2024 CVE Vulnerabilities

39,220 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-44270HIGH8.6A logic issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1, ma...
CVE-2024-44259HIGH7.5This issue was addressed through improved state management. This issue is fixed in Safari 18.1, iOS 17.7.1 and iPadOS 17...
CVE-2024-44258HIGH7.1This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18...
CVE-2024-44255HIGH7.8A path handling issue was addressed with improved logic. This issue is fixed in iOS 18.1 and iPadOS 18.1, macOS Sequoia ...
CVE-2024-44252HIGH7.1A logic issue was addressed with improved file handling. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 a...
CVE-2024-44228HIGH7.5This issue was addressed with improved permissions checking. This issue is fixed in Xcode 16. An app may be able to inhe...
CVE-2024-44218HIGH7.8This issue was addressed with improved checks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS ...
CVE-2024-44208HIGH7.5This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15. An app may be able ...
CVE-2024-44203HIGH7.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. An app may be a...
CVE-2024-44159HIGH7.1A path deletion vulnerability was addressed by preventing vulnerable code from running with privileges. This issue is fi...
CVE-2024-44156HIGH7.1A path deletion vulnerability was addressed by preventing vulnerable code from running with privileges. This issue is fi...
CVE-2024-44126HIGH7.8The issue was addressed with improved checks. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, mac...
CVE-2024-44122HIGH8.8A logic issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, macOS S...
CVE-2024-42011HIGH7.5The Spotify app 8.9.58 for iOS has a buffer overflow in its use of strcat.
CVE-2024-50457HIGH8.8Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-50453HIGH8.8Relative Path Traversal vulnerability in webangon The Pack Elementor addons the-pack-addon allows PHP Local File Inclusi...
CVE-2024-50436HIGH8.8Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-50435HIGH8.8Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-50434HIGH8.8Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-48826HIGH8.8Tenda AC7 v.15.03.06.44 ate_iwpriv_set has pre-authentication command injection allowing remote attackers to execute arb...
CVE-2024-48825HIGH8.8Tenda AC7 v.15.03.06.44 ate_ifconfig_set has pre-authentication command injection allowing remote attackers to execute a...
CVE-2024-48196HIGH7.5An issue in eyouCMS v.1.6.7 allows a remote attacker to obtain sensitive information via a crafted script to the post pa...
CVE-2024-48178HIGH8.1newbee-mall v1.0.0 is vulnerable to Server-Side Request Forgery (SSRF) via the goodsCoverImg parameter.
CVE-2024-6245HIGH7.4Use of Default Credentials vulnerability in Maruti Suzuki SmartPlay on Linux (Infotainment Hub modules) allows attacker ...
CVE-2024-42028HIGH8.8A Local privilege escalation vulnerability found in a Self-Hosted UniFi Network Server with UniFi Network Application (V...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now