Apple
28,601 known vulnerabilities
Top Products
The issue was addressed with improved handling of caches. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Montere
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS Sonoma 1
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sonoma
A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Sonoma 14.1. An app m
The issue was addressed with additional permissions checks. This issue is fixed in macOS Ventura 13.6.1. An attacker may
This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 16.7.2 and iPadOS
A website could have obscured the full screen notification by using the file open dialog. This could have led to user co
VMware Fusion(13.x prior to 13.5) contains a local privilege escalation vulnerability that occurs during installation f
VMware Fusion(13.x prior to 13.5) contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during instal
VMware Workstation( 17.x prior to 17.5) and Fusion(13.x prior to 13.5) contain an out-of-bounds read vulnerability that
IBM Security Verify Privilege On-Premises 11.5 does not validate, or incorrectly validates, a certificate which could d
IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive information when a det
IBM Security Verify Privilege On-Premises 11.5 could allow a privileged user to cause by using a malicious payload. IB
IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information through an HTTP request that could
IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive information, caused by
IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information to an attacked due to the transmiss
IBM Security Verify Privilege On-Premises 11.5 could allow an attacker to spoof a trusted entity due to improperly vali
IBM Security Verify Privilege On-Premises 11.5 could allow a remote authenticated attacker to execute arbitrary command
IBM Security Verify Privilege On-Premises 11.5 could allow a user to obtain version number information using a speciall
IBM Security Verify Privilege On-Premise 11.5 could allow an authenticated user to obtain sensitive information or perf
IBM Security Verify Privilege On-Premises 11.5 could allow a user to obtain sensitive information due to insufficient s
IBM Security Verify Privilege On-Premises 11.5 could allow an attacker to modify messages returned from the server due
IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive information, caused by
Adobe Bridge versions 12.0.4 (and earlier) and 13.0.3 (and earlier) are affected by an Out-of-bounds Read vulnerability
Adobe Bridge versions 12.0.4 (and earlier) and 13.0.3 (and earlier) are affected by a Use After Free vulnerability that
Adobe Photoshop versions 23.5.5 (and earlier) and 24.7 (and earlier) are affected by an Access of Uninitialized Pointer
An insufficient verification of data vulnerability exists in BIG-IP Edge Client Installer on macOS that may allow an at
The BIG-IP Edge Client Installer on macOS does not follow best practices for elevating privileges during the installati
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr
Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr
Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Cyber Protec
Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Cyber Protec
Sensitive information leak through log files. The following products are affected: Acronis Cyber Protect Cloud Agent (Li
Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux
Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr
Kong Insomnia 2023.4.0 on macOS allows attackers to execute code and access restricted files, or make requests for TCC p
Altair is a GraphQL Client. Prior to version 5.2.5, the Altair GraphQL Client Desktop Application does not sanitize exte
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr
Local privilege escalation due to improper soft link handling. The following products are affected: Acronis Cyber Protec
The issue was addressed with improved checks. This issue is fixed in iOS 16.7.1 and iPadOS 16.7.1. A local attacker may
Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remo
PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that
Sensitive information disclosure due to cleartext storage of sensitive information in memory. The following products are
Sensitive information disclosure and manipulation due to improper authentication. The following products are affected: A
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.6. Apps that fail verification che
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17, macOS
Frequently Asked Questions
How many CVEs affect Apple?
Apple has 28,601 CVE records in our database, including 1791 critical and 14441 high severity vulnerabilities. 117 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Apple vulnerabilities?
Apple has 1791 critical severity (CVSS 9.0+) and 14441 high severity (CVSS 7.0-8.9) vulnerabilities. 117 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Apple vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Apple products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Apple Vulnerabilities
CyberStrike scans your infrastructure for Apple vulnerabilities and provides real-time remediation guidance.
Get Started