<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>0dayNews — Apple</title><description>Vulnerabilities and malware affecting Apple&apos;s platforms — macOS, iOS, iPadOS, and Safari — including PAM-abusing stealers, cross-platform RATs, and the Mac-native malware families that have moved from novelty to fixture in enterprise threat models. Combined article + CVE feed for the Apple beat.</description><link>https://0daynews.com/</link><language>en-us</language><item><title>CVE-2014-4404 — Apple OS X Heap-Based Buffer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2014-4404/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2014-4404/</guid><description>Heap-based buffer overflow in IOHIDFamily in Apple OS X, which affects, iOS before 8 and Apple TV before 7, allows attackers to execute arbitrary code in a privileged context.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2015-1130 — Apple OS X Authentication Bypass Vulnerability</title><link>https://0daynews.com/cve/cve-2015-1130/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2015-1130/</guid><description>The XPC implementation in Admin Framework in Apple OS X before 10.10.3 allows local users to bypass authentication and obtain admin privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2016-4655 — Apple iOS Information Disclosure Vulnerability</title><link>https://0daynews.com/cve/cve-2016-4655/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2016-4655/</guid><description>The Apple iOS kernel allows attackers to obtain sensitive information from memory via a crafted application.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2016-4656 — Apple iOS Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2016-4656/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2016-4656/</guid><description>A memory corruption vulnerability in Apple iOS kernel allows attackers to execute code in a privileged context or cause a denial-of-service (DoS) via a crafted application.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2016-4657 — Apple iOS Webkit Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2016-4657/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2016-4657/</guid><description>Apple iOS WebKit contains a memory corruption vulnerability that allows attackers to execute remote code or cause a denial-of-service (DoS) via a crafted web site. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2018-4344 — Apple Multiple Products Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2018-4344/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2018-4344/</guid><description>Apple iOS, macOS, tvOS, and watchOS contain a memory corruption vulnerability which can allow for code execution.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2019-6223 — Apple iOS and macOS Group Facetime Vulnerability</title><link>https://0daynews.com/cve/cve-2019-6223/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2019-6223/</guid><description>Apple iOS and macOS Group FaceTime contains an unspecified vulnerability where the call initiator can cause the recipient&apos;s Apple device to answer unknowingly or without user interaction.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2019-7286 — Apple Multiple Products Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2019-7286/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2019-7286/</guid><description>Apple iOS, macOS, watchOS, and tvOS contain a memory corruption vulnerability that could allow for privilege escalation.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2019-7287 — Apple iOS Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2019-7287/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2019-7287/</guid><description>Apple iOS contains a memory corruption vulnerability which could allow an attacker to perform remote code execution.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2019-8506 — Apple Multiple Products Type Confusion Vulnerability</title><link>https://0daynews.com/cve/cve-2019-8506/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2019-8506/</guid><description>A type confusion issue affecting multiple Apple products allows processing of maliciously crafted web content, leading to arbitrary code execution.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2019-8526 — Apple macOS Use-After-Free Vulnerability</title><link>https://0daynews.com/cve/cve-2019-8526/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2019-8526/</guid><description>Apple macOS contains a use-after-free vulnerability that could allow for privilege escalation.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2019-8605 — Apple Multiple Products Use-After-Free Vulnerability</title><link>https://0daynews.com/cve/cve-2019-8605/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2019-8605/</guid><description>A use-after-free vulnerability in Apple iOS, macOS, tvOS, and watchOS could allow a malicious application to execute code with system privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2020-27930 — Apple Multiple Products Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2020-27930/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2020-27930/</guid><description>Apple iOS, iPadOS, macOS, and watchOS FontParser contain a memory corruption vulnerability which may allow for code execution when processing maliciously crafted front.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2020-27932 — Apple Multiple Products Type Confusion Vulnerability</title><link>https://0daynews.com/cve/cve-2020-27932/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2020-27932/</guid><description>Apple iOS, iPadOS, macOS, and watchOS contain a type confusion vulnerability that may allow a malicious application to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2020-27950 — Apple Multiple Products Memory Initialization Vulnerability</title><link>https://0daynews.com/cve/cve-2020-27950/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2020-27950/</guid><description>Apple iOS, iPadOS, macOS, and watchOS contain a memory initialization vulnerability that may allow a malicious application to disclose kernel memory.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2020-3837 — Apple Multiple Products Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2020-3837/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2020-3837/</guid><description>Apple iOS, iPadOS, macOS, tvOS, and watchOS contain a memory corruption vulnerability that could allow an application to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2020-9818 — Apple iOS, iPadOS, and watchOS Out-of-Bounds Write Vulnerability</title><link>https://0daynews.com/cve/cve-2020-9818/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2020-9818/</guid><description>Apple iOS, iPadOS, and watchOS Mail contains an out-of-bounds write vulnerability which may allow memory modification or application termination when processing a maliciously crafted mail message.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2020-9819 — Apple iOS, iPadOS, and watchOS Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2020-9819/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2020-9819/</guid><description>Apple iOS, iPadOS, and watchOS Mail contains a memory corruption vulnerability that may allow heap corruption when processing a maliciously crafted mail message.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2020-9859 — Apple Multiple Products Code Execution Vulnerability</title><link>https://0daynews.com/cve/cve-2020-9859/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2020-9859/</guid><description>Apple iOS, iPadOS, macOS, watchOS, and tvOS contain an unspecified vulnerability that may allow an application to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2020-9907 — Apple Multiple Products Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2020-9907/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2020-9907/</guid><description>Apple iOS, iPadOS, and tvOS contain a memory corruption vulnerability that could allow an application to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2020-9934 — Apple iOS, iPadOS, and macOS Input Validation Vulnerability</title><link>https://0daynews.com/cve/cve-2020-9934/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2020-9934/</guid><description>Apple iOS, iPadOS, and macOS contain an unspecified vulnerability involving input validation which can allow a local attacker to view sensitive user information.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2021-1782 — Apple Multiple Products Race Condition Vulnerability</title><link>https://0daynews.com/cve/cve-2021-1782/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-1782/</guid><description>Apple iOS, iPadOs, macOS, watchOS, and tvOS contain a race condition vulnerability that may allow a malicious application to elevate privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-1789 — Apple Multiple Products Type Confusion Vulnerability</title><link>https://0daynews.com/cve/cve-2021-1789/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-1789/</guid><description>A type confusion issue affecting multiple Apple products allows processing of maliciously crafted web content, leading to arbitrary code execution.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-1870 — Apple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerability</title><link>https://0daynews.com/cve/cve-2021-1870/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-1870/</guid><description>Apple iOS, iPadOS, and macOS WebKit contain an unspecified logic vulnerability that allows a remote attacker to execute code. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>critical</category><category>cve</category></item><item><title>CVE-2021-1871 — Apple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerability</title><link>https://0daynews.com/cve/cve-2021-1871/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-1871/</guid><description>Apple iOS, iPadOS, and macOS WebKit contain an unspecified logic vulnerability that allows a remote attacker to execute code. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>critical</category><category>cve</category></item><item><title>CVE-2021-1879 — Apple iOS, iPadOS, and watchOS WebKit Cross-Site Scripting (XSS) Vulnerability</title><link>https://0daynews.com/cve/cve-2021-1879/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-1879/</guid><description>Apple iOS, iPadOS, and watchOS WebKit contain an unspecified vulnerability that allows for universal cross-site scripting (XSS) when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2021-30657 — Apple macOS Unspecified Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30657/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30657/</guid><description>Apple macOS contains an unspecified logic issue in System Preferences that may allow a malicious application to bypass Gatekeeper checks.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2021-30661 — Apple Multiple Products WebKit Storage Use-After-Free Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30661/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30661/</guid><description>Apple iOS, iPadOS, macOS, tvOS, watchOS, and Safari WebKit Storage contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30663 — Apple Multiple Products WebKit Integer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30663/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30663/</guid><description>Apple iOS, iPadOS, macOS, tvOS, and Safari WebKit contain an integer overflow vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30665 — Apple Multiple Products WebKit Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30665/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30665/</guid><description>Apple iOS, iPadOS, macOS, watchOS, and tvOS WebKit contain a memory corruption vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30666 — Apple iOS WebKit Buffer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30666/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30666/</guid><description>Apple iOS WebKit contains a buffer-overflow vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30713 — Apple macOS Unspecified Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30713/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30713/</guid><description>Apple macOS Transparency, Consent, and Control (TCC) contains an unspecified permissions issue which may allow a malicious application to bypass privacy preferences.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30761 — Apple iOS WebKit Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30761/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30761/</guid><description>Apple iOS WebKit contains a memory corruption vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30762 — Apple iOS WebKit Use-After-Free Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30762/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30762/</guid><description>Apple iOS WebKit contains a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30807 — Apple Multiple Products Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30807/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30807/</guid><description>Apple iOS, iPadOS, macOS, and watchOS IOMobileFrameBuffer contain a memory corruption vulnerability which may allow an application to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30858 — Apple iOS, iPadOS, macOS Use-After-Free Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30858/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30858/</guid><description>Apple iOS, iPadOS, and macOS WebKit contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30860 — Apple Multiple Products Integer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30860/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30860/</guid><description>Apple iOS, iPadOS, macOS, and watchOS CoreGraphics contain an integer overflow vulnerability which may allow code execution when processing a maliciously crafted PDF. The vulnerability is also known under the moniker of FORCEDENTRY.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30869 — Apple iOS, iPadOS, and macOS Type Confusion Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30869/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30869/</guid><description>Apple iOS, iPadOS, and macOS contain a type confusion vulnerability in the XNU which may allow a malicious application to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30883 — Apple Multiple Products Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30883/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30883/</guid><description>Apple iOS, macOS, watchOS, and tvOS contain a memory corruption vulnerability that could allow for remote code execution.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30900 — Apple iOS, iPadOS, and macOS Out-of-Bounds Write Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30900/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30900/</guid><description>Apple GPU drivers, included in iOS, iPadOS, and macOS, contain an out-of-bounds write vulnerability that may allow a malicious application to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30952 — Apple Multiple Products Integer Overflow or Wraparound Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30952/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30952/</guid><description>Apple tvOS, macOS, Safari, iPadOS and watchOS contain an integer overflow or wraparound vulnerability due to the processing of maliciously crafted web content that may lead to arbitrary code execution.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-30983 — Apple iOS and iPadOS Buffer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2021-30983/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-30983/</guid><description>Apple iOS and iPadOS contain a buffer overflow vulnerability that could allow an application to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2021-31010 — Apple iOS, macOS, watchOS Sandbox Bypass Vulnerability</title><link>https://0daynews.com/cve/cve-2021-31010/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2021-31010/</guid><description>In affected versions of Apple iOS, macOS, and watchOS, a sandboxed process may be able to circumvent sandbox restrictions.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2022-22587 — Apple Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2022-22587/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-22587/</guid><description>Apple IOMobileFrameBuffer contains a memory corruption vulnerability which can allow a malicious application to execute arbitrary code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>critical</category><category>cve</category></item><item><title>CVE-2022-22620 — Apple iOS, iPadOS, and macOS Webkit Use-After-Free Vulnerability</title><link>https://0daynews.com/cve/cve-2022-22620/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-22620/</guid><description>Apple iOS, iPadOS, and macOS WebKit contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2022-22674 — Apple macOS Out-of-Bounds Read Vulnerability</title><link>https://0daynews.com/cve/cve-2022-22674/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-22674/</guid><description>macOS Monterey contains an out-of-bounds read vulnerability that could allow an application to read kernel memory.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2022-22675 — Apple macOS Out-of-Bounds Write Vulnerability</title><link>https://0daynews.com/cve/cve-2022-22675/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-22675/</guid><description>macOS Monterey contains an out-of-bounds write vulnerability that could allow an application to execute arbitrary code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2022-32893 — Apple iOS and macOS Out-of-Bounds Write Vulnerability</title><link>https://0daynews.com/cve/cve-2022-32893/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-32893/</guid><description>Apple iOS and macOS contain an out-of-bounds write vulnerability that could allow for remote code execution when processing malicious crafted web content.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2022-32894 — Apple iOS and macOS Out-of-Bounds Write Vulnerability</title><link>https://0daynews.com/cve/cve-2022-32894/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-32894/</guid><description>Apple iOS and macOS contain an out-of-bounds write vulnerability that could allow an application to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2022-32917 — Apple iOS, iPadOS, and macOS Remote Code Execution Vulnerability</title><link>https://0daynews.com/cve/cve-2022-32917/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-32917/</guid><description>Apple kernel, which is included in iOS, iPadOS, and macOS, contains an unspecified vulnerability where an application may be able to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2022-42827 — Apple iOS and iPadOS Out-of-Bounds Write Vulnerability</title><link>https://0daynews.com/cve/cve-2022-42827/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-42827/</guid><description>Apple iOS and iPadOS kernel contain an out-of-bounds write vulnerability which can allow an application to perform code execution with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2022-42856 — Apple iOS Type Confusion Vulnerability</title><link>https://0daynews.com/cve/cve-2022-42856/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-42856/</guid><description>Apple iOS contains a type confusion vulnerability when processing maliciously crafted web content leading to code execution.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2022-48503 — Apple Multiple Products Unspecified Vulnerability</title><link>https://0daynews.com/cve/cve-2022-48503/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-48503/</guid><description>Apple macOS, iOS, tvOS, Safari, and watchOS contain an unspecified vulnerability in JavaScriptCore that when processing web content may lead to arbitrary code execution. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2022-48618 — Apple Multiple Products Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2022-48618/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2022-48618/</guid><description>Apple iOS, iPadOS, macOS, tvOS, and watchOS contain a time-of-check/time-of-use (TOCTOU) memory corruption vulnerability that allows an attacker with read and write capabilities to bypass Pointer Authentication.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-23529 — Apple Multiple Products WebKit Type Confusion Vulnerability</title><link>https://0daynews.com/cve/cve-2023-23529/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-23529/</guid><description>Apple iOS, MacOS, Safari and iPadOS WebKit contain a type confusion vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-28204 — Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability</title><link>https://0daynews.com/cve/cve-2023-28204/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-28204/</guid><description>Apple iOS, iPadOS, macOS, tvOS, watchOS, and Safari WebKit contain an out-of-bounds read vulnerability that may disclose sensitive information when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2023-28205 — Apple Multiple Products WebKit Use-After-Free Vulnerability</title><link>https://0daynews.com/cve/cve-2023-28205/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-28205/</guid><description>Apple iOS, iPadOS, macOS, and Safari WebKit contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-28206 — Apple iOS, iPadOS, and macOS IOSurfaceAccelerator Out-of-Bounds Write Vulnerability</title><link>https://0daynews.com/cve/cve-2023-28206/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-28206/</guid><description>Apple iOS, iPadOS, and macOS IOSurfaceAccelerator contain an out-of-bounds write vulnerability that allows an app to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-32373 — Apple Multiple Products WebKit Use-After-Free Vulnerability</title><link>https://0daynews.com/cve/cve-2023-32373/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-32373/</guid><description>Apple iOS, iPadOS, macOS, tvOS, watchOS, and Safari WebKit contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-32409 — Apple Multiple Products WebKit Sandbox Escape Vulnerability</title><link>https://0daynews.com/cve/cve-2023-32409/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-32409/</guid><description>Apple iOS, iPadOS, macOS, tvOS, watchOS, and Safari WebKit contain an unspecified vulnerability that can allow a remote attacker to break out of the Web Content sandbox. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-32434 — Apple Multiple Products Integer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2023-32434/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-32434/</guid><description>Apple iOS. iPadOS, macOS, and watchOS contain an integer overflow vulnerability that could allow an application to execute code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-32435 — Apple Multiple Products WebKit Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2023-32435/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-32435/</guid><description>Apple iOS, iPadOS, macOS, and Safari WebKit contain a memory corruption vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-32439 — Apple Multiple Products WebKit Type Confusion Vulnerability</title><link>https://0daynews.com/cve/cve-2023-32439/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-32439/</guid><description>Apple iOS, iPadOS, macOS, and Safari WebKit contain a type confusion vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-37450 — Apple Multiple Products WebKit Code Execution Vulnerability</title><link>https://0daynews.com/cve/cve-2023-37450/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-37450/</guid><description>Apple iOS, iPadOS, macOS, and Safari WebKit contain an unspecified vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-38606 — Apple Multiple Products Kernel Unspecified Vulnerability</title><link>https://0daynews.com/cve/cve-2023-38606/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-38606/</guid><description>Apple iOS, iPadOS, macOS, tvOS, and watchOS contain an unspecified vulnerability allowing an app to modify a sensitive kernel state.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2023-41061 — Apple iOS, iPadOS, and watchOS Wallet Code Execution Vulnerability</title><link>https://0daynews.com/cve/cve-2023-41061/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-41061/</guid><description>Apple iOS, iPadOS, and watchOS contain an unspecified vulnerability due to a validation issue affecting Wallet in which a maliciously crafted attachment may result in code execution. This vulnerability was chained with CVE-2023-41064.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-41064 — Apple iOS, iPadOS, and macOS ImageIO Buffer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2023-41064/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-41064/</guid><description>Apple iOS, iPadOS, and macOS contain a buffer overflow vulnerability in ImageIO when processing a maliciously crafted image, which may lead to code execution. This vulnerability was chained with CVE-2023-41061.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-41974 — Apple iOS and iPadOS Use-After-Free Vulnerability</title><link>https://0daynews.com/cve/cve-2023-41974/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-41974/</guid><description>Apple iOS and iPadOS contain a use-after-free vulnerability. An app may be able to execute arbitrary code with kernel privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-41990 — Apple Multiple Products Code Execution Vulnerability</title><link>https://0daynews.com/cve/cve-2023-41990/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-41990/</guid><description>Apple iOS, iPadOS, macOS, tvOS, and watchOS contain an unspecified vulnerability that allows for code execution when processing a font file.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-41991 — Apple Multiple Products Improper Certificate Validation Vulnerability</title><link>https://0daynews.com/cve/cve-2023-41991/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-41991/</guid><description>Apple iOS, iPadOS, macOS, and watchOS contain an improper certificate validation vulnerability that can allow a malicious app to bypass signature validation.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2023-41992 — Apple Multiple Products Kernel Privilege Escalation Vulnerability</title><link>https://0daynews.com/cve/cve-2023-41992/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-41992/</guid><description>Apple iOS, iPadOS, macOS, and watchOS contain an unspecified vulnerability that allows for local privilege escalation.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-41993 — Apple Multiple Products WebKit Code Execution Vulnerability</title><link>https://0daynews.com/cve/cve-2023-41993/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-41993/</guid><description>Apple iOS, iPadOS, macOS, and Safari WebKit contain an unspecified vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-42824 — Apple iOS and iPadOS Kernel Privilege Escalation Vulnerability</title><link>https://0daynews.com/cve/cve-2023-42824/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-42824/</guid><description>Apple iOS and iPadOS contain an unspecified vulnerability that allows for local privilege escalation.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-42916 — Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability</title><link>https://0daynews.com/cve/cve-2023-42916/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-42916/</guid><description>Apple iOS, iPadOS, macOS, and Safari WebKit contain an out-of-bounds read vulnerability that may disclose sensitive information when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2023-42917 — Apple Multiple Products WebKit Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2023-42917/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-42917/</guid><description>Apple iOS, iPadOS, macOS, and Safari WebKit contain a memory corruption vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2023-43000 — Apple Multiple products Use-After-Free Vulnerability</title><link>https://0daynews.com/cve/cve-2023-43000/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2023-43000/</guid><description>Apple macOS, iOS, iPadOS, and Safari 16.6 contain a use-after-free vulnerability due to the processing of maliciously crafted web content that may lead to memory corruption.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2024-23222 — Apple Multiple Products WebKit Type Confusion Vulnerability</title><link>https://0daynews.com/cve/cve-2024-23222/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2024-23222/</guid><description>Apple iOS, iPadOS, macOS, tvOS, and Safari WebKit contain a type confusion vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2024-23225 — Apple Multiple Products Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2024-23225/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2024-23225/</guid><description>Apple iOS, iPadOS, macOS, tvOS, watchOS, and visionOS kernel contain a memory corruption vulnerability that allows an attacker with arbitrary kernel read and write capability to bypass kernel memory protections.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2024-23296 — Apple Multiple Products Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2024-23296/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2024-23296/</guid><description>Apple iOS, iPadOS, macOS, tvOS, and watchOS RTKit contain a memory corruption vulnerability that allows an attacker with arbitrary kernel read and write capability to bypass kernel memory protections.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2024-27822 — macOS PackageKit LPE via ~/.zshenv sourced under installer root context</title><link>https://0daynews.com/cve/cve-2024-27822/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2024-27822/</guid><description>macOS PackageKit runs PKG-installer shebang scripts under root, and zsh shebangs source ~/.zshenv from the calling user&apos;s home before the script body runs, yielding local privilege escalation. Fixed in macOS Sonoma 14.5 (May 2024).</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2024-44308 — Apple Multiple Products Code Execution Vulnerability</title><link>https://0daynews.com/cve/cve-2024-44308/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2024-44308/</guid><description>Apple iOS, macOS, and other Apple products contain an unspecified vulnerability when processing maliciously crafted web content that may lead to arbitrary code execution.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2024-44309 — Apple Multiple Products Cross-Site Scripting (XSS) Vulnerability</title><link>https://0daynews.com/cve/cve-2024-44309/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2024-44309/</guid><description>Apple iOS, macOS, and other Apple products contain an unspecified vulnerability when processing maliciously crafted web content that may lead to a cross-site scripting (XSS) attack.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2025-24085 — Apple Multiple Products Use-After-Free Vulnerability</title><link>https://0daynews.com/cve/cve-2025-24085/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-24085/</guid><description>Apple iOS, macOS, and other Apple products contain a user-after-free vulnerability that could allow a malicious application to elevate privileges.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>critical</category><category>cve</category></item><item><title>CVE-2025-24200 — Apple iOS and iPadOS Incorrect Authorization Vulnerability</title><link>https://0daynews.com/cve/cve-2025-24200/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-24200/</guid><description>Apple iOS and iPadOS contains an incorrect authorization vulnerability that allows a physical attacker to disable USB Restricted Mode on a locked device.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2025-24201 — Apple Multiple Products WebKit Out-of-Bounds Write Vulnerability</title><link>https://0daynews.com/cve/cve-2025-24201/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-24201/</guid><description>Apple iOS, iPadOS, macOS, and other Apple products contain an out-of-bounds write vulnerability in WebKit that may allow maliciously crafted web content to break out of Web Content sandbox. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>critical</category><category>cve</category></item><item><title>CVE-2025-31200 — Apple Multiple Products Memory Corruption Vulnerability</title><link>https://0daynews.com/cve/cve-2025-31200/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-31200/</guid><description>Apple iOS, iPadOS, macOS, and other Apple products contain a memory corruption vulnerability that allows for code execution when processing an audio stream in a maliciously crafted media file.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>critical</category><category>cve</category></item><item><title>CVE-2025-31201 — Apple Multiple Products Arbitrary Read and Write Vulnerability</title><link>https://0daynews.com/cve/cve-2025-31201/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-31201/</guid><description>Apple iOS, iPadOS, macOS, and other Apple products contain an arbitrary read and write vulnerability that allows an attacker to bypass Pointer Authentication.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>critical</category><category>cve</category></item><item><title>CVE-2025-31277 — Apple Multiple Products Buffer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2025-31277/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-31277/</guid><description>Apple Safari, iOS, watchOS, visionOS, iPadOS, macOS, and tvOS contain a buffer overflow vulnerability that could allow the processing of maliciously crafted web content which may lead to memory corruption.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2025-43200 — Apple Multiple Products Unspecified Vulnerability</title><link>https://0daynews.com/cve/cve-2025-43200/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-43200/</guid><description>Apple iOS, iPadOS, macOS, watchOS, and visionOS, contain an unspecified vulnerability when processing a maliciously crafted photo or video shared via an iCloud Link.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2025-43300 — Apple iOS, iPadOS, and macOS Out-of-Bounds Write Vulnerability</title><link>https://0daynews.com/cve/cve-2025-43300/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-43300/</guid><description>Apple iOS, iPadOS, and macOS contain an out-of-bounds write vulnerability in the Image I/O framework.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>critical</category><category>cve</category></item><item><title>CVE-2025-43510 — Apple Multiple Products Improper Locking Vulnerability</title><link>https://0daynews.com/cve/cve-2025-43510/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-43510/</guid><description>Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain an improper locking vulnerability that could allow a malicious application to cause unexpected changes in memory shared between processes.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2025-43520 — Apple Multiple Products Classic Buffer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2025-43520/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-43520/</guid><description>Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain a classic buffer overflow vulnerability which could allow a malicious application to cause unexpected system termination or write kernel memory.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>medium</category><category>cve</category></item><item><title>CVE-2025-43529 — Apple Multiple Products Use-After-Free WebKit Vulnerability</title><link>https://0daynews.com/cve/cve-2025-43529/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2025-43529/</guid><description>Apple iOS, iPadOS, macOS, and other Apple products contain a use-after-free vulnerability in WebKit. Processing maliciously crafted web content may lead to memory corruption. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2026-20700 — Apple Multiple Buffer Overflow Vulnerability</title><link>https://0daynews.com/cve/cve-2026-20700/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-20700/</guid><description>Apple iOS, macOS, tvOS, watchOS, and visionOS contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow an attacker with memory write the capability to execute arbitrary code.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>high</category><category>cve</category></item><item><title>CVE-2026-65400 — Apple macOS Improper Authentication Vulnerability</title><link>https://0daynews.com/cve/cve-2026-65400/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-65400/</guid><description>Apple macOS contains an improper authentication vulnerability that could allow an attacker on the network to authenticate to Screen Sharing without valid credentials.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>Apple</category><category>critical</category><category>cve</category></item><item><title>Apple Patches 27 Flaws in iOS, iPadOS, and macOS Tahoe</title><link>https://0daynews.com/articles/2026-08-19-apple-ios-ipados-macos-tahoe-27-vulns-patch/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-19-apple-ios-ipados-macos-tahoe-27-vulns-patch/</guid><description>Apple released updates fixing 27 vulnerabilities across iOS, iPadOS, and macOS Tahoe. One image-processing flaw carries code execution risk — patch this week, not next.</description><pubDate>Wed, 19 Aug 2026 02:15:00 GMT</pubDate><category>Apple</category><category>article</category></item><item><title>Apple Patches 108 Flaws in iOS, iPadOS and macOS 26</title><link>https://0daynews.com/articles/2026-08-17-apple-ios-macos-108-vulnerabilities-patched/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-17-apple-ios-macos-108-vulnerabilities-patched/</guid><description>Apple&apos;s August 17 patch for iOS/iPadOS (versions 26 and 18) and macOS 26 closes 108 vulnerabilities across the full platform stack. Update devices now.</description><pubDate>Mon, 17 Aug 2026 21:30:00 GMT</pubDate><category>Apple</category><category>article</category></item><item><title>AmnesiaStealer Hijacks macOS Browser Sessions</title><link>https://0daynews.com/articles/2026-08-14-amnesiastealer-macos-clickfix-browser-hijack/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-14-amnesiastealer-macos-clickfix-browser-hijack/</guid><description>Jamf finds AmnesiaStealer: macOS infostealer that hijacks live browser sessions, steals keychain data, and destroys saved passwords via ClickFix terminal prompts.</description><pubDate>Fri, 14 Aug 2026 18:00:00 GMT</pubDate><category>Apple</category><category>article</category></item><item><title>macOS Screen Sharing Auth Bypass Exploited in Wild</title><link>https://0daynews.com/articles/2026-08-14-macos-screen-sharing-auth-bypass-exploited/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-14-macos-screen-sharing-auth-bypass-exploited/</guid><description>Netherlands NCSC confirms active exploitation of a macOS Screen Sharing authentication bypass after public PoC release. Attackers deploying Monero cryptocurrency miners.</description><pubDate>Fri, 14 Aug 2026 18:00:00 GMT</pubDate><category>Apple</category><category>article</category></item><item><title>Apple Notifies Users of Mercenary Spyware Attacks</title><link>https://0daynews.com/articles/2026-08-14-apple-mercenary-spyware-threat-notifications/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-14-apple-mercenary-spyware-threat-notifications/</guid><description>Apple issued Threat Notifications to iPhone users warning of active mercenary spyware attacks. If you received one, here is what to do immediately.</description><pubDate>Fri, 14 Aug 2026 02:00:00 GMT</pubDate><category>Apple</category><category>article</category></item><item><title>Fake App Store Wallet Drained $1.8M; Apple Faces Lawsuit</title><link>https://0daynews.com/articles/2026-07-27-apple-app-store-fake-sparrow-wallet-1-8m-bitcoin-lawsuit/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-27-apple-app-store-fake-sparrow-wallet-1-8m-bitcoin-lawsuit/</guid><description>Three plaintiffs are suing Apple after a fake Sparrow Wallet impersonator on the App Store harvested their seed phrases and drained $1.8 million in Bitcoin.</description><pubDate>Mon, 27 Jul 2026 19:00:00 GMT</pubDate><category>Apple</category><category>article</category></item><item><title>Apple fixes Hide My Email leak, year after disclosure</title><link>https://0daynews.com/articles/2026-07-21-apple-hide-my-email-mail-logs-july3-fix-year-disclosure/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-21-apple-hide-my-email-mail-logs-july3-fix-year-disclosure/</guid><description>Apple deployed a July 3 fix for a Hide My Email flaw that unmasked real addresses in Mail logs — disclosed to Apple over a year earlier per 404 Media.</description><pubDate>Tue, 21 Jul 2026 20:15:00 GMT</pubDate><category>Apple</category><category>article</category></item><item><title>Notarized Werkbit.app carries CrashStealer past Gatekeeper</title><link>https://0daynews.com/articles/2026-07-13-jamf-crashstealer-werkbit-notarized-macos-stealer/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-13-jamf-crashstealer-werkbit-notarized-macos-stealer/</guid><description>Jamf flagged CrashStealer, a native-C++ macOS infostealer arriving inside Werkbit.app — Apple-notarized and gated behind a meeting PIN.</description><pubDate>Mon, 13 Jul 2026 20:00:00 GMT</pubDate><category>Apple</category><category>article</category></item></channel></rss>