Apple Security Vulnerabilities (CVEs)

Track 1,406 security vulnerabilities affecting Apple products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

180 Critical
785 High
412 Medium
29 Low
🔔 Get Alerts for Apple
CVE-2022-22639 7.8

This CVE describes a privilege escalation vulnerability in Apple operating systems where a malicious application could exploit a logic issue in state ...

Mar 18, 2022
CVE-2022-22641 9.8

CVE-2022-22641 is a use-after-free vulnerability in Apple operating systems that allows malicious applications to gain elevated privileges. This affec...

Mar 18, 2022
CVE-2022-22643 7.5

CVE-2022-22643 is a FaceTime vulnerability that allows an attacker to initiate audio/video transmission without the user's consent or awareness. This ...

Mar 18, 2022
CVE-2022-22651 7.5

This is a kernel memory corruption vulnerability in macOS that allows remote attackers to trigger out-of-bounds writes. Successful exploitation could ...

Mar 18, 2022
CVE-2022-22653 7.5

This vulnerability allows malicious websites to bypass security restrictions in iOS/iPadOS WebKit, potentially accessing sensitive user and device inf...

Mar 18, 2022
CVE-2022-22657 7.8

CVE-2022-22657 is a memory initialization vulnerability in Apple's Logic Pro, GarageBand, and macOS Monterey that could allow arbitrary code execution...

Mar 18, 2022
CVE-2022-22601 7.8

CVE-2022-22601 is an out-of-bounds read vulnerability in Xcode that could allow arbitrary code execution when opening malicious files. This affects de...

Mar 18, 2022
CVE-2022-22603 7.8

CVE-2022-22603 is an out-of-bounds read vulnerability in Apple's Xcode development environment that could allow arbitrary code execution when opening ...

Mar 18, 2022
CVE-2022-22605 7.8

CVE-2022-22605 is an out-of-bounds read vulnerability in Xcode that could allow arbitrary code execution when opening malicious files. This affects de...

Mar 18, 2022
CVE-2022-22607 7.8

CVE-2022-22607 is an out-of-bounds read vulnerability in Xcode that could allow arbitrary code execution when opening malicious files. This affects de...

Mar 18, 2022
CVE-2022-22609 7.5

This vulnerability allows a malicious application to read settings from other applications on affected Apple devices. It affects iOS, iPadOS, tvOS, wa...

Mar 18, 2022
CVE-2022-22612 7.8

This vulnerability allows an attacker to cause heap corruption by tricking a user into processing a maliciously crafted image. It affects Apple device...

Mar 18, 2022
CVE-2022-22614 7.8

This is a use-after-free vulnerability in Apple operating systems that allows malicious applications to execute arbitrary code with kernel privileges....

Mar 18, 2022
CVE-2022-22617 7.8

CVE-2022-22617 is a logic issue in macOS that allows an application to gain elevated privileges, potentially leading to unauthorized system access. It...

Mar 18, 2022
CVE-2022-22620 8.8

This CVE describes a use-after-free vulnerability in Apple's WebKit browser engine that could allow arbitrary code execution when processing malicious...

Mar 18, 2022
CVE-2022-22625 7.1

This vulnerability allows attackers to read memory outside intended boundaries when processing malicious AppleScript binaries. It affects macOS Catali...

Mar 18, 2022
CVE-2022-22579 7.8

CVE-2022-22579 is a memory corruption vulnerability in Apple's STL file processing that could allow arbitrary code execution or application crashes. A...

Mar 18, 2022
CVE-2022-22584 7.8

CVE-2022-22584 is a memory corruption vulnerability in Apple operating systems that allows arbitrary code execution when processing malicious files. A...

Mar 18, 2022
CVE-2022-22586 9.8

CVE-2022-22586 is a critical kernel privilege escalation vulnerability in macOS that allows malicious applications to execute arbitrary code with kern...

Mar 18, 2022
CVE-2022-22590 8.8

CVE-2022-22590 is a use-after-free vulnerability in Apple's WebKit browser engine that allows arbitrary code execution when processing malicious web c...

Mar 18, 2022
CVE-2022-22593 7.8

This CVE describes a buffer overflow vulnerability in Apple operating systems that allows a malicious application to execute arbitrary code with kerne...

Mar 18, 2022
CVE-2022-22596 7.8

This is a memory corruption vulnerability in Apple's iOS, iPadOS, and watchOS that allows an application to execute arbitrary code with kernel privile...

Mar 18, 2022
CVE-2021-30771 7.8

This vulnerability allows arbitrary code execution via malicious font files due to an out-of-bounds write in Apple's font processing. It affects macOS...

Mar 18, 2022
CVE-2022-0943 7.8

CVE-2022-0943 is a heap-based buffer overflow vulnerability in Vim text editor versions prior to 8.2.4563. Attackers can exploit this by tricking user...

Mar 14, 2022
CVE-2022-22719 7.5

CVE-2022-22719 is a memory corruption vulnerability in Apache HTTP Server where a specially crafted request body can cause the server to read from ran...

Mar 14, 2022
CVE-2022-22720 9.8

Apache HTTP Server versions 2.4.52 and earlier contain a vulnerability where the server fails to properly close inbound connections when encountering ...

Mar 14, 2022
CVE-2022-26981 7.8

CVE-2022-26981 is a buffer overflow vulnerability in Liblouis's compilePassOpcode function that can be triggered when processing translation tables. T...

Mar 13, 2022
CVE-2022-23308 7.5

CVE-2022-23308 is a use-after-free vulnerability in libxml2's validation component that allows attackers to potentially execute arbitrary code or caus...

Feb 26, 2022
CVE-2022-0729 8.8

CVE-2022-0729 is a use-after-free vulnerability in Vim's memory handling that allows an attacker to execute arbitrary code by tricking a user into ope...

Feb 23, 2022
CVE-2022-0685 7.8

CVE-2022-0685 is a memory corruption vulnerability in Vim text editor caused by an out-of-range pointer offset. Attackers can exploit this by tricking...

Feb 20, 2022
CVE-2022-0629 7.8

CVE-2022-0629 is a stack-based buffer overflow vulnerability in Vim text editor versions prior to 8.2. This allows attackers to execute arbitrary code...

Feb 17, 2022
CVE-2022-24667 7.5

CVE-2022-24667 is a denial-of-service vulnerability in swift-nio-http2 where a malicious HTTP/2 peer can send specially crafted HPACK-encoded header b...

Feb 9, 2022
CVE-2022-0392 7.8

CVE-2022-0392 is a heap-based buffer overflow vulnerability in Vim text editor versions prior to 8.2. This vulnerability allows attackers to execute a...

Jan 28, 2022
CVE-2022-0361 7.8

CVE-2022-0361 is a heap-based buffer overflow vulnerability in Vim text editor versions prior to 8.2. This vulnerability allows attackers to execute a...

Jan 26, 2022
CVE-2022-0359 7.8

CVE-2022-0359 is a heap-based buffer overflow vulnerability in Vim text editor versions prior to 8.2. This vulnerability allows attackers to execute a...

Jan 26, 2022
CVE-2022-0318 9.8

CVE-2022-0318 is a heap-based buffer overflow vulnerability in Vim text editor versions prior to 8.2. This allows attackers to execute arbitrary code ...

Jan 21, 2022
CVE-2021-4166 7.1

CVE-2021-4166 is an out-of-bounds read vulnerability in Vim text editor that allows attackers to read memory contents beyond allocated buffers. This a...

Dec 25, 2021
CVE-2017-13880 7.8

CVE-2017-13880 is a memory corruption vulnerability in Apple iOS and watchOS that allows an application to execute arbitrary code with kernel privileg...

Dec 23, 2021
CVE-2017-13905 8.1

This CVE describes a race condition vulnerability in Apple operating systems that could allow an application to gain elevated privileges. The vulnerab...

Dec 23, 2021
CVE-2017-13908 7.8

This vulnerability allows a local attacker to execute non-executable text files via an SMB share on macOS systems. The issue involves improper file pe...

Dec 23, 2021
CVE-2017-2488 7.5

CVE-2017-2488 is a cryptographic weakness in Apple Remote Desktop's authentication protocol that allowed attackers to capture cleartext passwords duri...

Dec 23, 2021
CVE-2019-8643 9.8

CVE-2019-8643 is a critical logic vulnerability in macOS that allows attackers to bypass security restrictions through improper state management. This...

Dec 23, 2021
CVE-2019-8703 9.8

This vulnerability allows applications to gain elevated privileges through improper entitlements management in Apple operating systems. It affects use...

Dec 23, 2021
CVE-2021-44224 8.2

This vulnerability in Apache HTTP Server allows attackers to crash the server via NULL pointer dereference or perform Server-Side Request Forgery (SSR...

Dec 20, 2021
CVE-2021-4136 7.8

CVE-2021-4136 is a heap-based buffer overflow vulnerability in Vim that allows attackers to execute arbitrary code by tricking users into opening spec...

Dec 19, 2021
CVE-2021-44228 10.0

CVE-2021-44228 (Log4Shell) is a critical remote code execution vulnerability in Apache Log4j2 that allows attackers to execute arbitrary code by explo...

Dec 10, 2021
CVE-2021-30824 7.8

This is a macOS kernel memory corruption vulnerability that allows malicious applications to execute arbitrary code with kernel privileges. It affects...

Oct 28, 2021
CVE-2021-30834 7.8

CVE-2021-30834 is a logic vulnerability in Apple's audio file processing that could allow attackers to crash applications or execute arbitrary code by...

Oct 28, 2021
CVE-2021-30840 7.8

This vulnerability allows arbitrary code execution by processing a maliciously crafted dfont file. It affects Apple devices running older versions of ...

Oct 28, 2021
CVE-2020-9897 7.8

This vulnerability allows arbitrary code execution through malicious PDF files due to an out-of-bounds write in Apple's PDF processing. It affects iOS...

Oct 28, 2021

Why Monitor Apple Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 1,406+ known vulnerabilities affecting Apple products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Apple packages in under 60 seconds. No agents required - completely agentless scanning that works across Apple deployments.

Free vulnerability database: Access detailed information about every Apple CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Apple CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Apple CVEs Free