apple / macos
1,342 known vulnerabilities in apple macos.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-17709 | Medium | 0.4% | 9.6 | Race in Downloads in Google Chrome on Mac prior to 151.0.7922.72 allowed a remot… | |
| CVE-2026-65374 | Medium | 0.4% | 8.8 | A memory corruption issue was addressed with improved validation. This issue is … | |
| CVE-2026-79064 | Medium | 0.4% | 9.6 | Use after free in Network in Google Chrome on on Mac prior to 152.0.7977.65 allo… | |
| CVE-2026-65346 | Medium | 0.4% | 8.8 | An integer overflow was addressed with improved input validation. This issue is … | |
| CVE-2026-7341 | Medium | 0.4% | 8.8 | Use after free in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a remo… | |
| CVE-2026-7342 | Medium | 0.4% | 8.8 | Use after free in WebView in Google Chrome on Android prior to 147.0.7727.138 al… | |
| CVE-2026-7348 | Medium | 0.4% | 8.8 | Use after free in Codecs in Google Chrome prior to 147.0.7727.138 allowed a remo… | |
| CVE-2026-7355 | Medium | 0.4% | 8.8 | Use after free in Media in Google Chrome prior to 147.0.7727.138 allowed a remot… | |
| CVE-2026-7358 | Medium | 0.4% | 8.8 | Use after free in Animation in Google Chrome prior to 147.0.7727.138 allowed a r… | |
| CVE-2026-65410 | Medium | 0.4% | 7.5 | The issue was addressed with improved checks. This issue is fixed in iOS 26.7 an… | |
| CVE-2026-11118 | Medium | 0.4% | 8.8 | Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remot… | |
| CVE-2026-19303 | Medium | 0.4% | 8.1 | IBM Langflow OSS 1.0.0 through 1.11.2 could allow a remote authenticated attacke… | |
| CVE-2026-76035 | Medium | 0.4% | 9.6 | Inappropriate implementation in Media in Google Chrome on on Mac prior to 151.0.… | |
| CVE-2026-9952 | Medium | 0.4% | 8.8 | Use after free in WebAudio in Google Chrome prior to 148.0.7778.216 allowed a re… | |
| CVE-2026-17711 | Medium | 0.4% | 9.6 | Race in Downloads in Google Chrome on Mac prior to 151.0.7922.72 allowed a remot… | |
| CVE-2026-13446 | Medium | 0.4% | 9.8 | IBM Langflow OSS 1.0.0 through 1.10.1 contains hard-coded credentials, such as a… | |
| CVE-2026-7335 | Medium | 0.4% | 8.8 | Use after free in media in Google Chrome prior to 147.0.7727.138 allowed a remot… | |
| CVE-2026-7356 | Medium | 0.4% | 8.8 | Use after free in Navigation in Google Chrome prior to 147.0.7727.138 allowed a … | |
| CVE-2026-7363 | Medium | 0.4% | 8.8 | Use after free in Canvas in Google Chrome on Linux, ChromeOS prior to 147.0.7727… | |
| CVE-2026-28935 | Medium | 0.4% | 7.5 | The issue was addressed with improved memory handling. This issue is fixed in iO… | |
| CVE-2026-35562 | Medium | 0.4% | 7.5 | Allocation of resources without limits in the parsing components in Amazon Athen… | |
| CVE-2026-5873 | Medium | 0.4% | 8.8 | Out of bounds read and write in V8 in Google Chrome prior to 147.0.7727.55 allow… | |
| CVE-2026-28947 | Medium | 0.4% | 8.8 | A use-after-free issue was addressed with improved memory management. This issue… | |
| CVE-2026-43794 | Medium | 0.4% | 8.8 | A memory corruption issue was addressed with improved memory handling. This issu… | |
| CVE-2026-19300 | Medium | 0.4% | 7.5 | IBM Langflow OSS 1.0.0 through 1.11.2 could allow a remote attacker to obtain se… | |
| CVE-2026-10946 | Medium | 0.4% | 7.5 | Heap buffer overflow in Media in Google Chrome prior to 149.0.7827.53 allowed a … | |
| CVE-2026-79069 | Medium | 0.4% | 8.8 | Memory corruption in Tint in Google Chrome on on Mac prior to 152.0.7977.65 allo… | |
| CVE-2026-79128 | Medium | 0.4% | 9.6 | Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowe… | |
| CVE-2026-43686 | Medium | 0.4% | 8.8 | A use-after-free issue was addressed with improved memory management. This issue… | |
| CVE-2026-9884 | Medium | 0.4% | 8.8 | Use after free in Browser in Google Chrome on Mac prior to 148.0.7778.216 allowe… | |
| CVE-2026-9114 | Medium | 0.4% | 8.8 | Use after free in QUIC in Google Chrome on prior to 148.0.7778.179 allowed a rem… | |
| CVE-2026-10957 | Medium | 0.4% | 8.8 | Use after free in Glic in Google Chrome prior to 149.0.7827.53 allowed a remote … | |
| CVE-2026-10963 | Medium | 0.4% | 8.8 | Integer overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote … | |
| CVE-2026-10964 | Medium | 0.4% | 8.8 | Integer overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote … | |
| CVE-2026-10965 | Medium | 0.4% | 8.8 | Integer overflow in DevTools in Google Chrome prior to 149.0.7827.53 allowed a r… | |
| CVE-2026-10987 | Medium | 0.4% | 8.8 | Integer overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote … | |
| CVE-2026-10991 | Medium | 0.4% | 8.8 | Use after free in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote at… | |
| CVE-2026-11046 | Medium | 0.4% | 8.8 | Insufficient validation of untrusted input in Media in Google Chrome prior to 14… | |
| CVE-2026-10893 | Medium | 0.4% | 8.8 | Use after free in Chromoting in Google Chrome prior to 149.0.7827.53 allowed a r… | |
| CVE-2026-10945 | Medium | 0.4% | 8.8 | Use after free in PDF in Google Chrome prior to 149.0.7827.53 allowed a remote a… | |
| CVE-2026-7333 | Medium | 0.4% | 9.6 | Use after free in GPU in Google Chrome prior to 147.0.7727.138 allowed a remote … | |
| CVE-2026-7334 | Medium | 0.4% | 8.8 | Use after free in Views in Google Chrome on Mac prior to 147.0.7727.138 allowed … | |
| CVE-2026-11662 | Medium | 0.4% | 8.8 | Type Confusion in Bindings in Google Chrome prior to 149.0.7827.103 allowed a re… | |
| CVE-2026-19875 | Medium | 0.4% | 7.5 | IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to overwrite… | |
| CVE-2026-34691 | Medium | 0.4% | 9.3 | Adobe Experience Manager Forms JEE versions LTS SP1, 6.5.24.0 and earlier are af… | |
| CVE-2026-27220 | Medium | 0.4% | 7.8 | Acrobat Reader versions 24.001.30307, 24.001.30308, 25.001.21265 and earlier are… | |
| CVE-2026-11054 | Medium | 0.4% | 8.8 | Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remot… | |
| CVE-2026-11068 | Medium | 0.4% | 8.8 | Use after free in WebSockets in Google Chrome prior to 149.0.7827.53 allowed a r… | |
| CVE-2026-9962 | Medium | 0.4% | 8.8 | Use after free in WebRTC in Google Chrome prior to 148.0.7778.216 allowed a remo… | |
| CVE-2026-11024 | Medium | 0.4% | 8.8 | Stack buffer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a … |