apple
1,466 known vulnerabilities affecting apple products.
Products
macos 1342
iphone_os 402
ipados 306
visionos 178
watchos 160
tvos 158
safari 66
mac_os_x 4
container 2
swift-crypto 2
swiftnio 1
swiftnio_http\/2 1
swiftnio_ssh 1
swiftnio_ssl 1
servicetalk 1
xcode 1
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-84572 | Medium | 0.1% | 7.1 | An out-of-bounds read was addressed with improved bounds checking. This issue is… | |
| CVE-2026-28995 | Medium | 0.1% | 8.8 | A logic issue was addressed with improved restrictions. This issue is fixed in i… | |
| CVE-2026-64712 | Medium | 0.1% | 7.8 | This issue was addressed with improved checks. This issue is fixed in macOS Gold… | |
| CVE-2026-43755 | Medium | 0.1% | 7.0 | A race condition was addressed with improved state management. This issue is fix… | |
| CVE-2026-84607 | Medium | 0.1% | 7.8 | A race condition was addressed with improved state management. This issue is fix… | |
| CVE-2026-0294 | Medium | 0.1% | 7.8 | A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma® Acce… | |
| CVE-2026-84631 | Medium | 0.1% | 7.8 | This issue was addressed with additional entitlement checks. This issue is fixed… | |
| CVE-2026-11241 | Medium | 0.1% | 8.0 | Insufficient validation of untrusted input in Cast in Google Chrome prior to 149… | |
| CVE-2026-43820 | Medium | 0.1% | 7.7 | NIOSSLCertificate._subjectAlternativeNames provides access to the raw bytes for … | |
| CVE-2026-86917 | Medium | 0.1% | 7.8 | A permissions issue was addressed with additional restrictions. This issue is fi… | |
| CVE-2026-86901 | Medium | 0.1% | 7.1 | An out-of-bounds write issue was addressed with improved bounds checking. This i… | |
| CVE-2026-20617 | Medium | 0.1% | 7.0 | A race condition was addressed with improved state handling. This issue is fixed… | |
| CVE-2025-46284 | Medium | 0.1% | 7.0 | A race condition was addressed with additional validation. This issue is fixed i… | |
| CVE-2026-11269 | Medium | 0.1% | 7.1 | Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.… | |
| CVE-2026-17864 | Medium | 0.1% | 7.8 | Inappropriate implementation in Updater in Google Chrome on Mac prior to 151.0.7… | |
| CVE-2026-84507 | Medium | 0.1% | 7.8 | A race condition was addressed with improved state handling. This issue is fixed… | |
| CVE-2022-26758 | Medium | 0.1% | 7.1 | A malicious application may cause unexpected changes in memory shared between pr… | |
| CVE-2026-11158 | Medium | 0.1% | 8.6 | Insufficient validation of untrusted input in Downloads in Google Chrome on Mac … | |
| CVE-2026-8497 | Medium | 0.1% | 7.4 | Improper certificate validation in the Devolutions Server connection handling in… | |
| CVE-2021-38642 | Low | 1.2% | 6.1 | Microsoft Edge for iOS Spoofing Vulnerability | |
| CVE-2025-43438 | Low | 1.0% | 4.3 | A use-after-free issue was addressed with improved memory management. This issue… | |
| CVE-2025-43441 | Low | 0.9% | 4.3 | The issue was addressed with improved memory handling. This issue is fixed in Sa… | |
| CVE-2026-62899 | Low | 0.7% | 5.9 | Inconsistent interpretation of http requests ('http request/response smuggling')… | |
| CVE-2026-43707 | Low | 0.7% | 6.5 | A memory corruption issue was addressed with improved memory handling. This issu… | |
| CVE-2026-43745 | Low | 0.7% | 6.5 | An out-of-bounds write issue was addressed with improved input validation. This … | |
| CVE-2026-43720 | Low | 0.7% | 6.5 | A use-after-free issue was addressed with improved memory management. This issue… | |
| CVE-2026-64780 | Low | 0.6% | 4.3 | The issue was addressed with improved checks. This issue is fixed in Safari 26.6… | |
| CVE-2026-64781 | Low | 0.6% | 4.3 | The issue was addressed with improved input validation. This issue is fixed in S… | |
| CVE-2026-50659 | Low | 0.6% | 6.5 | Improper encoding or escaping of output in .NET allows an authorized attacker to… | |
| CVE-2026-64735 | Low | 0.5% | 6.5 | An inconsistent user interface issue was addressed with improved state managemen… | |
| CVE-2026-62900 | Low | 0.5% | 5.9 | Improper removal of sensitive information before storage or transfer in .NET all… | |
| CVE-2026-43713 | Low | 0.5% | 6.5 | A permissions issue was addressed with additional restrictions. This issue is fi… | |
| CVE-2026-17622 | Low | 0.5% | 6.5 | IBM Langflow OSS 1.0.0 through 1.10.2 could allow a remote authenticated attacke… | |
| CVE-2026-19299 | Low | 0.5% | 6.5 | IBM Langflow OSS 1.0.0 through 1.11.2 could allow a remote authenticated attacke… | |
| CVE-2026-19302 | Low | 0.5% | 6.5 | IBM Langflow OSS 1.0.0 through 1.11.2 could allow a remote authenticated attacke… | |
| CVE-2026-64730 | Low | 0.5% | 6.5 | The issue was addressed with improved UI. This issue is fixed in Safari 26.6, iO… | |
| CVE-2026-43703 | Low | 0.5% | 6.5 | The issue was addressed with improved memory handling. This issue is fixed in iO… | |
| CVE-2026-43732 | Low | 0.5% | 6.5 | A path handling issue was addressed with improved validation. This issue is fixe… | |
| CVE-2026-43795 | Low | 0.5% | 4.3 | The issue was addressed with improved memory handling. This issue is fixed in Sa… | |
| CVE-2026-64784 | Low | 0.5% | 4.3 | An out-of-bounds access issue was addressed with improved bounds checking. This … | |
| CVE-2026-65331 | Low | 0.5% | 4.3 | This issue was addressed through improved state management. This issue is fixed … | |
| CVE-2026-65332 | Low | 0.5% | 4.3 | This issue was addressed through improved state management. This issue is fixed … | |
| CVE-2026-65333 | Low | 0.5% | 4.3 | This issue was addressed through improved state management. This issue is fixed … | |
| CVE-2026-65334 | Low | 0.5% | 4.3 | A memory corruption issue was addressed with improved state management. This iss… | |
| CVE-2026-65335 | Low | 0.5% | 4.3 | This issue was addressed through improved state management. This issue is fixed … | |
| CVE-2026-65336 | Low | 0.5% | 4.3 | This issue was addressed through improved state management. This issue is fixed … | |
| CVE-2026-65337 | Low | 0.5% | 4.3 | This issue was addressed through improved state management. This issue is fixed … | |
| CVE-2026-65338 | Low | 0.5% | 4.3 | The issue was addressed with improved memory handling. This issue is fixed in Sa… | |
| CVE-2026-65340 | Low | 0.5% | 4.3 | This issue was addressed through improved state management. This issue is fixed … | |
| CVE-2026-65351 | Low | 0.5% | 4.3 | This issue was addressed through improved state management. This issue is fixed … |