Known vulnerabilities in macOS 15.7 24G222 - page 4

Vendor: Apple Inc.
Software: macOS
Version: 15.7 24G222
Software CPE: cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
Total vulnerabilities: 226
Public exploits: 2
Known exploited (KEV): 2
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting macOS version 15.7 24G222 macOS 15.7 24G222 is affected by 226 vulnerabilities: 4 high, 25 medium, 197 low Critical High Medium Low

Vulnerabilities (226)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU124411 - Memory corruption
CVE-2026-20657
CWE-119 Low
No
No
15.7.5 24G624, 14.8.5 23J423 25.03.2026 SB2026032506
SB2026032507
SB2026032509
#VU124399 - Use After Free
CVE-2026-28835
CWE-416 Medium
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
#VU124398 - Exposure of sensitive information to an unauthorized actor
CVE-2026-28864
CWE-200 Low
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 4 more
#VU124397 - State Issues
CVE-2026-28817
CWE-371 Low
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
#VU124383 - Improper input validation
CVE-2026-28852
CWE-20 Low
No
No
26.4 25E246, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032509
and 4 more
#VU124382 - Improper input validation
CVE-2026-28828
CWE-20 Low
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
#VU124378 - Permissions, Privileges, and Access Controls
CVE-2026-20697
CWE-264 Low
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
#VU124377 - Information Exposure Through Log Files
CVE-2026-28818
CWE-532 Low
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
#VU124376 - Out-of-bounds write
CVE-2026-28825
CWE-787 Low
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
#VU124375 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-20688
CWE-22 Low
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 2 more
#VU124370 - Out-of-bounds read
CVE-2026-20695
CWE-125 Low
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
#VU124360 - Information Exposure Through Log Files
CVE-2026-28868
CWE-532 Low
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 4 more
#VU124348 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-28866
CWE-59 Low
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 2 more
#VU124336 - Improper Authorization
CVE-2026-28877
CWE-285 Low
No
No
26.4 25E246, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032514
and 3 more
#VU124335 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2026-28865
CWE-300 Medium
No
No
26.4 25E246, 14.8.5 23J423, 15.7.5 24G624 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 5 more
#VU119150 - Integer overflow
CVE-2025-55753
CWE-190 Low
No
No
14.8.5 23J423, 15.7.5 24G624, 26.4 25E246 04.12.2025 SB2025120441
SB2025121923
SB2025121940
and 31 more
#VU119149 - Improper Neutralization of Server-Side Includes (SSI) Within a Web Page
CVE-2025-58098
CWE-97 Low
Public exploit available
No
14.8.5 23J423, 15.7.5 24G624, 26.4 25E246 04.12.2025 SB2025120441
SB2025121923
SB2025121940
and 46 more
#VU119148 - Server-Side Request Forgery (SSRF)
CVE-2025-59775
CWE-918 Medium
No
No
14.8.5 23J423, 15.7.5 24G624, 26.4 25E246 04.12.2025 SB2025120441
SB2026010820
SB20260114117
and 10 more
#VU119147 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2025-65082
CWE-74 Low
No
No
14.8.5 23J423, 15.7.5 24G624, 26.4 25E246 04.12.2025 SB2025120441
SB2025121923
SB2025122202
and 32 more
#VU119146 - Improper input validation
CVE-2025-66200
CWE-20 Low
No
No
14.8.5 23J423, 15.7.5 24G624, 26.4 25E246 04.12.2025 SB2025120441
SB2025121923
SB2025122202
and 30 more


Showing elements 61 - 80 out of 226