Vulnerabilities > Apple > Xcode > High

DATE CVE VULNERABILITY TITLE RISK
2023-09-27 CVE-2023-32396 Unspecified vulnerability in Apple products
This issue was addressed with improved checks.
local
low complexity
apple
7.8
2023-05-08 CVE-2023-27967 Unspecified vulnerability in Apple Xcode
The issue was addressed with improved memory handling.
local
low complexity
apple
8.6
2023-02-27 CVE-2022-42797 Injection vulnerability in Apple Xcode
An injection issue was addressed with improved input validation.
local
low complexity
apple CWE-74
7.8
2022-10-19 CVE-2022-39260 Heap-based Buffer Overflow vulnerability in multiple products
Git is an open source, scalable, distributed revision control system.
network
low complexity
git-scm fedoraproject apple debian CWE-122
8.8
2022-07-12 CVE-2022-29187 Improper Ownership Management vulnerability in multiple products
Git is a distributed revision control system.
local
low complexity
git-scm fedoraproject apple debian CWE-282
7.8
2022-04-12 CVE-2022-24765 Uncontrolled Search Path Element vulnerability in multiple products
Git for Windows is a fork of Git containing Windows-specific patches.
local
low complexity
git-scm fedoraproject apple debian CWE-427
7.8
2021-03-09 CVE-2021-21300 Link Following vulnerability in multiple products
Git is an open-source distributed revision control system.
network
high complexity
git-scm fedoraproject apple debian CWE-59
7.5
2020-10-16 CVE-2020-9992 Unspecified vulnerability in Apple Iphone OS
This issue was addressed by encrypting communications over the network to devices running iOS 14, iPadOS 14, tvOS 14, and watchOS 7.
local
low complexity
apple
7.8
2020-02-12 CVE-2014-9390 Improper Input Validation vulnerability in multiple products
Git before 1.8.5.6, 1.9.x before 1.9.5, 2.0.x before 2.0.5, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 on Windows and OS X; Mercurial before 3.2.3 on Windows and OS X; Apple Xcode before 6.2 beta 3; mine all versions before 08-12-2014; libgit2 all versions up to 0.21.2; Egit all versions before 08-12-2014; and JGit all versions before 08-12-2014 allow remote Git servers to execute arbitrary commands via a tree containing a crafted .git/config file with (1) an ignorable Unicode codepoint, (2) a git~1/config representation, or (3) mixed case that is improperly handled on a case-insensitive filesystem.
network
low complexity
git-scm mercurial apple eclipse libgit2 CWE-20
7.5
2019-03-21 CVE-2019-3855 Integer Overflow or Wraparound vulnerability in multiple products
An integer overflow flaw which could lead to an out of bounds write was discovered in libssh2 before 1.8.1 in the way packets are read from the server.
8.8