Known vulnerabilities in macOS 26.0.1 25A362 - page 19

Vendor: Apple Inc.
Software: macOS
Version: 26.0.1 25A362
Software CPE: cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
Total vulnerabilities: 424
Public exploits: 6
Known exploited (KEV): 5
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting macOS version 26.0.1 25A362 macOS 26.0.1 25A362 is affected by 424 vulnerabilities: 2 critical, 12 high, 68 medium, 342 low Critical High Medium Low

Vulnerabilities (424)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU118020 - Improper Access Control
CVE-2025-43393
CWE-284 Low
No
No
26.1 25B78 04.11.2025 SB2025110422
#VU118018 - Improper Access Control
CVE-2025-43405
CWE-284 Low
No
No
26.1 25B78, 14.8.2 23J126, 15.7.2 24G325 04.11.2025 SB2025110422
SB2025110423
SB2025110424
#VU118016 - Improper Access Control
CVE-2025-43436
CWE-284 Low
No
No
26.1 25B78 04.11.2025 SB2025110422
SB2025110429
SB2025110435
and 2 more
#VU118001 - Protection Mechanism Failure
CVE-2025-43407
CWE-693 Low
Public exploit available
No
26.1 25B78, 14.8.2 23J126, 15.7.2 24G325 04.11.2025 SB2025110422
SB2025110423
SB2025110424
and 3 more
#VU117993 - Improper input validation
CVE-2025-43401
CWE-20 Low
No
No
26.1 25B78, 14.8.2 23J126, 15.7.2 24G325 04.11.2025 SB2025110422
SB2025110423
SB2025110424
#VU117992 - Information Exposure Through Log Files
CVE-2025-43426
CWE-532 Low
No
No
26.1 25B78 04.11.2025 SB2025110422
SB2025110435
#VU117991 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-43461
CWE-59 Low
No
No
26.1 25B78 04.11.2025 SB2025110422
#VU117990 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-43395
CWE-59 Low
No
No
26.1 25B78, 14.8.2 23J126, 15.7.2 24G325 04.11.2025 SB2025110422
SB2025110423
SB2025110424
#VU117989 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-43448
CWE-59 Low
No
No
26.1 25B78, 14.8.2 23J126, 15.7.2 24G325 04.11.2025 SB2025110422
SB2025110423
SB2025110424
and 5 more
#VU117988 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-43394
CWE-59 Low
No
No
26.1 25B78, 14.8.2 23J126, 15.7.2 24G325 04.11.2025 SB2025110422
SB2025110423
SB2025110424
#VU117987 - Improper Access Control
CVE-2025-43497
CWE-284 Low
No
No
26.1 25B78 04.11.2025 SB2025110422
#VU117986 - Information Exposure Through Log Files
CVE-2025-43423
CWE-532 Low
No
No
26.1 25B78, 15.7.2 24G325 04.11.2025 SB2025110422
SB2025110423
SB2025110435
and 2 more
#VU117985 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-43465
CWE-22 Low
No
No
26.1 25B78 04.11.2025 SB2025110422
#VU117984 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-43446
CWE-59 Low
No
No
26.1 25B78, 14.8.2 23J126, 15.7.2 24G325 04.11.2025 SB2025110422
SB2025110423
SB2025110424
#VU117983 - Use After Free
CVE-2025-43478
CWE-416 Low
No
No
26.1 25B78, 14.8.2 23J126, 15.7.2 24G325 04.11.2025 SB2025110422
SB2025110423
SB2025110424
#VU117982 - Permissions, Privileges, and Access Controls
CVE-2025-43378
CWE-264 Low
No
No
26.1 25B78, 15.7.2 24G325 04.11.2025 SB2025110422
SB2025110423
#VU117972 - Improper Access Control
CVE-2025-43471
CWE-284 Low
No
No
26.1 25B78 04.11.2025 SB2025110422
#VU117956 - Improper input validation
CVE-2025-43458
CWE-20 Low
No
No
26.1 25B78 04.11.2025 SB2025110415
SB2025110420
SB2025110422
and 21 more
#VU117955 - Security Features
CVE-2025-43480
CWE-254 Medium
No
No
26.1 25B78 04.11.2025 SB2025110415
SB2025110420
SB2025110422
and 9 more
#VU112979 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-53906
CWE-22 High
No
No
26.1 25B78 16.07.2025 SB2025071690
SB2025071770
SB2025071771
and 29 more


Showing elements 361 - 380 out of 424