Known vulnerabilities in macOS 15.0 24A335 - page 21

Vendor: Apple Inc.
Software: macOS
Version: 15.0 24A335
Software CPE: cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
Total vulnerabilities: 805
Public exploits: 17
Known exploited (KEV): 12
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting macOS version 15.0 24A335 macOS 15.0 24A335 is affected by 805 vulnerabilities: 7 critical, 54 high, 109 medium, 635 low Critical High Medium Low

Vulnerabilities (805)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU118693 - Out-of-bounds read
CVE-2025-43374
CWE-125 Medium
No
No
15.5 24F74, 13.7.3 22H417, 14.7.3 23H417 24.11.2025 SB2025051256
SB2025012805
SB2025051303
and 5 more
#VU118692 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-31248
CWE-22 Low
No
No
15.5 24F74, 13.7.3 22H417, 14.7.3 23H417 24.11.2025 SB2025051256
SB2025012805
SB2025012804
#VU118691 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-31266
CWE-451 Medium
No
No
15.5 24F74 24.11.2025 SB2025051259
SB2025051256
#VU113555 - Improper input validation
CVE-2025-24224
CWE-20 Low
No
No
13.7.7 22H722, 15.5 24F74 31.07.2025 SB2025073055
SB2025051303
SB2025073152
and 4 more
#VU108972 - Exposure of sensitive information to an unauthorized actor
CVE-2025-31256
CWE-200 Low
No
No
15.5 24F74 12.05.2025 SB2025051256
#VU108971 - Exposure of sensitive information to an unauthorized actor
CVE-2025-31218
CWE-200 Low
No
No
15.5 24F74 12.05.2025 SB2025051256
#VU108970 - Protection Mechanism Failure
CVE-2025-30440
CWE-693 Low
No
No
15.5 24F74, 13.7.6 22H625, 14.7.6 23H626 12.05.2025 SB2025051256
SB2025051257
SB2025051258
#VU108943 - Improper input validation
CVE-2025-24274
CWE-20 Low
No
No
15.5 24F74, 13.7.6 22H625, 14.7.6 23H626 12.05.2025 SB2025051256
SB2025051257
SB2025051258
#VU108942 - Improper Access Control
CVE-2025-31222
CWE-284 Low
No
No
15.5 24F74, 13.7.6 22H625, 14.7.6 23H626 12.05.2025 SB2025051256
SB2025051257
SB2025051258
and 4 more
#VU107563 - Improper Authentication
CVE-2025-31201
CWE-287 High
No
Exploited
15.4.1 24E263 16.04.2025 SB20250416166
SB20250416167
SB20250416168
and 1 more
#VU107562 - Memory corruption
CVE-2025-31200
CWE-119 Critical
Public exploit available
Exploited
15.4.1 24E263 16.04.2025 SB20250416166
SB20250416167
SB20250416168
and 2 more
#VU106337 - Improper input validation
CVE-2025-24267
CWE-20 Low
No
No
15.4 24E248, 13.7.5 22H527, 14.7.5 23H527 01.04.2025 SB2025040103
SB2025040104
SB2025040105
#VU106336 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-30456
CWE-22 Low
No
No
15.4 24E248, 13.7.5 22H527, 14.7.5 23H527 01.04.2025 SB2025040103
SB2025040104
SB2025040105
and 1 more
#VU106335 - Improper input validation
CVE-2025-24255
CWE-20 Low
No
No
15.4 24E248, 13.7.5 22H527, 14.7.5 23H527 01.04.2025 SB2025040103
SB2025040104
SB2025040105
#VU106334 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-24277
CWE-22 Low
No
No
15.4 24E248, 13.7.5 22H527, 14.7.5 23H527 01.04.2025 SB2025040103
SB2025040104
SB2025040105
#VU106325 - Improper input validation
CVE-2025-24212
CWE-20 Low
No
No
15.4 24E248, 13.7.5 22H527, 14.7.5 23H527 01.04.2025 SB2025040103
SB2025040104
SB2025040105
and 5 more
#VU106309 - Information Exposure Through Log Files
CVE-2025-24202
CWE-532 Low
No
No
15.4 24E248 31.03.2025 SB2025040103
SB2025040107
#VU103395 - Improper Access Control
CVE-2025-24093
CWE-284 Low
No
No
14.7.3 23H417, 13.7.3 22H417, 15.4 24E248 28.01.2025 SB2025012804
SB2025012805
SB2025040103
#VU99865 - Comparison using wrong factors
CVE-2024-9681
CWE-1025 Low
No
No
13.7.5 22H527, 14.7.5 23H527, 15.4 24E248 06.11.2024 SB2024110621
SB2024110655
SB2024110656
and 30 more
#VU82980 - Improper input validation
CVE-2023-27043
CWE-20 Medium
No
No
15.4 24E248 10.11.2023 SB2023041957
SB2023111064
SB2023111315
and 120 more


Showing elements 401 - 420 out of 805