cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-54538,https://securityvulnerability.io/vulnerability/CVE-2024-54538,Denial-of-Service Vulnerability in Apple Products Due to Input Validation Issues,"CVE-2024-54538 is a critical denial-of-service vulnerability affecting multiple Apple operating systems. The flaw stems from inadequate input validation, allowing a remote attacker to exploit this vulnerability and potentially disrupt services. Recent updates have addressed this issue, with fixes implemented in visionOS 2.1, iOS 18.1, iPadOS 18.1, iOS 17.7.1, iPadOS 17.7.1, tvOS 18.1, macOS Sonoma 14.7.1, watchOS 11.1, and macOS Ventura 13.7.1. Users are strongly advised to update their devices to mitigate any security risks.",Apple,"Mac OS,iPhone OS,iPad OS,Watch OS,Visionos,TV OS",7.5,HIGH,0.0009299999801442027,false,false,false,false,,false,false,2024-12-20T01:15:00.000Z,0 CVE-2024-54505,https://securityvulnerability.io/vulnerability/CVE-2024-54505,iPadOS 17.7.3 addresses type confusion issue to prevent memory corruption,"A type confusion vulnerability has been identified in several Apple operating systems and applications that could allow attackers to execute maliciously crafted web content. This vulnerability stems from improper memory handling practices that may lead to memory corruption, posing risks to users' data integrity and security. Apple has addressed this flaw in specific versions including iPadOS, watchOS, macOS, and Safari, with patches already implemented in the latest updates. Users are encouraged to update their devices to safeguard against potential exploitation of this vulnerability.",Apple,"TV OS,Visionos,Mac OS,Watch OS,iPad OS,iOS And iPad OS,Safari",8.8,HIGH,0.0010600000387057662,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,765 CVE-2024-54513,https://securityvulnerability.io/vulnerability/CVE-2024-54513,Permissions Issue in Apple Products Leading to Sensitive Data Exposure,"A significant permissions issue has been identified in Apple's software ecosystem, enabling potential unauthorized access to sensitive user information. The vulnerability affects various products, necessitating careful management of user data permissions. Users on affected operating systems, including watchOS, iOS, macOS, and more, should stay informed about updates that address these concerns. Apple has released updates in watchOS 11.2, visionOS 2.2, tvOS 18.2, macOS Sequoia 15.2, iOS 18.2, and iPadOS 18.2 to mitigate risks associated with this vulnerability.",Apple,"TV OS,Visionos,Mac OS,Watch OS,iOS And iPad OS",5.5,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-54500,https://securityvulnerability.io/vulnerability/CVE-2024-54500,,"The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.3, watchOS 11.2, visionOS 2.2, tvOS 18.2, macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. Processing a maliciously crafted image may result in disclosure of process memory.",Apple,"Watch OS,TV OS,Visionos,iPhone OS,Mac OS,iPad OS",5.5,MEDIUM,0.0004600000102072954,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-54527,https://securityvulnerability.io/vulnerability/CVE-2024-54527,Data Access Vulnerability in Apple Products,"A vulnerability present in various Apple operating systems allows unauthorized access to sensitive user data by applications. This issue has been addressed through enhanced verification checks in the latest updates, ensuring that sensitive information is better protected. Users are encouraged to update their devices to the latest versions to mitigate potential privacy risks that arise from this flaw.",Apple,"Watch OS,iPad OS,TV OS,iPhone OS,Mac OS",5.5,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,341 CVE-2024-44225,https://securityvulnerability.io/vulnerability/CVE-2024-44225,Logic Issue in Apple iPadOS and macOS Products Leading to Elevated Privileges,"A logic flaw has been identified in various Apple operating systems, including iPadOS, watchOS, tvOS, and macOS. This vulnerability enables unauthorized applications to potentially gain elevated privileges, allowing them to execute actions without the user's consent. Apple has released updates for compromised versions to address this loophole, enhancing the security of the affected systems. It is crucial for users to update their devices to the latest versions to mitigate the risk associated with this vulnerability.",Apple,"TV OS,Mac OS,Watch OS,iPad OS,iOS And iPad OS",7.8,HIGH,0.0005699999746866524,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-54526,https://securityvulnerability.io/vulnerability/CVE-2024-54526,Access Control Vulnerability in Apple Products,"A security issue has been identified in certain Apple products that could allow an unauthorized malicious app to access users' private information. This vulnerability has been mitigated in the latest updates, which enhance the existing checks to prevent unauthorized access. Users are encouraged to update their devices to the latest versions to ensure adequate protection against potential exploitation.",Apple,"Watch OS,iPad OS,TV OS,iPhone OS,Mac OS",5.5,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-54479,https://securityvulnerability.io/vulnerability/CVE-2024-54479,Web Content Processing Vulnerability in Apple Products,"A vulnerability has been identified in several Apple operating systems and the Safari browser, where the processing of maliciously crafted web content could result in unexpected process crashes. Apple has deployed improved checks to mitigate this issue in the latest updates for iPadOS, watchOS, visionOS, tvOS, macOS, and Safari. Users are encouraged to update their devices to the newest versions to ensure protection against potential exploitation.",Apple,"Watch OS,Mac OS,TV OS,Safari,Visionos,iPhone OS,iPad OS",7.5,HIGH,0.0009299999801442027,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-54486,https://securityvulnerability.io/vulnerability/CVE-2024-54486,"Apple Fixes Memory Disclosure Vulnerability in iPadOS, watchOS, tvOS, and macOS Releases","A vulnerability exists within various Apple operating systems that could lead to the disclosure of memory content. This issue arises when processing specially crafted font files, potentially allowing unauthorized access to sensitive process memory. The flaw has been addressed in several updates, including iPadOS 17.7.3, iOS 18.2, and various releases of macOS, watchOS, and visionOS. Users are encouraged to update their devices to mitigate potential risks associated with this issue. For further information, please consult Apple's official support documents.",Apple,"Watch OS,TV OS,Visionos,iPhone OS,Mac OS,iPad OS",6.5,MEDIUM,0.0011599999852478504,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-54510,https://securityvulnerability.io/vulnerability/CVE-2024-54510,,"A race condition was addressed with improved locking. This issue is fixed in iPadOS 17.7.3, watchOS 11.2, tvOS 18.2, macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. An app may be able to leak sensitive kernel state.",Apple,"Watch OS,TV OS,iPhone OS,Mac OS,iPad OS",5.1,MEDIUM,0.000590000010561198,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-54494,https://securityvulnerability.io/vulnerability/CVE-2024-54494,Race Condition Vulnerability in Apple Products,"This vulnerability arises from a race condition affecting several Apple operating systems, allowing attackers to potentially create a read-only memory mapping that can be written to, undermining data integrity and system reliability. Additional validation measures were implemented in the latest updates to mitigate this issue. Users are encouraged to update their devices to the latest software versions to ensure protection against potential exploitation.",Apple,"Watch OS,TV OS,Visionos,iPhone OS,Mac OS,iPad OS",5.9,MEDIUM,0.0008900000248104334,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-54501,https://securityvulnerability.io/vulnerability/CVE-2024-54501,,"The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.3, watchOS 11.2, visionOS 2.2, tvOS 18.2, macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. Processing a maliciously crafted file may lead to a denial of service.",Apple,"TV OS,Visionos,Mac OS,Watch OS,iPad OS,iOS And iPad OS",5.5,MEDIUM,0.0004900000058114529,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-54514,https://securityvulnerability.io/vulnerability/CVE-2024-54514,Sandbox Escape Vulnerability in Apple Products,"A vulnerability has been identified in Apple software that could allow an application to break out of its designated sandbox environment. This security flaw was addressed through enhancements in checks within the affected software versions. Users are encouraged to update their devices promptly to the latest versions of watchOS, tvOS, macOS, iOS, and iPadOS to mitigate any potential security risks associated with this vulnerability. Apple has implemented fixes in versions including watchOS 11.2, tvOS 18.2, macOS Sequoia 15.2, iOS 18.2, iPadOS 18.2, macOS Ventura 13.7.2, and macOS Sonoma 14.7.2.",Apple,"TV OS,Mac OS,Watch OS,iOS And iPad OS",8.6,HIGH,0.0005300000193528831,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-54534,https://securityvulnerability.io/vulnerability/CVE-2024-54534,Safari 18.2 Fixes Memory Handling Issue to Prevent Malicious Content Abuse,"A memory corruption vulnerability has been identified affecting various Apple operating systems. This issue is caused by mishandling of memory when processing specially crafted web content, which can lead to unintended behavior or crashes. The vulnerability has been mitigated in the latest updates for watchOS, visionOS, tvOS, macOS, Safari, iOS, and iPadOS. Users are strongly advised to apply the corresponding updates to ensure protection against potential exploits that may arise from this issue.",Apple,"TV OS,Visionos,Mac OS,Watch OS,iOS And iPad OS,Safari",9.8,CRITICAL,0.001069999998435378,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-54502,https://securityvulnerability.io/vulnerability/CVE-2024-54502,Safari Update Fixes Process Crash Issues with Maliciously Crafted Web Content,"A vulnerability exists within various Apple operating systems that can be triggered by processing malformed web content. This issue can lead to an unexpected process crash, potentially disrupting user experience and application functionality. The vulnerability has been mitigated with enhanced checks in the latest software updates, which secure affected systems against exploitation from specially crafted web content.",Apple,"TV OS,Visionos,Mac OS,Watch OS,iOS And iPad OS,Safari",6.5,MEDIUM,0.0006200000061653554,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,161 CVE-2024-54508,https://securityvulnerability.io/vulnerability/CVE-2024-54508,Memory Handling Vulnerability in Apple Products,"This vulnerability affects multiple Apple platforms due to inadequate memory management which may allow an attacker to exploit the system by processing specially crafted web content. Such exploitation could lead to unexpected crashes in critical processes, impacting device functionality and user experience. The issue has been rectified in the latest updates of affected products, including iOS, macOS, and Safari, prompting users to upgrade to ensure their devices are secure against potential threats.",Apple,"Watch OS,iPad OS,Mac OS,TV OS,Safari,Visionos,iPhone OS",7.5,HIGH,0.0007399999885819852,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-44212,https://securityvulnerability.io/vulnerability/CVE-2024-44212,,"A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18.1, visionOS 2.1, tvOS 18.1, iOS 18.1 and iPadOS 18.1, watchOS 11.1. Cookies belonging to one origin may be sent to another origin.",Apple,"iPad OS,iPhone OS,Watch OS,Visionos,TV OS,Safari",5.3,MEDIUM,0.0005200000014156103,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-44290,https://securityvulnerability.io/vulnerability/CVE-2024-44290,Information Disclosure Vulnerability in Apple iOS and iPadOS,"An information disclosure vulnerability was identified in Apple's operating systems, allowing certain applications to ascertain the user's current location. This issue arises due to inadequate redaction of sensitive information. The vulnerability has been rectified in iOS 18.1, iPadOS 18.1, and watchOS 11.1, enhancing the protection of user privacy and safeguarding personal data from unauthorized access.",Apple,"iPad OS,iPhone OS,Watch OS",3.3,LOW,0.0004400000034365803,false,false,false,false,,false,false,2024-12-12T02:15:00.000Z,0 CVE-2024-44233,https://securityvulnerability.io/vulnerability/CVE-2024-44233,Apple Fixes Parsing Bug in macOS That Could Lead to Unexpected System Termination,"The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14.7.1, macOS Ventura 13.7.1, visionOS 2.1, watchOS 11.1, tvOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1. Parsing a maliciously crafted video file may lead to unexpected system termination.",Apple,"Mac OS,Visionos,iOS And iPad OS,TV OS,Watch OS",5.5,MEDIUM,0.0004900000058114529,false,false,false,false,,false,false,2024-11-01T20:41:58.745Z,0 CVE-2024-44232,https://securityvulnerability.io/vulnerability/CVE-2024-44232,"Apple Fixes Video File Parsing Vulnerability in macOS, watchOS, tvOS, and iOS","The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14.7.1, macOS Ventura 13.7.1, visionOS 2.1, watchOS 11.1, tvOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1. Parsing a maliciously crafted video file may lead to unexpected system termination.",Apple,"Mac OS,Visionos,iOS And iPad OS,TV OS,Watch OS",5.5,MEDIUM,0.0004900000058114529,false,false,false,false,,false,false,2024-11-01T20:41:57.990Z,0 CVE-2024-44234,https://securityvulnerability.io/vulnerability/CVE-2024-44234,Improved Bounds Checks to Mitigate Parsing Vulnerability,"The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14.7.1, macOS Ventura 13.7.1, visionOS 2.1, watchOS 11.1, tvOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1. Parsing a maliciously crafted video file may lead to unexpected system termination.",Apple,"Mac OS,Visionos,iOS And iPad OS,TV OS,Watch OS",5.5,MEDIUM,0.0004900000058114529,false,false,false,false,,false,false,2024-11-01T20:41:55.504Z,0 CVE-2024-44240,https://securityvulnerability.io/vulnerability/CVE-2024-44240,"Apple Fixes Font Memory Disclosure Vulnerability in iOS, macOS, watchOS, and tvOS","The issue was addressed with improved checks. This issue is fixed in tvOS 18.1, iOS 18.1 and iPadOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, macOS Ventura 13.7.1, macOS Sonoma 14.7.1, watchOS 11.1, visionOS 2.1. Processing a maliciously crafted font may result in the disclosure of process memory.",Apple,"Mac OS,iPhone OS,iPad OS,Watch OS,Visionos,TV OS",5.5,MEDIUM,0.000590000010561198,false,false,false,false,,false,false,2024-10-28T22:15:00.000Z,0 CVE-2024-44278,https://securityvulnerability.io/vulnerability/CVE-2024-44278,,"An information disclosure issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 18.1 and iPadOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, macOS Ventura 13.7.1, macOS Sonoma 14.7.1, watchOS 11.1, visionOS 2.1. A sandboxed app may be able to access sensitive user data in system logs.",Apple,"Mac OS,Visionos,iOS And iPad OS,Watch OS",5.5,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2024-10-28T21:15:00.000Z,0 CVE-2024-44239,https://securityvulnerability.io/vulnerability/CVE-2024-44239,,"An information disclosure issue was addressed with improved private data redaction for log entries. This issue is fixed in tvOS 18.1, iOS 18.1 and iPadOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, macOS Ventura 13.7.1, macOS Sonoma 14.7.1, watchOS 11.1, visionOS 2.1. An app may be able to leak sensitive kernel state.",Apple,"Mac OS,Visionos,iOS And iPad OS,TV OS,Watch OS",5.5,MEDIUM,0.00044999999227002263,false,false,false,false,,false,false,2024-10-28T21:15:00.000Z,0 CVE-2024-44244,https://securityvulnerability.io/vulnerability/CVE-2024-44244,,"A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 18.1 and iPadOS 18.1, watchOS 11.1, visionOS 2.1, tvOS 18.1, macOS Sequoia 15.1, Safari 18.1. Processing maliciously crafted web content may lead to an unexpected process crash.",Apple,"Visionos,TV OS,Watch OS,iOS And iPad OS,Mac OS,Safari",4.3,MEDIUM,0.0006300000241026282,false,false,false,false,,false,false,2024-10-28T21:15:00.000Z,0