apple / macos
1,342 known vulnerabilities in apple macos.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-64788 | Low | 0.2% | 5.4 | The issue was addressed with improved memory handling. This issue is fixed in iO… | |
| CVE-2026-65380 | Low | 0.2% | 5.5 | An issue existed in the handling of snapshots. The issue was resolved with impro… | |
| CVE-2026-11026 | Low | 0.2% | 6.5 | Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.… | |
| CVE-2026-28849 | Low | 0.2% | 5.5 | The issue was addressed with improved checks. This issue is fixed in macOS Sequo… | |
| CVE-2026-28900 | Low | 0.2% | 5.5 | A file quarantine bypass was addressed with additional checks. This issue is fix… | |
| CVE-2026-43767 | Low | 0.2% | 5.0 | The issue was addressed with improved memory handling. This issue is fixed in ma… | |
| CVE-2026-47925 | Low | 0.2% | 5.5 | Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a… | |
| CVE-2026-5911 | Low | 0.2% | 4.3 | Policy bypass in ServiceWorkers in Google Chrome prior to 147.0.7727.55 allowed … | |
| CVE-2026-11036 | Low | 0.2% | 6.5 | Inappropriate implementation in DOM in Google Chrome prior to 149.0.7827.53 allo… | |
| CVE-2026-11081 | Low | 0.2% | 6.5 | Inappropriate implementation in Canvas in Google Chrome prior to 149.0.7827.53 a… | |
| CVE-2026-11190 | Low | 0.2% | 6.5 | Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.… | |
| CVE-2026-43819 | Low | 0.2% | 5.5 | An access issue was addressed with additional sandbox restrictions. This issue i… | |
| CVE-2026-65413 | Low | 0.2% | 5.5 | An integer overflow was addressed with improved input validation. This issue is … | |
| CVE-2026-10004 | Low | 0.2% | 6.5 | Insufficient validation of untrusted input in Passwords in Google Chrome prior t… | |
| CVE-2026-11155 | Low | 0.2% | 4.3 | Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 allo… | |
| CVE-2026-11156 | Low | 0.2% | 4.3 | Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 allo… | |
| CVE-2026-11161 | Low | 0.2% | 4.3 | Inappropriate implementation in DataTransfer in Google Chrome prior to 149.0.782… | |
| CVE-2026-11216 | Low | 0.2% | 4.3 | Incorrect security UI in File Input in Google Chrome prior to 149.0.7827.53 allo… | |
| CVE-2026-43664 | Low | 0.2% | 5.5 | This issue was addressed with improved data protection. This issue is fixed in i… | |
| CVE-2026-65405 | Low | 0.2% | 5.5 | A memory initialization issue was addressed with improved memory handling. This … | |
| CVE-2026-86891 | Low | 0.2% | 3.5 | An authorization issue was addressed with improved state management. This issue … | |
| CVE-2026-5906 | Low | 0.2% | 4.3 | Incorrect security UI in Omnibox in Google Chrome on Android prior to 147.0.7727… | |
| CVE-2026-21358 | Low | 0.2% | 5.5 | InDesign Desktop versions 21.1, 20.5.1 and earlier are affected by a Heap-based … | |
| CVE-2026-64714 | Low | 0.2% | 5.5 | A memory corruption issue was addressed with improved bounds checking. This issu… | |
| CVE-2026-11150 | Low | 0.2% | 6.1 | Inappropriate implementation in XML in Google Chrome prior to 149.0.7827.53 allo… | |
| CVE-2026-11273 | Low | 0.2% | 6.1 | Insufficient validation of untrusted input in Omnibox in Google Chrome prior to … | |
| CVE-2026-21319 | Low | 0.2% | 5.5 | After Effects versions 25.6 and earlier are affected by an Out-of-bounds Read vu… | |
| CVE-2026-21332 | Low | 0.2% | 5.5 | InDesign Desktop versions 21.1, 20.5.1 and earlier are affected by an out-of-bou… | |
| CVE-2026-28899 | Low | 0.2% | 5.5 | A logic issue was addressed with improved checks. This issue is fixed in macOS G… | |
| CVE-2026-5894 | Low | 0.2% | 4.3 | Inappropriate implementation in PDF in Google Chrome prior to 147.0.7727.55 allo… | |
| CVE-2026-5900 | Low | 0.2% | 4.3 | Policy bypass in Downloads in Google Chrome prior to 147.0.7727.55 allowed a rem… | |
| CVE-2026-84517 | Low | 0.2% | 5.5 | An integer overflow was addressed with improved input validation. This issue is … | |
| CVE-2026-11048 | Low | 0.2% | 6.5 | Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.… | |
| CVE-2026-11184 | Low | 0.2% | 6.3 | Insufficient policy enforcement in Actor in Google Chrome prior to 149.0.7827.53… | |
| CVE-2026-11225 | Low | 0.2% | 6.5 | Inappropriate implementation in WebUI in Google Chrome prior to 149.0.7827.53 al… | |
| CVE-2026-11227 | Low | 0.2% | 6.5 | Incorrect security UI in Tab Hover Cards in Google Chrome prior to 149.0.7827.53… | |
| CVE-2026-5895 | Low | 0.2% | 5.4 | Incorrect security UI in Omnibox in Google Chrome on iOS prior to 147.0.7727.55 … | |
| CVE-2026-5918 | Low | 0.2% | 4.3 | Inappropriate implementation in Navigation in Google Chrome prior to 147.0.7727.… | |
| CVE-2026-65377 | Low | 0.2% | 5.5 | A memory corruption issue was addressed with improved memory handling. This issu… | |
| CVE-2026-84523 | Low | 0.2% | 5.5 | An out-of-bounds write issue was addressed with improved bounds checking. This i… | |
| CVE-2026-84537 | Low | 0.2% | 6.6 | The issue was addressed with improved memory handling. This issue is fixed in ma… | |
| CVE-2026-65408 | Low | 0.2% | 5.5 | An integer overflow was addressed with improved input validation. This issue is … | |
| CVE-2026-84552 | Low | 0.2% | 5.5 | The issue was addressed with improved memory handling. This issue is fixed in iO… | |
| CVE-2026-86910 | Low | 0.2% | 5.5 | A permissions issue was addressed with improved path validation. This issue is f… | |
| CVE-2026-27286 | Low | 0.2% | 5.5 | InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based … | |
| CVE-2026-34662 | Low | 0.2% | 5.5 | Illustrator versions 29.8.6, 30.3 and earlier are affected by a NULL Pointer Der… | |
| CVE-2026-84541 | Low | 0.2% | 5.5 | An input validation issue was addressed with improved input validation. This iss… | |
| CVE-2026-84570 | Low | 0.2% | 4.4 | A logic issue was addressed with improved checks. This issue is fixed in macOS G… | |
| CVE-2026-43737 | Low | 0.2% | 5.5 | An authorization issue was addressed with improved validation. This issue is fix… | |
| CVE-2026-5896 | Low | 0.2% | 6.1 | Policy bypass in Audio in Google Chrome prior to 147.0.7727.55 allowed a remote … |