NA - CVE-2023-42867 - This issue was addressed with improved...
This issue was addressed with improved validation of the process entitlement and Team ID. This issue is fixed in GarageBand 10.4.9. An app may be able to gain root privileges.
NA - CVE-2024-44211 - This issue was addressed with improved...
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.1. An app may be able to access user-sensitive data.
NA - CVE-2024-44223 - This issue was addressed through improved state...
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.1. An attacker with physical access to a Mac may be able to view protected content from the Login...
NA - CVE-2024-44231 - This issue was addressed through improved state...
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.1. A person with physical access to a Mac may be able to bypass Login Window during a software...
NA - CVE-2024-44292 - A privacy issue was addressed with improved...
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15.1. An app may be able to access sensitive user data.
NA - CVE-2024-44293 - A privacy issue was addressed with improved...
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15.1. A user may be able to view sensitive user information.
NA - CVE-2024-44298 - A privacy issue was addressed with improved...
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15.1. An app may be able to access information about a user's contacts.
NA - CVE-2024-21549 - Versions of the package spatie/browsershot...
Versions of the package spatie/browsershot before 5.0.3 are vulnerable to Improper Input Validation due to improper URL validation through the setUrl method. An attacker can exploit this...
NA - CVE-2024-10555 - The WordPress Button Plugin MaxButtons...
The WordPress Button Plugin MaxButtons WordPress plugin before 9.8.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored...