CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2023-40435

    Last Modified: 4 Nov 2025

    This issue was addressed by enabling hardened runtime. This issue is fixed in Xcode 15. An app may be able to access App Store credentials.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-40419

    Last Modified: 4 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10. An app may be able to gain elevated privileges.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40399

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to disclose kernel memory.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-41984

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-41068

    Last Modified: 4 Nov 2025

    An access issue was addressed with improved access restrictions. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, iOS 16.7 and iPadOS 16.7. A user may be able to elevate privileges.

    Published: 26 Sept 2023
    7.1
    High

    CVE-2023-40454

    Last Modified: 4 Nov 2025

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to delete files for which it does not have permission.

    Published: 26 Sept 2023
    6.5
    Medium

    CVE-2023-40403

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may disclose sensitive information.

    Published: 26 Sept 2023
    3.3
    Low

    CVE-2023-40395

    Last Modified: 4 Nov 2025

    The issue was addressed with improved handling of caches. This issue is fixed in tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to access contacts.

    Published: 26 Sept 2023
    3.3
    Low

    CVE-2023-29497

    Last Modified: 4 Nov 2025

    A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sonoma 14. An app may be able to access calendar data saved to a temporary directory.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-41063

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.

    Published: 26 Sept 2023
    4.3
    Medium

    CVE-2023-40388

    Last Modified: 4 Nov 2025

    A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sonoma 14. Safari may save photos to an unprotected location.

    Published: 26 Sept 2023
    3.3
    Low

    CVE-2023-40520

    Last Modified: 4 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10. An app may be able to access edited photos saved to a temporary directory.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-40432

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-38615

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40424

    Last Modified: 4 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to access user-sensitive data.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-41995

    Last Modified: 4 Nov 2025

    A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-41079

    Last Modified: 4 Nov 2025

    The issue was addressed with improved permissions logic. This issue is fixed in macOS Sonoma 14. An app may be able to bypass Privacy preferences.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40541

    Last Modified: 4 Nov 2025

    This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Sonoma 14. A shortcut may output sensitive user data without consent.

    Published: 26 Sept 2023
    3.3
    Low

    CVE-2023-40384

    Last Modified: 4 Nov 2025

    A permissions issue was addressed with improved redaction of sensitive information. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to read sensitive location information.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-40412

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17. An app may be able to execute arbitrary code with kernel privileges.

    Published: 26 Sept 2023
    6.5
    Medium

    CVE-2023-39233

    Last Modified: 4 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may disclose sensitive information.

    Published: 26 Sept 2023
    3.3
    Low

    CVE-2023-35990

    Last Modified: 4 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, watchOS 10, iOS 16.7 and iPadOS 16.7, macOS Sonoma 14. An app may be able to identify what other apps a user has installed.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40428

    Last Modified: 4 Nov 2025

    The issue was addressed with improved handling of caches. This issue is fixed in iOS 17 and iPadOS 17. An app may be able to access sensitive user data.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40429

    Last Modified: 4 Nov 2025

    A permissions issue was addressed with improved validation. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to access sensitive user data.

    Published: 26 Sept 2023
    8.8
    High

    CVE-2023-39434

    Last Modified: 2 May 2025

    A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. Processing web content may lead to arbitrary code execution.

    Published: 26 Sept 2023
    7.1
    High

    CVE-2023-40452

    Last Modified: 4 Nov 2025

    The issue was addressed with improved bounds checks. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to overwrite arbitrary files.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-41078

    Last Modified: 4 Nov 2025

    An authorization issue was addressed with improved state management. This issue is fixed in macOS Sonoma 14. An app may be able to bypass certain Privacy preferences.

    Published: 26 Sept 2023
    8.6
    High

    CVE-2023-40448

    Last Modified: 4 Nov 2025

    The issue was addressed with improved handling of protocols. This issue is fixed in tvOS 17, iOS 16.7 and iPadOS 16.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. A remote attacker may be able to break out of Web Content sandbox.

    Published: 26 Sept 2023
    8.8
    High

    CVE-2023-41074

    Last Modified: 7 Oct 2026

    The issue was addressed with improved checks. This issue is fixed in tvOS 17, Safari 17, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may lead to arbitrary code execution.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-40409

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17. An app may be able to execute arbitrary code with kernel privileges.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40426

    Last Modified: 4 Nov 2025

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14. An app may be able to bypass certain Privacy preferences.

    Published: 26 Sept 2023
    3.3
    Low

    CVE-2023-37448

    Last Modified: 4 Nov 2025

    A lock screen issue was addressed with improved state management. This issue is fixed in macOS Sonoma 14. A user may be able to view restricted content from the lock screen.

    Published: 26 Sept 2023
    10
    Critical

    CVE-2023-38586

    Last Modified: 4 Nov 2025

    An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sonoma 14. A sandboxed process may be able to circumvent sandbox restrictions.

    Published: 26 Sept 2023
    4.3
    Medium

    CVE-2023-35984

    Last Modified: 4 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An attacker in physical proximity can cause a limited out of bounds write.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40410

    Last Modified: 4 Nov 2025

    An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to disclose kernel memory.

    Published: 26 Sept 2023
    3.3
    Low

    CVE-2023-40386

    Last Modified: 4 Nov 2025

    A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sonoma 14. An app may be able to access Notes attachments.

    Published: 26 Sept 2023
    4.4
    Medium

    CVE-2023-41981

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations.

    Published: 26 Sept 2023
    8.8
    High

    CVE-2023-40451

    Last Modified: 13 Feb 2025

    This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in Safari 17. An attacker with JavaScript execution may be able to execute arbitrary code.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40406

    Last Modified: 4 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7, macOS Ventura 13.6, macOS Sonoma 14. An app may be able to read arbitrary files.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40391

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, macOS Sonoma 14, Xcode 15. An app may be able to disclose kernel memory.

    Published: 26 Sept 2023
    4.7
    Medium

    CVE-2023-41979

    Last Modified: 4 Nov 2025

    A race condition was addressed with improved locking. This issue is fixed in macOS Sonoma 14. An app may be able to modify protected parts of the file system.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-41996

    Last Modified: 4 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.6. Apps that fail verification checks may still launch.

    Published: 26 Sept 2023
    7.5
    High

    CVE-2023-40407

    Last Modified: 4 Nov 2025

    The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14. A remote attacker may be able to cause a denial-of-service.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40450

    Last Modified: 4 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. An app may bypass Gatekeeper checks.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-41980

    Last Modified: 4 Nov 2025

    A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to bypass Privacy preferences.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-40431

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in iOS 17 and iPadOS 17. An app may be able to execute arbitrary code with kernel privileges.

    Published: 26 Sept 2023
    3.3
    Low

    CVE-2023-40427

    Last Modified: 4 Nov 2025

    The issue was addressed with improved handling of caches. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to read sensitive location information.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-32396

    Last Modified: 4 Nov 2025

    This issue was addressed with improved checks. This issue is fixed in Xcode 15, tvOS 17, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to gain elevated privileges.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-41968

    Last Modified: 4 Nov 2025

    This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to read arbitrary files.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-23495

    Last Modified: 4 Nov 2025

    A permissions issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sonoma 14. An app may be able to access sensitive user data.

    Published: 26 Sept 2023