2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-54106 | HIGH | 7.5 | 0.3% | Dec 12, 2024 | Null pointer dereference vulnerability in the image decoding module Impact: Successful exploitation of this vulnerabilit... |
| CVE-2024-54105 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect ... |
| CVE-2024-54104 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability... |
| CVE-2024-54103 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Vulnerability of improper access control in the album module Impact: Successful exploitation of this vulnerability may a... |
| CVE-2024-54100 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Vulnerability of improper access control in the secure input module Impact: Successful exploitation of this vulnerabilit... |
| CVE-2024-54099 | HIGH | 7.1 | 0.1% | Dec 12, 2024 | File replacement vulnerability on some devices Impact: Successful exploitation of this vulnerability will affect integri... |
| CVE-2024-54098 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Service logic error vulnerability in the system service module Impact: Successful exploitation of this vulnerability may... |
| CVE-2024-54097 | HIGH | 7.5 | 0.3% | Dec 12, 2024 | Security vulnerability in the HiView module Impact: Successful exploitation of this vulnerability may affect feature imp... |
| CVE-2024-11274 | HIGH | 8.7 | 0.5% | Dec 12, 2024 | An issue was discovered in GitLab CE/EE affecting all versions starting from 16.1 prior to 17.4.6, starting from 17.5 pr... |
| CVE-2024-12397 | HIGH | 7.4 | 0.8% | Dec 12, 2024 | A flaw was found in Quarkus-HTTP, which incorrectly parses cookies with certain value-delimiting characters in incoming ... |
| CVE-2024-12312 | HIGH | 8.1 | 1.1% | Dec 12, 2024 | The Print Science Designer plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and includi... |
| CVE-2024-12172 | HIGH | 7.5 | 0.7% | Dec 12, 2024 | The WP Courses LMS – Online Courses Builder, eLearning Courses, Courses Solution, Education Courses plugin for WordPress... |
| CVE-2024-12040 | HIGH | 8.8 | 0.8% | Dec 12, 2024 | The Product Carousel Slider & Grid Ultimate for WooCommerce plugin for WordPress is vulnerable to Local File Inclusion i... |
| CVE-2024-10499 | HIGH | 7.2 | 0.6% | Dec 12, 2024 | The AI Engine WordPress plugin before 2.6.5 does not sanitize and escape a parameter from one of its RESP API endpoint b... |
| CVE-2024-10910 | HIGH | 7.3 | 0.6% | Dec 12, 2024 | The The Grid Plus – Unlimited grid layout plugin for WordPress is vulnerable to arbitrary shortcode execution via grid_p... |
| CVE-2024-10590 | HIGH | 8.8 | 0.8% | Dec 12, 2024 | The Opt-In Downloads plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in... |
| CVE-2024-11689 | HIGH | 8.8 | 0.4% | Dec 12, 2024 | The HQ Rental Software plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu... |
| CVE-2024-11443 | HIGH | 8.8 | 0.5% | Dec 12, 2024 | The de:branding plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escal... |
| CVE-2024-10111 | HIGH | 8.1 | 0.7% | Dec 12, 2024 | The OAuth Single Sign On – SSO (OAuth Client) plugin for WordPress is vulnerable to authentication bypass in all version... |
| CVE-2024-55658 | HIGH | 7.5 | 0.6% | Dec 12, 2024 | SiYuan is a personal knowledge management system. Prior to version 3.1.16, SiYuan's /api/export/exportResources endpoint... |
| CVE-2024-55657 | HIGH | 7.5 | 0.7% | Dec 12, 2024 | SiYuan is a personal knowledge management system. Prior to version 3.1.16, an arbitrary file read vulnerability exists i... |
| CVE-2024-54529 | HIGH | 7.8 | 0.3% | Dec 12, 2024 | A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS ... |
| CVE-2024-54528 | HIGH | 7.1 | 0.2% | Dec 12, 2024 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, ... |
| CVE-2024-54515 | HIGH | 7.8 | 0.2% | Dec 12, 2024 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.2. A malicious app may b... |
| CVE-2024-54514 | HIGH | 8.6 | 0.2% | Dec 12, 2024 | The issue was addressed with improved checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, macOS... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now