63
Total Vulnerabilities
8
Years Tracked
5
Apple Products
Showing 63 vulnerabilities
CVE-2025-43300 iOS Memory corruption
Memory corruption in ImageIO
Date Patched: August 20, 2025
Reported By: Apple
CVE-2025-31201 iOS PAC bypass
Arbitrary read and write
Date Patched: April 16, 2025
Reported By: Apple
CVE-2025-31200 iOS Memory Corruption
Memory Corruption in CoreAudio
Date Patched: April 16, 2025
Reported By: Apple and Google Threat Analysis Group
CVE-2025-24201 WebKit Memory Corruption
OOB write
Date Patched: March 11, 2025
Reported By: Apple
CVE-2025-24200 iOS Security Feature Bypass
A physical attack may disable USB Restricted Mode
Date Patched: February 10, 2025
Reported By: Bill Marczak of The Citizen Lab at The University of Toronto’s Munk School
CVE-2025-24085 iOS Memory Corruption
Use after free in CoreMedia
Date Patched: January 27, 2025
CVE-2024-44309 WebKit Logic Error
Universal cross-site scripting
Date Patched: November 19, 2024
Reported By: Cl?ment Lecigne and Beno?t Sevens of Google's Threat Analysis Group
CVE-2024-44308 WebKit Memory Corruption
Input validation error
Date Patched: November 19, 2024
Reported By: Cl?ment Lecigne and Beno?t Sevens of Google's Threat Analysis Group
CVE-2024-23296 iOS Memory Corruption
Arbitrary kernel r/w in RTKit
Date Patched: March 6, 2024
CVE-2024-23225 iOS Memory Corruption
Out-of-bounds memory access in Kernel
Date Patched: March 5, 2024
CVE-2024-23222 WebKit Memory Corruption
Type confusion
Date Patched: January 22, 2024
CVE-2023-42917 WebKit Memory Corruption
Unspecified memory corruption
Date Patched: November 30, 2023
Reported By: Cl?ment Lecigne of Google's Threat Analysis Group
CVE-2023-42916 WebKit Info disclosure
Out of bounds read
Date Patched: November 30, 2023
Reported By: Cl?ment Lecigne of Google's Threat Analysis Group
CVE-2023-42824 iOS Memory Corruption
Privilege escalation in Kernel
Date Patched: October 4, 2023
CVE-2023-41993 WebKit Memory Corruption
Unspecified memory corruption
Date Patched: September 21, 2023
Reported By: Bill Marczak of The Citizen Lab at The University of Toronto's Munk School and Maddie Stone of Google's Threat Analysis Group
Analysis: View Analysis
CVE-2023-41992 iOS Memory Corruption
Vulnerability in the XNU Kernel
Date Patched: September 21, 2023
Reported By: Bill Marczak of The Citizen Lab at The University of Toronto's Munk School and Maddie Stone of Google's Threat Analysis Group
Analysis: View Analysis
CVE-2023-41991 iOS Logic/Design Flaw
Singature validation bypass
Date Patched: September 21, 2023
Reported By: Bill Marczak of The Citizen Lab at The University of Toronto's Munk School and Maddie Stone of Google's Threat Analysis Group
Analysis: View Analysis
CVE-2023-41064 iOS Memory Corruption
Buffer overflow in ImageIO
Date Patched: September 7, 2023
Reported By: The Citizen Lab at The University of Toronto's Munk School
CVE-2023-41061 iOS Memory Corruption
A validation issue in Wallet
Date Patched: September 7, 2023
Reported By: Apple
CVE-2023-41990 iOS Memory Corruption
TrueType font remote code execution in iOS 15.7
Date Patched: July 24, 2023
Reported By: Apple, Valentin Pashkov, Mikhail Vinogradov, Georgy Kucherin (@kucher1n), Leonid Bezvershenko (@bzvr_), and Boris Larin (@oct0xor) of Kaspersky
CVE-2023-38606 iOS Memory Corruption
Unspecified kernel vulnerability against pre-iOS 15.7.1
Date Patched: July 24, 2023
Reported By: Valentin Pashkov, Mikhail Vinogradov, Georgy Kucherin (@kucher1n), Leonid Bezvershenko (@bzvr_), and Boris Larin (@oct0xor) of Kaspersky
CVE-2023-37450 WebKit Memory Corruption
Unspecified memory corruption
Date Patched: July 10, 2023
CVE-2023-32439 WebKit Memory Corruption
Type confusion
Date Patched: June 21, 2023
CVE-2023-32435 WebKit Memory Corruption
Unspecified memory corruption affecting iOS 15.7.6
Date Patched: June 21, 2023
Reported By: Georgy Kucherin (@kucher1n), Leonid Bezvershenko (@bzvr_), and Boris Larin (@oct0xor) of Kaspersky
Analysis: View Analysis
CVE-2023-32434 iOS Memory Corruption
Integer overflow in the XNU kernel
Date Patched: June 21, 2023
Reported By: Georgy Kucherin (@kucher1n), Leonid Bezvershenko (@bzvr_), and Boris Larin (@oct0xor) of Kaspersky
Analysis: View Analysis
CVE-2023-32409 WebKit Memory Corruption
WebContext sandbox escape
Date Patched: May 18, 2023
Reported By: Cl?ment Lecigne of Google's Threat Analysis Group and Donncha ? Cearbhaill of Amnesty International?s Security Lab
CVE-2023-32373 WebKit Memory Corruption
Use-after-free in WebKit
Date Patched: May 1, 2023
CVE-2023-28204 WebKit Memory Corruption
Out-of-bounds read
Date Patched: May 1, 2023
CVE-2023-28206 iOS Memory Corruption
Out-of-bounds write in IOSurfaceAccelerator
Date Patched: April 7, 2023
Reported By: Cl?ment Lecigne of Google's Threat Analysis Group and Donncha ? Cearbhaill of Amnesty International?s Security Lab
CVE-2023-28205 WebKit Memory Corruption
Use-after-free in WebKit
Date Patched: April 7, 2023
Reported By: Cl?ment Lecigne of Google's Threat Analysis Group and Donncha ? Cearbhaill of Amnesty International?s Security Lab
CVE-2023-23529 WebKit Memory Corruption
Type confusion
Date Patched: February 13, 2023
CVE-2022-42475 FortiOS Memory Corruption
Heap buffer overflow in sslvpnd
Date Patched: December 12, 2022
CVE-2022-42856 WebKit Memory Corruption
Type confusion
Date Patched: November 30, 2022
Reported By: Cl?ment Lecigne of Google's Threat Analysis Group
Analysis: View Analysis
CVE-2022-42827 iOS Memory Corruption
Out-of-bounds write in the kernel
Date Patched: October 24, 2022
CVE-2022-32917 iOS/macOS Memory Corruption
Unspecified kernel vulnerability
Date Patched: September 12, 2022
Root Cause Analysis: View RCA
CVE-2022-32894 iOS/macOS Memory Corruption
Kernel out-of-bounds write
Date Patched: August 17, 2022
CVE-2022-32893 WebKit Memory Corruption
Out-of-bounds write
Date Patched: August 17, 2022
CVE-2022-22675 iOS/macOS Memory Corruption
Out-of-bounds write in AppleAVD
Date Patched: March 31, 2022
Root Cause Analysis: View RCA
CVE-2022-22674 macOS Memory Corruption
Out-of-bounds read in Intel Graphics Driver
Date Patched: March 31, 2022
CVE-2022-22620 WebKit Memory Corruption
Unspecified use-after-free
Date Patched: February 10, 2022
Analysis: View Analysis
Root Cause Analysis: View RCA
CVE-2022-22587 iOS/macOS Memory Corruption
Memory corruption in IOMobileFrameBuffer
Date Patched: January 26, 2022
Reported By: Meysam Firouzi (@R00tkitSMM) of MBition - Mercedes-Benz Innovation Lab, Siddharth Aeri (@b1n4r1b01), & an anonymous reporter
CVE-2021-30983 iOS Memory Corruption
Buffer overflow in IOMobileFrameBuffer
Date Patched: December 13, 2021
Reported By: Pangu via Tianfu Cup
Analysis: View Analysis
CVE-2021-30883 iOS Memory Corruption
A memory corruption issue in IOMobileFrameBuffer
Date Patched: October 11, 2021
Analysis: View Analysis
CVE-2021-30869 macOS Memory Corruption
Type confusion in XNU
Date Patched: September 23, 2021
Reported By: Erye Hernandez of Google Threat Analysis Group, Cl?ment Lecigne of Google Threat Analysis Group, and Ian Beer of Google Project Zero
Analysis: View Analysis
CVE-2021-31010 iOS Logic/Design Flaw
Vulnerability in CommCenter
Date Patched: September 13, 2021
Reported By: The Citizen Lab & Google Project Zero
Analysis: View Analysis
CVE-2021-30860 iOS Memory Corruption
Integer overflow in CoreGraphics
Date Patched: September 13, 2021
Reported By: The Citizen Lab
Analysis: View Analysis
CVE-2021-30858 WebKit Memory Corruption
Use-after-free in Indexed DB
Date Patched: September 13, 2021
Root Cause Analysis: View RCA
CVE-2021-30807 iOS Memory Corruption
Memory corruption in IOMobileFrameBuffer
Date Patched: July 26, 2021
Analysis: View Analysis
CVE-2021-30665 WebKit Memory Corruption
Memory corruption related to state management in Webkit
Date Patched: May 3, 2021
Reported By: yangkang (@dnpushme)&zerokeeper&bianliang of 360 ATA
CVE-2021-30663 WebKit Memory Corruption
Integer overflow in Webkit
Date Patched: May 3, 2021
CVE-2021-30661 WebKit Memory Corruption
Use-after-free in WebKit
Date Patched: April 26, 2021
Reported By: yangkang(@dnpushme) of 360 ATA
CVE-2021-1879 WebKit UXSS
Universal cross site scripting in Webkit
Date Patched: March 26, 2021
Reported By: Clement Lecigne of Google Threat Analysis Group and Billy Leonard of Google Threat Analysis Group
Analysis: View Analysis
Root Cause Analysis: View RCA
CVE-2021-1871 WebKit Logic/Design Flaw
Unspecified logic flaw in Webkit
Date Patched: January 26, 2021
CVE-2021-1870 WebKit Logic/Design Flaw
Unspecified logic flaw in Webkit
Date Patched: January 26, 2021
CVE-2021-1782 iOS Memory Corruption
Unspecified kernel race condition
Date Patched: January 26, 2021
Analysis: View Analysis
CVE-2020-27950 iOS Information Leak
Unspecified memory initialization issue in kernel
Date Patched: November 5, 2020
Reported By: Google Project Zero
Analysis: View Analysis
Root Cause Analysis: View RCA
CVE-2020-27932 iOS Memory Corruption
Unspecified type confusion in kernel
Date Patched: November 5, 2020
Reported By: Google Project Zero
Analysis: View Analysis
Root Cause Analysis: View RCA
CVE-2020-27930 iOS Memory Corruption
Unspecified memory corruption in font parsing
Date Patched: November 5, 2020
Reported By: Google Project Zero
Analysis: View Analysis
Root Cause Analysis: View RCA
CVE-2019-7287 iOS Memory Corruption
Buffer overflow in ProvInfoIOKitUserClient
Date Patched: February 7, 2019
Reported By: Clement Lecigne of Google Threat Analysis Group, Ian Beer & Samuel Gro? of Google Project Zero, & an anonymous researcher
Analysis: View Analysis
Root Cause Analysis: View RCA
CVE-2019-7286 iOS Memory Corruption
Use-after-free in CFPrefsDaemon
Date Patched: February 7, 2019
Reported By: Clement Lecigne of Google Threat Analysis Group, Ian Beer & Samuel Gro? of Google Project Zero, & an anonymous researcher
Analysis: View Analysis
Root Cause Analysis: View RCA
CVE-2016-4657 WebKit Memory Corruption
Use-after-free in MarkedArgumentBuffer (Pegasus)
Date Patched: August 25, 2016
Reported By: Citizen Lab and Lookout
CVE-2016-4656 iOS Memory Corruption
Use-after-free in kernel OSUnserializeBinary (Pegasus)
Date Patched: August 25, 2016
Reported By: Citizen Lab and Lookout
Analysis: View Analysis
CVE-2016-4655 iOS Information Leak
Information leak in kernel OSUnserializeBinary (Pegasus)
Date Patched: August 25, 2016
Reported By: Citizen Lab and Lookout
Analysis: View Analysis