Parallels desktop for mac
This hub aggregates every CVE we track for Parallels desktop for mac, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
13
CVEs tracked
0
Critical
12
High
0
In CISA KEV
Severity distribution
HIGH12MEDIUM1
Monthly trend
0
0
0
0
0
0
1
0
0
4
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 13 most recently published vulnerabilities affecting Parallels desktop for mac.
- CVE-2024-52561A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (build 55740). When a snapshot of a virtual machine is deleted, a root service ...7.8
- CVE-2024-54189A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (build 55740). When a snapshot of a virtual machine is taken, a root service wr...7.8
- CVE-2024-36486A privilege escalation vulnerability exists in the virtual machine archive restoration functionality of Parallels Desktop for Mac version 20.1.1 (55740). When an archived virtual machine is restore...7.8
- CVE-2025-31359A directory traversal vulnerability exists in the PVMP package unpacking functionality of Parallels Desktop for Mac version 20.2.2 (55879). This vulnerability can be exploited by an attacker to wri...8.8
- CVE-2025-30074Alludo Parallels Desktop before 19.4.2 and 20.x before 20.2.2 for macOS on Intel platforms allows privilege escalation to root via the VM creation routine.7.8
- CVE-2024-6154Parallels Desktop Toolgate Heap-based Buffer Overflow Local Privilege Escalation Vulnerability6.7
- CVE-2023-27328Parallels Desktop Toolgate XML Injection Local Privilege Escalation Vulnerability7.8
- CVE-2023-27327Parallels Desktop Toolgate Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability7.5
- CVE-2023-27326Parallels Desktop Toolgate Directory Traversal Local Privilege Escalation Vulnerability8.2
- CVE-2023-27325Parallels Desktop Updater Improper Initialization Local Privilege Escalation Vulnerability7.8
- CVE-2023-27324Parallels Desktop Updater Improper Initialization Local Privilege Escalation Vulnerability7.8
- CVE-2023-27322Parallels Desktop Service Improper Initialization Local Privilege Escalation Vulnerability7.8
- CVE-2023-27323Parallels Desktop Updater Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability7.8
Product normalization is registry-driven with AI assist and human review. How it works