Apple Security Vulnerabilities (CVEs)

Track 1,282 security vulnerabilities affecting Apple products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

159 Critical
682 High
412 Medium
29 Low
🔔 Get Alerts for Apple
CVE-2024-40854 5.5

A memory initialization vulnerability in Apple operating systems allows malicious applications to cause system crashes (denial of service). This affec...

Jan 15, 2025
CVE-2023-42867 7.8

This vulnerability in GarageBand allows malicious applications to bypass entitlement and Team ID validation, potentially gaining root privileges on ma...

Dec 20, 2024
CVE-2024-44211 5.5

This vulnerability allows malicious applications to bypass symlink validation and access sensitive user data on macOS. It affects macOS systems before...

Dec 20, 2024
CVE-2024-44231 4.6

This vulnerability allows an attacker with physical access to bypass the macOS login window during software updates, potentially gaining unauthorized ...

Dec 20, 2024
CVE-2024-44293 5.5

This CVE describes a privacy vulnerability in macOS where sensitive user information could be exposed in log entries. The issue allows unauthorized vi...

Dec 20, 2024
CVE-2024-54538 7.5

This CVE describes a denial-of-service vulnerability in multiple Apple operating systems where improper input validation allows a remote attacker to c...

Dec 20, 2024
CVE-2024-54528 7.1

This CVE describes a logic flaw in macOS that allows an application to overwrite arbitrary files on the system. It affects macOS Ventura, Sonoma, and ...

Dec 12, 2024
CVE-2024-54531 5.5

This vulnerability allows an application to bypass kernel Address Space Layout Randomization (kASLR) on macOS, potentially enabling attackers to more ...

Dec 12, 2024
CVE-2024-54534 9.8

This is a critical memory corruption vulnerability in Apple's WebKit browser engine that affects multiple Apple operating systems and Safari. Processi...

Dec 12, 2024
CVE-2024-54503 4.2

This CVE describes a user interface inconsistency in iOS/iPadOS where muting an incoming call while it's ringing may not actually enable mute. This af...

Dec 12, 2024
CVE-2024-54505 8.8

This CVE describes a type confusion vulnerability in Apple's WebKit browser engine that could allow memory corruption when processing malicious web co...

Dec 12, 2024
CVE-2024-54506 9.8

This critical vulnerability in macOS DCP firmware allows attackers to execute arbitrary code or cause system crashes through out-of-bounds memory acce...

Dec 12, 2024
CVE-2024-54510 5.1

A race condition vulnerability in Apple operating systems could allow malicious apps to leak sensitive kernel state information. This affects multiple...

Dec 12, 2024
CVE-2024-54514 8.6

This vulnerability allows a malicious app to escape its sandbox restrictions on affected Apple operating systems. It affects users running outdated ve...

Dec 12, 2024
CVE-2024-54524 5.5

This CVE describes a logic flaw in macOS file handling that allows malicious applications to bypass intended access restrictions and read arbitrary fi...

Dec 12, 2024
CVE-2024-54527 5.5

This vulnerability allows applications to access sensitive user data on affected Apple devices. It affects users running outdated versions of watchOS,...

Dec 12, 2024
CVE-2024-54486 6.5

This vulnerability allows attackers to disclose process memory by tricking a user into processing a maliciously crafted font file. It affects multiple...

Dec 12, 2024
CVE-2024-54489 7.8

A path handling vulnerability in macOS mount command allows arbitrary code execution when processing malicious input. This affects macOS systems befor...

Dec 12, 2024
CVE-2024-54492 5.9

This vulnerability allows attackers in a privileged network position (like on the same network) to intercept and modify network traffic due to unencry...

Dec 12, 2024
CVE-2024-54494 5.9

This CVE describes a race condition vulnerability in Apple operating systems that allows an attacker to create a read-only memory mapping that can be ...

Dec 12, 2024
CVE-2024-54498 8.8

This CVE describes a sandbox escape vulnerability in macOS where improper path validation allows malicious applications to break out of their security...

Dec 12, 2024
CVE-2024-54501 5.5

This vulnerability allows an attacker to cause a denial of service (DoS) by tricking a user into processing a maliciously crafted file on affected App...

Dec 12, 2024
CVE-2024-54465 9.8

This CVE describes a privilege escalation vulnerability in macOS where a malicious application could exploit a logic flaw in state management to gain ...

Dec 12, 2024
CVE-2024-54471 5.5

A macOS vulnerability allows malicious applications to bypass entitlement checks and potentially leak user credentials. This affects macOS Ventura and...

Dec 12, 2024
CVE-2024-54476 5.5

This macOS vulnerability allows applications to access sensitive user data they shouldn't have permission to view. It affects users running vulnerable...

Dec 12, 2024
CVE-2024-54479 7.5

This vulnerability in Apple's WebKit browser engine allows processing malicious web content to cause unexpected process crashes. It affects users of S...

Dec 12, 2024
CVE-2024-44243 5.5

This CVE describes a macOS configuration vulnerability that allows applications to modify protected areas of the file system. It affects macOS systems...

Dec 12, 2024
CVE-2024-44245 7.1

This vulnerability allows a malicious app to cause system crashes or corrupt kernel memory on Apple devices. It affects users running vulnerable versi...

Dec 12, 2024
CVE-2024-44248 6.5

This vulnerability in macOS allows a user with screen sharing access to view another user's screen without proper authorization. It affects macOS Vent...

Dec 12, 2024
CVE-2024-44291 7.8

This CVE describes a privilege escalation vulnerability in macOS file handling that allows malicious applications to gain root privileges. It affects ...

Dec 12, 2024
CVE-2024-44299 9.8

This vulnerability in DCP firmware allows attackers to cause system crashes or execute arbitrary code by exploiting insufficient bounds checks. It aff...

Dec 12, 2024
CVE-2024-44201 5.5

This CVE describes a memory handling vulnerability in Apple operating systems where processing a maliciously crafted file can cause a denial-of-servic...

Dec 12, 2024
CVE-2024-44220 5.5

A memory handling vulnerability in macOS video file parsing allows attackers to cause system crashes by tricking users into opening malicious video fi...

Dec 12, 2024
CVE-2024-44224 7.8

This CVE describes a macOS permissions vulnerability that allows malicious applications to escalate privileges to root access. It affects macOS Ventur...

Dec 12, 2024
CVE-2024-44241 9.8

This vulnerability in DCP firmware allows attackers to execute arbitrary code or cause system crashes through improper bounds checking. It affects iOS...

Dec 12, 2024
CVE-2024-44307 7.8

A buffer overflow vulnerability in macOS allows malicious applications to execute arbitrary code with kernel privileges. This affects macOS systems be...

Nov 20, 2024
CVE-2024-44309 6.1

This vulnerability in Apple's Safari browser and related operating systems allows cross-site scripting (XSS) attacks due to improper cookie management...

Nov 20, 2024
CVE-2024-44233 5.5

This vulnerability allows an attacker to cause a denial-of-service (system crash) by tricking a user into opening a maliciously crafted video file. It...

Nov 1, 2024
CVE-2024-44240 5.5

This vulnerability allows attackers to disclose process memory by tricking a user into processing a maliciously crafted font file. It affects Apple de...

Oct 28, 2024
CVE-2024-44256 8.6

This CVE describes a sandbox escape vulnerability in macOS that allows malicious applications to break out of their security confinement. The vulnerab...

Oct 28, 2024
CVE-2024-44260 4.4

A macOS vulnerability allows malicious applications with root privileges to modify system files. This affects macOS Ventura and Sonoma systems before ...

Oct 28, 2024
CVE-2024-44295 5.5

This CVE describes a macOS vulnerability where an application can bypass entitlement checks to modify protected areas of the file system. It affects m...

Oct 28, 2024
CVE-2024-44145 6.1

This vulnerability allows an attacker with physical access to a macOS device to bypass the lock screen when Sidecar is enabled. It affects macOS devic...

Oct 28, 2024
CVE-2024-44217 9.1

This CVE describes an authentication bypass vulnerability in Apple's password autofill feature. When exploited, it allows unauthorized access to passw...

Oct 28, 2024
CVE-2024-44279 5.5

CVE-2024-44279 is an out-of-bounds read vulnerability in macOS file parsing that could allow an attacker to read sensitive information from memory. Th...

Oct 28, 2024
CVE-2024-44281 5.5

This vulnerability allows attackers to read memory beyond intended boundaries when parsing malicious files, potentially exposing sensitive user inform...

Oct 28, 2024
CVE-2024-44284 5.5

CVE-2024-44284 is an out-of-bounds write vulnerability in macOS that allows parsing malicious files to cause application crashes. This affects macOS V...

Oct 28, 2024
CVE-2024-44285 7.8

This CVE describes a use-after-free vulnerability in Apple's iOS, iPadOS, watchOS, visionOS, and tvOS kernels that could allow a malicious app to caus...

Oct 28, 2024
CVE-2024-44289 7.5

This CVE describes a privacy vulnerability in macOS where applications could access sensitive location information from system logs. The issue affects...

Oct 28, 2024
CVE-2024-44296 5.4

This vulnerability allows malicious web content to bypass Content Security Policy (CSP) enforcement in Apple's WebKit browser engine. It affects users...

Oct 28, 2024

Why Monitor Apple Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 1,282+ known vulnerabilities affecting Apple products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Apple packages in under 60 seconds. No agents required - completely agentless scanning that works across Apple deployments.

Free vulnerability database: Access detailed information about every Apple CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Apple CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Apple CVEs Free