apple
1,466 known vulnerabilities affecting apple products.
Products
macos 1342
iphone_os 402
ipados 306
visionos 178
watchos 160
tvos 158
safari 66
mac_os_x 4
container 2
swift-crypto 2
swiftnio 1
swiftnio_http\/2 1
swiftnio_ssh 1
swiftnio_ssl 1
servicetalk 1
xcode 1
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2018-15982 | Act now | 89.1% | 7.8 | ● | Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a … |
| CVE-2022-2294 | Act now | 70.5% | 8.8 | ● | Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed … |
| CVE-2016-1019 | Act now | 22.3% | 9.8 | ● | Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a den… |
| CVE-2026-65400 | Act now | 10.5% | 9.8 | ● | An authentication issue was addressed with improved state management. This issue… |
| CVE-2026-34621 | Act now | 7.1% | 8.6 | ● | Acrobat Reader versions 24.001.30356, 26.001.21367 and earlier are affected by a… |
| CVE-2026-5281 | Act now | 4.9% | 8.8 | ● | Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote… |
| CVE-2026-11645 | Act now | 2.2% | 8.8 | ● | Out of bounds read and write in V8 in Google Chrome prior to 149.0.7827.103 allo… |
| CVE-2026-28373 | High | 0.4% | 9.6 | The Stackfield Desktop App before 1.10.2 for macOS and Windows contains a path t… | |
| CVE-2019-7105 | Medium | 7.6% | 9.8 | Adobe XD versions 16.0 and earlier have a path traversal vulnerability. Successf… | |
| CVE-2019-7106 | Medium | 7.6% | 9.8 | Adobe XD versions 16.0 and earlier have a path traversal vulnerability. Successf… | |
| CVE-2021-39537 | Medium | 3.2% | 8.8 | An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c … | |
| CVE-2026-45591 | Medium | 2.5% | 7.5 | Uncontrolled resource consumption in ASP.NET Core allows an unauthorized attacke… | |
| CVE-2026-33116 | Medium | 2.1% | 7.5 | Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, … | |
| CVE-2022-29458 | Medium | 1.3% | 7.1 | ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation vio… | |
| CVE-2026-39868 | Medium | 1.2% | 9.1 | This issue was addressed with improved input validation. This issue is fixed in … | |
| CVE-2026-43760 | Medium | 1.1% | 8.6 | An access issue was addressed with improved access restrictions. This issue is f… | |
| CVE-2026-57108 | Medium | 1.1% | 7.5 | Access of resource using incompatible type ('type confusion') in .NET Core allow… | |
| CVE-2025-43433 | Medium | 1.1% | 8.8 | The issue was addressed with improved memory handling. This issue is fixed in Sa… | |
| CVE-2026-62901 | Medium | 1.1% | 7.5 | Unchecked input for loop condition in .NET allows an unauthorized attacker to de… | |
| CVE-2026-47302 | Medium | 1.0% | 7.5 | Allocation of resources without limits or throttling in .NET allows an unauthori… | |
| CVE-2026-56170 | Medium | 1.0% | 7.5 | Allocation of resources without limits or throttling in ASP.NET Core allows an u… | |
| CVE-2026-65414 | Medium | 1.0% | 9.8 | An out-of-bounds write issue was addressed with improved bounds checking. This i… | |
| CVE-2026-8476 | Medium | 1.0% | 9.9 | IBM Langflow OSS 1.0.0 through 1.10.0 contain a critical remote code execution v… | |
| CVE-2026-48351 | Medium | 0.9% | 7.5 | CAI Content Credentials is affected by an Improper Input Validation vulnerabilit… | |
| CVE-2026-48352 | Medium | 0.9% | 7.5 | CAI Content Credentials is affected by an Improper Input Validation vulnerabilit… | |
| CVE-2026-43715 | Medium | 0.9% | 8.8 | A use-after-free issue was addressed with improved memory management. This issue… | |
| CVE-2026-43725 | Medium | 0.9% | 7.1 | The issue was addressed with improved input validation. This issue is fixed in S… | |
| CVE-2026-48345 | Medium | 0.9% | 8.2 | Animate is affected by an Improper Neutralization of Special Elements used in an… | |
| CVE-2026-64704 | Medium | 0.8% | 9.8 | A type confusion issue was addressed with improved memory handling. This issue i… | |
| CVE-2026-9135 | Medium | 0.8% | 9.9 | IBM Langflow OSS 1.0.0 through 1.10.0 Langflow versions up to 1.9.2 (commit 9498… | |
| CVE-2026-50527 | Medium | 0.8% | 7.5 | Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to… | |
| CVE-2026-50648 | Medium | 0.8% | 7.5 | Allocation of resources without limits or throttling in .NET Framework allows an… | |
| CVE-2026-50651 | Medium | 0.8% | 7.5 | Allocation of resources without limits or throttling in .NET allows an unauthori… | |
| CVE-2026-21267 | Medium | 0.8% | 8.6 | Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Neutra… | |
| CVE-2026-48295 | Medium | 0.8% | 7.5 | CAI Content Credentials is affected by an Insufficiently Protected Credentials v… | |
| CVE-2026-43777 | Medium | 0.8% | 7.5 | This issue was addressed with improved input validation. This issue is fixed in … | |
| CVE-2026-28983 | Medium | 0.8% | 7.5 | A type confusion issue was addressed with improved checks. This issue is fixed i… | |
| CVE-2026-8481 | Medium | 0.8% | 9.9 | IBM Langflow OSS 1.0.0 through 1.10.0 contain a critical remote code execution v… | |
| CVE-2026-43803 | Medium | 0.8% | 9.8 | An out-of-bounds write issue was addressed with improved bounds checking. This i… | |
| CVE-2026-43810 | Medium | 0.8% | 9.8 | The issue was addressed with improved memory handling. This issue is fixed in iO… | |
| CVE-2026-64703 | Medium | 0.8% | 9.8 | A use after free issue was addressed with improved memory management. This issue… | |
| CVE-2026-43807 | Medium | 0.8% | 9.8 | A buffer overflow was addressed with improved bounds checking. This issue is fix… | |
| CVE-2025-24259 | Medium | 0.8% | 9.8 | This issue was addressed with additional entitlement checks. This issue is fixed… | |
| CVE-2026-7755 | Medium | 0.7% | 8.8 | IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow remote code execution… | |
| CVE-2026-47303 | Medium | 0.7% | 8.8 | Authentication bypass by assumed-immutable data in ASP.NET Core allows an author… | |
| CVE-2026-64695 | Medium | 0.7% | 9.8 | The issue was addressed with improved memory handling. This issue is fixed in iO… | |
| CVE-2026-9103 | Medium | 0.7% | 9.8 | IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to gain unau… | |
| CVE-2026-48347 | Medium | 0.7% | 7.7 | Animate is affected by an Improper Neutralization of Special Elements used in an… | |
| CVE-2026-43682 | Medium | 0.7% | 9.8 | The issue was addressed with improved memory handling. This issue is fixed in ma… | |
| CVE-2026-64696 | Medium | 0.7% | 9.8 | The issue was addressed with improved memory handling. This issue is fixed in ma… |
Page 1 of 30
Next →