2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-11442 | MEDIUM | 6.4 | 0.4% | Dec 12, 2024 | The Horizontal scroll image slideshow plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's... |
| CVE-2024-11433 | MEDIUM | 6.4 | 0.4% | Dec 12, 2024 | The Surbma | SalesAutopilot Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's... |
| CVE-2024-11430 | MEDIUM | 6.5 | 0.5% | Dec 12, 2024 | The SQL Chart Builder plugin for WordPress is vulnerable to SQL Injection via the 'arg1' arg of the 'gvn_schart_2' short... |
| CVE-2024-11427 | MEDIUM | 6.4 | 0.4% | Dec 12, 2024 | The Catch Popup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'catch-popup' shortco... |
| CVE-2024-11419 | MEDIUM | 6.1 | 0.2% | Dec 12, 2024 | The Password for WP plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includin... |
| CVE-2024-11417 | MEDIUM | 6.1 | 0.2% | Dec 12, 2024 | The dejure.org Vernetzungsfunktion plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up t... |
| CVE-2024-11413 | MEDIUM | 6.4 | 0.4% | Dec 12, 2024 | The HostFact bestelformulier integratie plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin... |
| CVE-2024-11279 | MEDIUM | 6.1 | 0.5% | Dec 12, 2024 | The Schema App Structured Data plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of ad... |
| CVE-2024-11015 | CRITICAL | 9.8 | 0.8% | Dec 12, 2024 | The Sign In With Google plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including... |
| CVE-2024-10111 | HIGH | 8.1 | 0.7% | Dec 12, 2024 | The OAuth Single Sign On – SSO (OAuth Client) plugin for WordPress is vulnerable to authentication bypass in all version... |
| CVE-2024-55660 | CRITICAL | 9.8 | 0.6% | Dec 12, 2024 | SiYuan is a personal knowledge management system. Prior to version 3.1.16, SiYuan's `/api/template/renderSprig` endpoint... |
| CVE-2024-55659 | MEDIUM | 5.4 | 0.4% | Dec 12, 2024 | SiYuan is a personal knowledge management system. Prior to version 3.1.16, the `/api/asset/upload` endpoint in Siyuan is... |
| CVE-2024-55658 | HIGH | 7.5 | 0.6% | Dec 12, 2024 | SiYuan is a personal knowledge management system. Prior to version 3.1.16, SiYuan's /api/export/exportResources endpoint... |
| CVE-2024-55657 | HIGH | 7.5 | 0.7% | Dec 12, 2024 | SiYuan is a personal knowledge management system. Prior to version 3.1.16, an arbitrary file read vulnerability exists i... |
| CVE-2024-55652 | MEDIUM | 6.5 | 0.7% | Dec 12, 2024 | PenDoc is a penetration testing reporting application. Prior to commit 1d4219c596f4f518798492e48386a20c6e9a2fe6, an atta... |
| CVE-2024-54534 | CRITICAL | 9.8 | 1.0% | Dec 12, 2024 | The issue was addressed with improved memory handling. This issue is fixed in Safari 18.2, iOS 18.2 and iPadOS 18.2, iPa... |
| CVE-2024-54531 | MEDIUM | 5.5 | 0.2% | Dec 12, 2024 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.2. An app may be able to ... |
| CVE-2024-54529 | HIGH | 7.8 | 0.3% | Dec 12, 2024 | A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS ... |
| CVE-2024-54528 | HIGH | 7.1 | 0.2% | Dec 12, 2024 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, ... |
| CVE-2024-54527 | MEDIUM | 5.5 | 0.3% | Dec 12, 2024 | This issue was addressed with improved checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, macO... |
| CVE-2024-54526 | MEDIUM | 5.5 | 3.2% | Dec 12, 2024 | The issue was addressed with improved checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, macOS... |
| CVE-2024-54524 | MEDIUM | 5.5 | 0.2% | Dec 12, 2024 | A logic issue was addressed with improved file handling. This issue is fixed in macOS Sequoia 15.2. A malicious app may ... |
| CVE-2024-54515 | HIGH | 7.8 | 0.2% | Dec 12, 2024 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.2. A malicious app may b... |
| CVE-2024-54514 | HIGH | 8.6 | 0.2% | Dec 12, 2024 | The issue was addressed with improved checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, macOS... |
| CVE-2024-54513 | MEDIUM | 5.5 | 0.3% | Dec 12, 2024 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS S... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now