2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-40826MEDIUM6.1A privacy issue was addressed with improved handling of files. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoi...
CVE-2024-40825MEDIUM4.4The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15, visionOS 2. A malicious app with ...
CVE-2024-40801MEDIUM5.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14...
CVE-2024-40797MEDIUM6.1This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, ...
CVE-2024-40790MEDIUM5.5The issue was addressed with improved handling of caches. This issue is fixed in visionOS 2. An app may be able to read ...
CVE-2024-27880MEDIUM5.5An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 17.7 and iPadOS 17....
CVE-2024-27876MEDIUM5.5A race condition was addressed with improved locking. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS...
CVE-2024-27875MEDIUM5.5A logic issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15. Privacy Indicators ...
CVE-2024-27869MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An app may ...
CVE-2024-27861MEDIUM5.5The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15. An application may be ab...
CVE-2024-27860MEDIUM5.5The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15. An application may be ab...
CVE-2024-27858MEDIUM5.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. An app may be a...
CVE-2024-23237MEDIUM5.5The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15. An app may be able to ca...
CVE-2024-6685MEDIUM4.3An issue was discovered in GitLab CE/EE affecting all versions starting from 16.7 prior to 17.1.7, 17.2 prior to 17.2.5,...
CVE-2024-4283MEDIUM6.1An issue has been discovered in GitLab EE affecting all versions starting from 11.1 before 17.1.7, 17.2 before 17.2.5, a...
CVE-2024-8766MEDIUM6.7Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protec...
CVE-2024-45800MEDIUM5Snappymail is an open source web-based email client. SnappyMail uses the `cleanHtml()` function to cleanup HTML and CSS ...
CVE-2024-42796MEDIUM5.9An Incorrect Access Control vulnerability was found in /music/ajax.php?action=delete_genre in Kashipara Music Management...
CVE-2024-42795MEDIUM4.2An Incorrect Access Control vulnerability was found in /music/view_user.php?id=3 and /music/controller.php?page=edit_use...
CVE-2024-42794MEDIUM4.7Kashipara Music Management System v1.0 is vulnerable to Incorrect Access Control via /music/ajax.php?action=save_user.
CVE-2024-34016MEDIUM6.5Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protec...
CVE-2024-22013MEDIUM5.3U-Boot environment is read from unauthenticated partition.
CVE-2024-45801MEDIUM6.1DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. It has been discovered that m...
CVE-2024-45799MEDIUM6.1FluxCP is a web-based Control Panel for rAthena servers written in PHP. A javascript injection is possible via venders/b...
CVE-2024-39910MEDIUM4.8decidim is a Free Open-Source participatory democracy, citizen participation and open government for cities and organiza...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now