Vulnerability index

Browse CVEs

16 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness InjectionCWE-74 × clear
macOS MEDIUM 5.5
CVE-2025-43267

An injection issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.6. An app may be able to access sensitive user dat…

Fix: 15.6+
Fix from $1,600 2025-07-30
Swift Prometheus HIGH 7.4
CVE-2024-28867

Swift Prometheus is a Swift client for the Prometheus monitoring system, supporting counters, gauges and histograms. In code which applies _un-saniti…

Patch available
Fix from $1,950 2024-03-29
macOS HIGH 7.8
CVE-2024-23268

An injection issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.…

Fix: 12.7.4 / 13.6.5+
Fix from $1,950 2024-03-08
macOS HIGH 7.8
CVE-2024-23274

An injection issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.…

Fix: 12.7.4 / 13.6.5+
Fix from $1,950 2024-03-08
Safari MEDIUM 6.5
CVE-2024-23280

An injection issue was addressed with improved validation. This issue is fixed in Safari 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4…

Fix: 2.44.0 / 10.4+
Fix from $1,600 2024-03-08
macOS HIGH 7.5
CVE-2023-38609

An injection issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.5. An app may be able to bypass certain Priv…

Fix: 13.5+
Fix from $1,950 2023-07-28
Xcode HIGH 7.8
CVE-2022-42797

An injection issue was addressed with improved input validation. This issue is fixed in Xcode 14.1. An app may be able to gain root privileges.

Fix: 14.1+
Fix from $1,950 2023-02-27
Swift Foundation HIGH 8.8
CVE-2022-3918

A program using FoundationNetworking in swift-corelibs-foundation is potentially vulnerable to CRLF ( ) injection in URLRequest headers. In this vuln…

Fix: 5.7.3+
Fix from $1,950 2023-01-20
Swiftnio HIGH 7.5
CVE-2022-3215

NIOHTTP1 and projects using it for generating HTTP responses can be subject to a HTTP Response Injection attack. This occurs when a HTTP/1.1 server a…

Fix: 2.29.1 / 2.39.1+
Fix from $1,950 2022-09-28
Mac Os X HIGH 7.8
CVE-2021-30777

An injection issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.5, Security Update 2021-004 Catalina, Security Upd…

Fix: 11.5+
Fix from $1,950 2021-09-08
Mac Os X MEDIUM 6.1
CVE-2020-3884

An injection issue was addressed with improved validation. This issue is fixed in macOS Catalina 10.15.4. A remote attacker may be able to cause arbi…

Fix: 10.15.4+
Fix from $1,600 2020-04-01
Shazam HIGH 8.8
CVE-2019-8792

An injection issue was addressed with improved validation. This issue is fixed in Shazam Android App Version 9.25.0, Shazam iOS App Version 12.11.0. …

Mitigation only
Fix from $1,950 2019-12-18
Mac Os X MEDIUM 5.9
CVE-2018-4153

An injection issue was addressed with improved validation. This issue affected versions prior to macOS Mojave 10.14.

Fix: 10.14+
Fix from $1,600 2019-04-03
Apple Tv MEDIUM 5.5
CVE-2018-4235

An issue was discovered in certain Apple products. iOS before 11.4 is affected. macOS before 10.13.5 is affected. tvOS before 11.4 is affected. watch…

Fix: 4.3.1 / 10.13.5+
Fix from $1,600 2018-06-08
Mac Os X HIGH 8.8
CVE-2018-4106

An issue was discovered in certain Apple products. macOS before 10.13.4 is affected. The issue involves the Bracketed Paste Mode of the "Terminal" co…

Fix: 10.13.4+
Fix from $1,950 2018-04-03
Mac Os X MEDIUM 5.0
CVE-2015-5841

The CFNetwork Proxies component in Apple iOS before 9 does not properly handle a Set-Cookie header within a response to an HTTP CONNECT request, whic…

Fix: after 10.10.5
Fix from $1,600 2015-09-18