow vulnerability in multiple Apple operating systems that could allow a remote attacker to leak memory. The vulnerability affects watchOS, macOS, tvOS, iPadOS, iOS,...

CVE-2025-31204

HIGH CVSS 8.8 May 12, 2025

This is a memory corruption vulnerability in Apple's WebKit browser engine affecting multiple Apple operating systems and Safari. Processing malicious web content could allow attackers to execute arbi...

CVE-2025-24223

HIGH CVSS 8.0 May 12, 2025

This is a cross-site request forgery (CSRF) vulnerability in Apple's WebKit browser engine that could allow memory corruption when processing malicious web content. It affects users of Apple devices a...

CVE-2025-24206

HIGH CVSS 7.7 Apr 29, 2025

This CVE describes an authentication bypass vulnerability in multiple Apple operating systems where an attacker on the local network can circumvent authentication policies. The issue affects macOS, tv...

CVE-2025-24252

HIGH CVSS 8.8 Apr 29, 2025

A use-after-free memory corruption vulnerability in Apple operating systems allows local network attackers to corrupt process memory. This affects macOS, iOS, iPadOS, tvOS, and visionOS. Successful ex...

CVE-2023-42970

HIGH CVSS 8.8 Apr 11, 2025

This CVE describes a use-after-free vulnerability in Apple's WebKit browser engine that could allow arbitrary code execution when processing malicious web content. It affects multiple Apple operating ...

CVE-2025-30471

HIGH CVSS 7.5 Mar 31, 2025

A validation logic vulnerability in multiple Apple operating systems allows remote attackers to cause denial-of-service conditions. This affects users running vulnerable versions of visionOS, macOS, t...

CVE-2025-24243

HIGH CVSS 7.8 Mar 31, 2025

This memory handling vulnerability in Apple operating systems allows arbitrary code execution when processing malicious files. Attackers can exploit this to run unauthorized code on affected devices. ...

CVE-2025-24213

HIGH CVSS 7.8 Mar 31, 2025

A type confusion vulnerability in Apple's WebKit browser engine could allow memory corruption when processing floating-point numbers. This affects users of Apple devices running vulnerable versions of...

CVE-2025-24209

HIGH CVSS 7.0 Mar 31, 2025

This CVE describes a buffer overflow vulnerability in Apple's web content processing components. Attackers can cause unexpected process crashes by tricking users into visiting malicious websites. Affe...

CVE-2024-54551

HIGH CVSS 7.5 Mar 21, 2025

This memory handling vulnerability in Apple's web content processing allows attackers to cause denial-of-service conditions. It affects users of Apple devices and software that process web content, in...

CVE-2024-54525

HIGH CVSS 8.8 Mar 17, 2025

This vulnerability allows attackers to modify protected system files by restoring maliciously crafted backup files. It affects Apple devices running vulnerable versions of visionOS, watchOS, tvOS, mac...

CVE-2022-43454

HIGH CVSS 7.8 Mar 10, 2025

A double free vulnerability in Apple operating systems allows malicious applications to execute arbitrary code with kernel privileges. This affects macOS, iOS, iPadOS, tvOS, and watchOS users running ...

CVE-2025-24159

HIGH CVSS 7.8 Jan 27, 2025

This CVE describes a validation logic vulnerability in Apple operating systems that allows an application to execute arbitrary code with kernel privileges. This is a local privilege escalation vulnera...

CVE-2025-24137

HIGH CVSS 8.0 Jan 27, 2025

This CVE describes a type confusion vulnerability in Apple operating systems that could allow a remote attacker to cause application crashes or execute arbitrary code. It affects multiple Apple platfo...

CVE-2026-20675

MEDIUM CVSS 5.5 Feb 11, 2026

This CVE describes an image processing vulnerability in Apple operating systems where improper bounds checks could allow maliciously crafted images to disclose user information. The vulnerability affe...

CVE-2026-20654

MEDIUM CVSS 5.5 Feb 11, 2026

This memory handling vulnerability in Apple operating systems allows an app to cause unexpected system termination (kernel panic/crash). All users running affected Apple operating systems before the p...

CVE-2026-20634

MEDIUM CVSS 5.5 Feb 11, 2026

This memory handling vulnerability in Apple's image processing components allows disclosure of process memory when processing malicious images. It affects multiple Apple operating systems including iO...

CVE-2026-20635

MEDIUM CVSS 4.3 Feb 11, 2026

This CVE describes a memory handling vulnerability in Apple's WebKit browser engine that affects multiple Apple operating systems and Safari. Processing malicious web content could cause unexpected pr...

CVE-2026-20609

MEDIUM CVSS 4.4 Feb 11, 2026

This memory handling vulnerability in Apple operating systems allows processing malicious files to cause denial-of-service or memory disclosure. It affects multiple Apple platforms including iOS, macO...

CVE-2025-43205

MEDIUM CVSS 4.0 Nov 12, 2025

This CVE describes an out-of-bounds memory access vulnerability in Apple operating systems that could allow an app to bypass Address Space Layout Randomization (ASLR). The vulnerability affects multip...

CVE-2025-43392

MEDIUM CVSS 4.3 Nov 4, 2025

This vulnerability allows malicious websites to bypass same-origin policy protections and exfiltrate image data from other websites. It affects users of Apple's Safari browser and operating systems wi...

CVE-2025-43398

MEDIUM CVSS 5.5 Nov 4, 2025

This memory handling vulnerability in Apple operating systems allows applications to cause unexpected system termination (kernel panic/crash). All users running affected Apple OS versions are vulnerab...

CVE-2025-43379

MEDIUM CVSS 5.5 Nov 4, 2025

This CVE describes a symlink validation vulnerability in Apple operating systems that could allow malicious apps to bypass file system protections and access sensitive user data. The vulnerability aff...

CVE-2025-43383

MEDIUM CVSS 4.3 Nov 4, 2025

This CVE describes an out-of-bounds memory access vulnerability in Apple's media file processing. Attackers can craft malicious media files that cause affected applications to crash or corrupt memory ...

CVE-2025-43384

MEDIUM CVSS 4.3 Nov 4, 2025

This CVE describes an out-of-bounds memory access vulnerability in Apple's media file processing. Attackers can craft malicious media files that cause affected Apple devices to crash or corrupt memory...

CVE-2025-43385

MEDIUM CVSS 4.3 Nov 4, 2025

This CVE describes an out-of-bounds memory access vulnerability in Apple's media file processing components. Attackers can craft malicious media files that cause affected applications to crash or corr...

CVE-2025-43345

MEDIUM CVSS 5.5 Nov 4, 2025

This vulnerability allows an application to access sensitive user data due to insufficient access controls. It affects multiple Apple operating systems including iOS, iPadOS, macOS, tvOS, watchOS, and...

CVE-2025-43354

MEDIUM CVSS 5.5 Sep 15, 2025

A logging vulnerability in Apple operating systems allows applications to access sensitive user data that should have been redacted. This affects users running visionOS, tvOS, iOS, iPadOS, and watchOS...

CVE-2025-43355

MEDIUM CVSS 5.5 Sep 15, 2025

A type confusion vulnerability in Apple operating systems allows malicious apps to cause denial-of-service conditions by exploiting memory handling flaws. This affects users running vulnerable version...

CVE-2025-43356

MEDIUM CVSS 6.5 Sep 15, 2025

This vulnerability allows malicious websites to access device sensor data (like motion, orientation, or environmental sensors) without obtaining user permission. It affects Apple devices running vulne...

CVE-2025-43346

MEDIUM CVSS 5.5 Sep 15, 2025

An out-of-bounds memory access vulnerability in Apple media file processing allows attackers to cause application crashes or corrupt process memory by tricking users into opening malicious media files...

CVE-2025-43302

MEDIUM CVSS 5.5 Sep 15, 2025

An out-of-bounds write vulnerability in Apple operating systems allows malicious apps to write beyond allocated memory boundaries, potentially causing system crashes or unexpected termination. This af...

CVE-2025-43303

MEDIUM CVSS 5.5 Sep 15, 2025

This CVE describes a logging vulnerability in Apple operating systems where sensitive user data may not be properly redacted in logs. An application could potentially access this sensitive information...

CVE-2025-43226

MEDIUM CVSS 4.0 Jul 30, 2025

This vulnerability allows an attacker to read memory outside the intended buffer when processing a malicious image. It affects Apple devices running vulnerable versions of watchOS, iOS, iPadOS, tvOS, ...

CVE-2025-43212

MEDIUM CVSS 6.5 Jul 30, 2025

A memory handling vulnerability in Apple WebKit (CWE-119) allows malicious web content to cause Safari to crash unexpectedly. This affects users of Safari and Apple operating systems before the patche...

CVE-2025-43214

MEDIUM CVSS 6.5 Jul 30, 2025

This CVE describes a memory handling vulnerability in Apple's Safari browser and related WebKit components across multiple Apple operating systems. Processing malicious web content could cause Safari ...

CVE-2025-43216

MEDIUM CVSS 6.5 Jul 30, 2025

A use-after-free vulnerability in Apple's Safari browser and related WebKit components allows attackers to cause unexpected crashes by processing malicious web content. This affects users of Safari on...

CVE-2025-31262

MEDIUM CVSS 5.5 May 19, 2025

This CVE describes a permissions vulnerability in Apple operating systems that allows applications to modify protected areas of the file system. The issue affects multiple Apple platforms including iO...

CVE-2025-24184

MEDIUM CVSS 5.5 May 19, 2025

A memory handling vulnerability in Apple operating systems allows an app to cause unexpected system termination (crash/reboot). This affects users of visionOS, iOS, iPadOS, macOS, watchOS, and tvOS wh...

CVE-2025-31251

MEDIUM CVSS 5.5 May 12, 2025

This vulnerability allows processing a maliciously crafted media file to cause unexpected app termination or corrupt process memory. It affects Apple devices running outdated versions of watchOS, macO...

CVE-2025-31257

MEDIUM CVSS 4.7 May 12, 2025

This CVE describes a memory handling vulnerability in Apple's WebKit browser engine that could cause Safari to crash when processing malicious web content. It affects multiple Apple operating systems ...

CVE-2025-31239

MEDIUM CVSS 4.3 May 12, 2025

A use-after-free vulnerability in Apple operating systems allows parsing malicious files to cause unexpected application termination. This affects users of watchOS, macOS, tvOS, iPadOS, iOS, and visio...

CVE-2025-31209

MEDIUM CVSS 6.3 May 12, 2025

An out-of-bounds read vulnerability in Apple operating systems allows attackers to disclose user information by parsing malicious files. This affects users running vulnerable versions of iOS, iPadOS, ...

CVE-2025-31212

MEDIUM CVSS 5.5 May 12, 2025

This vulnerability allows malicious apps to access sensitive user data on Apple devices due to improper state management. It affects users running older versions of iOS, iPadOS, macOS, watchOS, tvOS, ...

CVE-2026-20671

LOW CVSS 3.1 Feb 11, 2026

A logic vulnerability in Apple operating systems allows attackers in privileged network positions to intercept network traffic. This affects multiple Apple platforms including iOS, macOS, watchOS, tvO...

CVE-2025-46279

LOW CVSS 3.3 Dec 17, 2025

This CVE describes an information disclosure vulnerability in Apple operating systems where an app could identify what other apps a user has installed. It affects users of iOS, iPadOS, watchOS, macOS,...

CVE-2025-43533

LOW CVSS 3.5 Dec 17, 2025

This vulnerability involves memory corruption issues in Apple's operating systems that could allow a malicious HID (Human Interface Device) to cause unexpected process crashes. It affects multiple App...

CVE-2025-43531

LOW CVSS 3.1 Dec 17, 2025

This CVE describes a race condition vulnerability in Apple's web content processing that could allow an attacker to cause unexpected process crashes. It affects multiple Apple operating systems and Sa...