apple
1,466 known vulnerabilities affecting apple products.
Products
macos 1342
iphone_os 402
ipados 306
visionos 178
watchos 160
tvos 158
safari 66
mac_os_x 4
container 2
swift-crypto 2
swiftnio 1
swiftnio_http\/2 1
swiftnio_ssh 1
swiftnio_ssl 1
servicetalk 1
xcode 1
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-17654 | Medium | 0.2% | 7.8 | Race in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local a… | |
| CVE-2026-21318 | Medium | 0.2% | 7.8 | After Effects versions 25.6 and earlier are affected by an out-of-bounds write v… | |
| CVE-2026-21327 | Medium | 0.2% | 7.8 | After Effects versions 25.6 and earlier are affected by an out-of-bounds write v… | |
| CVE-2026-21328 | Medium | 0.2% | 7.8 | After Effects versions 25.6 and earlier are affected by an out-of-bounds write v… | |
| CVE-2026-10019 | Medium | 0.2% | 8.8 | Integer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a rem… | |
| CVE-2026-28973 | Medium | 0.2% | 8.6 | An integer overflow was addressed with improved input validation. This issue is … | |
| CVE-2026-43729 | Medium | 0.2% | 7.8 | The issue was addressed with improved memory handling. This issue is fixed in iO… | |
| CVE-2026-43733 | Medium | 0.2% | 7.8 | The issue was addressed with improved memory handling. This issue is fixed in iO… | |
| CVE-2026-43780 | Medium | 0.2% | 7.8 | An integer overflow was addressed with improved input validation. This issue is … | |
| CVE-2026-64716 | Medium | 0.2% | 7.8 | The issue was addressed with improved memory handling. This issue is fixed in iO… | |
| CVE-2026-79907 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by a Double Free vulnerability that could result in a… | |
| CVE-2026-80161 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by an Access of Resource Using Incompatible Type ('Ty… | |
| CVE-2026-81987 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by an Integer Overflow or Wraparound vulnerability th… | |
| CVE-2026-5907 | Medium | 0.2% | 8.1 | Insufficient data validation in Media in Google Chrome prior to 147.0.7727.55 al… | |
| CVE-2026-20683 | Medium | 0.2% | 7.1 | An authentication issue was addressed with improved state management. This issue… | |
| CVE-2026-10926 | Medium | 0.2% | 8.8 | Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attack… | |
| CVE-2026-11304 | Medium | 0.2% | 8.8 | Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a remot… | |
| CVE-2026-64790 | Medium | 0.2% | 7.8 | A path handling issue was addressed with improved validation. This issue is fixe… | |
| CVE-2026-11693 | Medium | 0.2% | 8.1 | Inappropriate implementation in Plugins in Google Chrome prior to 149.0.7827.103… | |
| CVE-2026-64692 | Medium | 0.2% | 7.1 | An out-of-bounds read was addressed with improved bounds checking. This issue is… | |
| CVE-2026-75631 | Medium | 0.2% | 7.8 | Photoshop Desktop is affected by an out-of-bounds write vulnerability that could… | |
| CVE-2026-82005 | Medium | 0.2% | 7.8 | Photoshop Desktop is affected by an out-of-bounds write vulnerability that could… | |
| CVE-2026-9982 | Medium | 0.2% | 8.3 | Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 14… | |
| CVE-2026-21342 | Medium | 0.2% | 7.8 | Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds… | |
| CVE-2026-64766 | Medium | 0.2% | 7.8 | An integer overflow was addressed with improved input validation. This issue is … | |
| CVE-2026-28912 | Medium | 0.2% | 7.8 | A logic issue was addressed with improved restrictions. This issue is fixed in m… | |
| CVE-2026-28945 | Medium | 0.2% | 7.1 | A permissions issue was addressed with additional sandbox restrictions. This iss… | |
| CVE-2026-43691 | Medium | 0.2% | 7.8 | A path handling issue was addressed with improved validation. This issue is fixe… | |
| CVE-2026-84497 | Medium | 0.2% | 7.8 | A buffer overflow was addressed with improved size validation. This issue is fix… | |
| CVE-2025-43257 | Medium | 0.2% | 8.7 | This issue was addressed with improved handling of symlinks. This issue is fixed… | |
| CVE-2026-11236 | Medium | 0.2% | 8.3 | Insufficient policy enforcement in Web Bluetooth in Google Chrome prior to 149.0… | |
| CVE-2026-43747 | Medium | 0.2% | 7.1 | An out-of-bounds read was addressed with improved bounds checking. This issue is… | |
| CVE-2026-10002 | Medium | 0.2% | 8.8 | Use after free in PDFium in Google Chrome prior to 148.0.7778.216 allowed a remo… | |
| CVE-2026-11092 | Medium | 0.2% | 8.8 | Insufficient policy enforcement in DevTools in Google Chrome prior to 149.0.7827… | |
| CVE-2026-11692 | Medium | 0.2% | 8.3 | Use after free in Read Anything in Google Chrome prior to 149.0.7827.103 allowed… | |
| CVE-2026-11700 | Medium | 0.2% | 8.3 | Use after free in Tracing in Google Chrome prior to 149.0.7827.103 allowed a rem… | |
| CVE-2026-27238 | Medium | 0.2% | 7.8 | InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based … | |
| CVE-2026-34707 | Medium | 0.2% | 7.8 | InCopy versions 21.3, 20.5.3 and earlier are affected by a Heap-based Buffer Ove… | |
| CVE-2026-79908 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by an out-of-bounds write vulnerability that could re… | |
| CVE-2026-81983 | Medium | 0.2% | 7.8 | Acrobat Reader is affected by an out-of-bounds write vulnerability that could re… | |
| CVE-2026-9997 | Medium | 0.2% | 8.3 | Use after free in Input in Google Chrome prior to 148.0.7778.216 allowed a remot… | |
| CVE-2026-34638 | Medium | 0.2% | 7.8 | Premiere Pro versions 26.0.2, 25.6.4 and earlier are affected by a Use After Fre… | |
| CVE-2026-43673 | Medium | 0.2% | 7.8 | The issue was addressed with improved memory handling. This issue is fixed in iO… | |
| CVE-2026-43711 | Medium | 0.2% | 7.8 | A memory corruption issue was addressed with improved memory handling. This issu… | |
| CVE-2026-47906 | Medium | 0.2% | 8.6 | Dreamweaver Desktop versions 21.7 and earlier are affected by a Dependency on Vu… | |
| CVE-2026-64749 | Medium | 0.2% | 7.8 | The issue was addressed with improved memory handling. This issue is fixed in iO… | |
| CVE-2026-64758 | Medium | 0.2% | 7.8 | The issue was addressed with improved bounds checks. This issue is fixed in iOS … | |
| CVE-2026-11296 | Medium | 0.2% | 7.5 | Inappropriate implementation in ImageCapture in Google Chrome prior to 149.0.782… | |
| CVE-2026-34695 | Medium | 0.2% | 7.8 | InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Stack-based… | |
| CVE-2026-34697 | Medium | 0.2% | 7.8 | InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Stack-based… |