apple / macos
1,342 known vulnerabilities in apple macos.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-11191 | Medium | 0.3% | 8.8 | Out of bounds memory access in ANGLE in Google Chrome prior to 149.0.7827.53 all… | |
| CVE-2026-21277 | Medium | 0.3% | 7.8 | InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by a Heap-based … | |
| CVE-2026-21304 | Medium | 0.3% | 7.8 | InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by a Heap-based … | |
| CVE-2026-27311 | Medium | 0.3% | 7.8 | Bridge versions 16.0.2, 15.1.4 and earlier are affected by a Heap-based Buffer O… | |
| CVE-2026-27312 | Medium | 0.3% | 7.8 | Bridge versions 16.0.2, 15.1.4 and earlier are affected by a Heap-based Buffer O… | |
| CVE-2026-11643 | Medium | 0.3% | 8.1 | Use after free in Proxy in Google Chrome prior to 149.0.7827.103 allowed a remot… | |
| CVE-2026-11629 | Medium | 0.3% | 8.8 | Use after free in Ozone in Google Chrome prior to 149.0.7827.103 allowed a remot… | |
| CVE-2026-17950 | Medium | 0.3% | 8.8 | Inappropriate implementation in Safebrowsing in Google Chrome on Mac prior to 15… | |
| CVE-2026-43728 | Medium | 0.3% | 7.5 | This issue was addressed through improved state management. This issue is fixed … | |
| CVE-2026-27310 | Medium | 0.3% | 7.8 | Bridge versions 16.0.2, 15.1.4 and earlier are affected by a Heap-based Buffer O… | |
| CVE-2026-11153 | Medium | 0.3% | 9.1 | Side-channel information leakage in Forms in Google Chrome prior to 149.0.7827.5… | |
| CVE-2026-11242 | Medium | 0.3% | 7.5 | Insufficient validation of untrusted input in Plugins in Google Chrome prior to … | |
| CVE-2026-11255 | Medium | 0.3% | 7.5 | Insufficient validation of untrusted input in Storage Access API in Google Chrom… | |
| CVE-2026-11632 | Medium | 0.3% | 7.5 | Use after free in TabStrip in Google Chrome prior to 149.0.7827.103 allowed a re… | |
| CVE-2026-10888 | Medium | 0.3% | 8.8 | Use after free in Cast Streaming in Google Chrome prior to 149.0.7827.53 allowed… | |
| CVE-2026-11637 | Medium | 0.3% | 8.8 | Use after free in Views in Google Chrome on Mac prior to 149.0.7827.103 allowed … | |
| CVE-2026-11646 | Medium | 0.3% | 8.8 | Use after free in ViewTransitions in Google Chrome prior to 149.0.7827.103 allow… | |
| CVE-2026-48346 | Medium | 0.3% | 7.9 | Animate is affected by an Untrusted Search Path vulnerability that could result … | |
| CVE-2026-10005 | Medium | 0.3% | 7.5 | Use after free in WebAppInstalls in Google Chrome on Mac prior to 148.0.7778.216… | |
| CVE-2026-35560 | Medium | 0.3% | 7.4 | Improper certificate validation in the identity provider connection components i… | |
| CVE-2026-11144 | Medium | 0.3% | 8.8 | Use after free in Media in Google Chrome prior to 149.0.7827.53 allowed a remote… | |
| CVE-2026-9940 | Medium | 0.3% | 8.8 | Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a… | |
| CVE-2026-11660 | Medium | 0.3% | 8.3 | Insufficient validation of untrusted input in New Tab Page in Google Chrome prio… | |
| CVE-2026-10890 | Medium | 0.3% | 8.8 | Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attack… | |
| CVE-2026-11688 | Medium | 0.3% | 8.8 | Inappropriate implementation in SVG in Google Chrome prior to 149.0.7827.103 all… | |
| CVE-2026-47967 | Medium | 0.3% | 7.8 | Audition is affected by an out-of-bounds write vulnerability that could result i… | |
| CVE-2026-47968 | Medium | 0.3% | 7.8 | Audition is affected by an out-of-bounds write vulnerability that could result i… | |
| CVE-2026-48309 | Medium | 0.3% | 7.8 | Audition is affected by an out-of-bounds write vulnerability that could result i… | |
| CVE-2026-48311 | Medium | 0.3% | 7.8 | Bridge is affected by an out-of-bounds write vulnerability that could result in … | |
| CVE-2026-48341 | Medium | 0.3% | 7.8 | Bridge is affected by an out-of-bounds write vulnerability that could result in … | |
| CVE-2026-48343 | Medium | 0.3% | 7.8 | Bridge is affected by an out-of-bounds write vulnerability that could result in … | |
| CVE-2026-48365 | Medium | 0.3% | 7.8 | Audition is affected by an out-of-bounds write vulnerability that could result i… | |
| CVE-2026-48368 | Medium | 0.3% | 7.8 | Audition is affected by an out-of-bounds write vulnerability that could result i… | |
| CVE-2026-11100 | Medium | 0.3% | 9.6 | Use after free in File Input in Google Chrome on Mac prior to 149.0.7827.53 allo… | |
| CVE-2026-9901 | Medium | 0.3% | 7.5 | Use after free in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remot… | |
| CVE-2026-9909 | Medium | 0.3% | 7.5 | Integer overflow in Skia in Google Chrome prior to 148.0.7778.216 allowed a remo… | |
| CVE-2026-9983 | Medium | 0.3% | 8.8 | Type Confusion in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote… | |
| CVE-2026-5874 | Medium | 0.3% | 9.6 | Use after free in PrivateAI in Google Chrome prior to 147.0.7727.55 allowed a re… | |
| CVE-2026-76191 | Medium | 0.3% | 8.2 | Animate is affected by an Improper Control of Generation of Code ('Code Injectio… | |
| CVE-2026-10007 | Medium | 0.3% | 8.8 | Use after free in SVG in Google Chrome prior to 148.0.7778.216 allowed a remote … | |
| CVE-2026-10015 | Medium | 0.3% | 8.8 | Integer overflow in WTF in Google Chrome prior to 148.0.7778.216 allowed a remot… | |
| CVE-2026-10016 | Medium | 0.3% | 8.8 | Use after free in DOM in Google Chrome prior to 148.0.7778.216 allowed a remote … | |
| CVE-2026-11630 | Medium | 0.3% | 8.8 | Use after free in File Input in Google Chrome prior to 149.0.7827.103 allowed a … | |
| CVE-2026-11638 | Medium | 0.3% | 9.6 | Use after free in Printing in Google Chrome prior to 149.0.7827.103 allowed a re… | |
| CVE-2026-11654 | Medium | 0.3% | 9.6 | Use after free in CameraCapture in Google Chrome on Mac prior to 149.0.7827.103 … | |
| CVE-2026-11657 | Medium | 0.3% | 8.8 | Use after free in Payments in Google Chrome on Mac prior to 149.0.7827.103 allow… | |
| CVE-2026-11664 | Medium | 0.3% | 8.8 | Use after free in Payments in Google Chrome prior to 149.0.7827.103 allowed a re… | |
| CVE-2026-21280 | Medium | 0.3% | 8.6 | Illustrator versions 29.8.3, 30.0 and earlier are affected by an Untrusted Searc… | |
| CVE-2026-9999 | Medium | 0.2% | 8.8 | Inappropriate implementation in ANGLE in Google Chrome on Mac prior to 148.0.777… | |
| CVE-2026-82006 | Medium | 0.2% | 7.8 | Photoshop Desktop is affected by a Heap-based Buffer Overflow vulnerability that… |