2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-28786MEDIUM6.5IBM QRadar SIEM 7.5 transmits sensitive or security-critical data in cleartext in a communication channel that could be ...
CVE-2024-57549HIGH7.5CMSimple 5.16 allows the user to read cms source code through manipulation of the file name in the file parameter of a G...
CVE-2024-57548CRITICAL9.1CMSimple 5.16 allows the user to edit log.php file via print page.
CVE-2024-57547HIGH7.5Insecure Permissions vulnerability in CMSimple v.5.16 allows a remote attacker to obtain sensitive information via a cra...
CVE-2024-57546HIGH7.5An issue in CMSimple v.5.16 allows a remote attacker to obtain sensitive information via a crafted script to the validat...
CVE-2024-57373HIGH8.1Cross Site Request Forgery (CSRF) vulnerability in LifestyleStore v1.0 allows a remote attacker to execute unauthorized ...
CVE-2024-57052CRITICAL9.8An issue in youdiancms v.9.5.20 and before allows a remote attacker to escalate privileges via the sessionID parameter i...
CVE-2024-56316HIGH7.5In AXESS ACS (Auto Configuration Server) through 5.2.0, unsanitized user input in the TR069 API allows remote unauthenti...
CVE-2024-56178MEDIUM6.5An issue was discovered in Couchbase Server 7.6.x through 7.6.3. A user with the security_admin_local role can create a ...
CVE-2024-54728MEDIUM6.5Incorrect access control in BYD QIN PLUS DM-i Dilink OS 3.0_13.1.7.2204050.1 allows unauthorized attackers to access sys...
CVE-2024-48662MEDIUM6.1Cross Site Scripting vulnerability in AdGuard Application v.7.18.1 (4778) and before allows an attacker to execute arbit...
CVE-2024-54557HIGH7.5A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, ...
CVE-2024-54550MEDIUM4This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 18.2 and iPadOS 18...
CVE-2024-54549MEDIUM5.5This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15.2. An...
CVE-2024-54547MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Vent...
CVE-2024-54543HIGH8.8The issue was addressed with improved memory handling. This issue is fixed in Safari 18.2, iOS 18.2 and iPadOS 18.2, iPa...
CVE-2024-54542CRITICAL9.1An authentication issue was addressed with improved state management. This issue is fixed in Safari 18.2, iOS 18.2 and i...
CVE-2024-54541MEDIUM5.5This issue was addressed through improved state management. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequo...
CVE-2024-54539MEDIUM5.5This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7...
CVE-2024-54537HIGH8.2This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14....
CVE-2024-54536MEDIUM5.5The issue was addressed with improved validation of environment variables. This issue is fixed in macOS Sequoia 15.2. An...
CVE-2024-54530CRITICAL9.1The issue was addressed with improved checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, visio...
CVE-2024-54523MEDIUM6.3The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2...
CVE-2024-54522HIGH7.8The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2...
CVE-2024-54520MEDIUM5.5A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now