2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-13228 | MEDIUM | 6.5 | 0.3% | Mar 11, 2025 | The Qubely – Advanced Gutenberg Blocks plugin for WordPress is vulnerable to Sensitive Information Exposure in all versi... |
| CVE-2024-13853 | MEDIUM | 6.1 | 0.6% | Mar 11, 2025 | The SEO Tools WordPress plugin through 4.0.7 does not sanitise and escape a parameter before outputting it back in the p... |
| CVE-2024-13580 | MEDIUM | 4.3 | 0.2% | Mar 11, 2025 | The XV Random Quotes WordPress plugin through 1.40 does not have CSRF check in place when updating its settings, which c... |
| CVE-2024-13413 | MEDIUM | 6.1 | 0.3% | Mar 11, 2025 | The ProductDyno plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘res’ parameter in all vers... |
| CVE-2024-13436 | MEDIUM | 6.1 | 0.1% | Mar 11, 2025 | The Appsero Helper plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including... |
| CVE-2024-49823 | MEDIUM | 6.5 | 0.3% | Mar 11, 2025 | IBM Common Cryptographic Architecture 7.0.0 through 7.5.51 could allow an authenticated user to cause a denial of servic... |
| CVE-2024-22340 | MEDIUM | 6.5 | 0.4% | Mar 11, 2025 | IBM Common Cryptographic Architecture 7.0.0 through 7.5.51 could allow a remote attacker to obtain sensitive informa... |
| CVE-2024-56188 | MEDIUM | 5.1 | 0.1% | Mar 10, 2025 | there is a possible way to crash the modem due to a missing null check. This could lead to remote denial of service with... |
| CVE-2024-56187 | MEDIUM | 6.6 | 0.1% | Mar 10, 2025 | In ppcfw_deny_sec_dram_access of ppcfw.c, there is a possible arbitrary read from TEE memory due to a logic error in the... |
| CVE-2024-56186 | MEDIUM | 5.1 | 0.1% | Mar 10, 2025 | In closeChannel of secureelementimpl.cpp, there is a possible out of bounds read due to an incorrect bounds check. This ... |
| CVE-2024-56185 | MEDIUM | 5.1 | 0.1% | Mar 10, 2025 | In ProtocolUnsolOnSSAdapter::GetServiceClass() of protocolcalladapter.cpp, there is a possible out-of-bounds read due to... |
| CVE-2024-56184 | MEDIUM | 5.1 | 0.1% | Mar 10, 2025 | In static long dev_send of tipc_dev_ql, there is a possible out of bounds read due to an incorrect bounds check. This co... |
| CVE-2024-54560 | MEDIUM | 5.5 | 0.2% | Mar 10, 2025 | A logic issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18... |
| CVE-2024-54473 | MEDIUM | 5.5 | 0.2% | Mar 10, 2025 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15. An a... |
| CVE-2024-54469 | MEDIUM | 5.5 | 0.2% | Mar 10, 2025 | The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, macOS Sonom... |
| CVE-2024-54467 | MEDIUM | 6.5 | 0.6% | Mar 10, 2025 | A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18, iOS 18 and iPa... |
| CVE-2024-54463 | MEDIUM | 5.5 | 0.2% | Mar 10, 2025 | This issue was addressed with improved entitlements. This issue is fixed in macOS Sequoia 15. An app may be able to acce... |
| CVE-2024-44192 | MEDIUM | 5.5 | 0.4% | Mar 10, 2025 | The issue was addressed with improved checks. This issue is fixed in Safari 18, iOS 18 and iPadOS 18, macOS Sequoia 15, ... |
| CVE-2024-55199 | MEDIUM | 5.4 | 0.3% | Mar 10, 2025 | A Stored Cross Site Scripting (XSS) vulnerability in Celk Sistemas Celk Saude v.3.1.252.1 allows a remote attacker to st... |
| CVE-2024-53307 | MEDIUM | 5.4 | 0.3% | Mar 10, 2025 | A reflected cross-site scripting (XSS) vulnerability in the /mw/ endpoint of Evisions MAPS v6.10.2.267 allows attackers ... |
| CVE-2024-52812 | MEDIUM | 5.4 | 0.3% | Mar 10, 2025 | LF Edge eKuiper is an internet-of-things data analytics and stream processing engine. Prior to version 2.0.8, auser with... |
| CVE-2024-47109 | MEDIUM | 5.3 | 0.3% | Mar 10, 2025 | IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 UI could disclosure the installation path ... |
| CVE-2024-12604 | MEDIUM | 6.5 | 0.2% | Mar 10, 2025 | Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Pa... |
| CVE-2024-57492 | MEDIUM | 5.5 | 0.2% | Mar 10, 2025 | An issue in redoxOS relibc before commit 98aa4ea5 allows a local attacker to cause a denial of service via the round_up_... |
| CVE-2024-13919 | MEDIUM | 6.1 | 0.5% | Mar 10, 2025 | The Laravel framework versions between 11.9.0 and 11.35.1 are susceptible to reflected cross-site scripting due to an im... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now