2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-33850MEDIUM4.3Pexip Infinity before 34.1 has Improper Access Control for persons in a waiting room. They can see the conference roster...
CVE-2024-27885MEDIUM6.3This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Monterey 12.7.5, macOS Sonom...
CVE-2024-27850MEDIUM6.5This issue was addressed with improvements to the noise injection algorithm. This issue is fixed in Safari 17.5, iOS 17....
CVE-2024-27844MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in Safari 17.5, macOS Sonoma 14.5, visionOS 1.2. A web...
CVE-2024-27840MEDIUM6.3The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and...
CVE-2024-27838MEDIUM6.5The issue was addressed by adding additional logic. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iO...
CVE-2024-27830MEDIUM6.5This issue was addressed through improved state management. This issue is fixed in Safari 17.5, iOS 17.5 and iPadOS 17.5...
CVE-2024-27812MEDIUM6.5A logic issue was addressed with improved file handling. This issue is fixed in visionOS 1.2. Processing web content may...
CVE-2024-27807MEDIUM4.3The issue was addressed with improved checks. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 1...
CVE-2024-27806MEDIUM5.5This issue was addressed with improved environment sanitization. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iO...
CVE-2024-27805MEDIUM5.5An issue was addressed with improved validation of environment variables. This issue is fixed in iOS 16.7.8 and iPadOS 1...
CVE-2024-27800MEDIUM6.5This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 ...
CVE-2024-23282MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 1...
CVE-2024-23251MEDIUM4.6An authentication issue was addressed with improved state management. This issue is fixed in iOS 16.7.8 and iPadOS 16.7....
CVE-2024-36414MEDIUM6.5SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6...
CVE-2024-36413MEDIUM5.4SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6...
CVE-2024-27792MEDIUM5.5This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Sonoma 14.4. An a...
CVE-2024-31612MEDIUM6.5Emlog pro2.3 is vulnerable to Cross Site Request Forgery (CSRF) via twitter.php which can be used with a XSS vulnerabili...
CVE-2024-3850MEDIUM5.4Uniview NVR301-04S2-P4 is vulnerable to reflected cross-site scripting attack (XSS). An attacker could send a user a URL...
CVE-2024-36407MEDIUM6.5SuiteCRM is an open-source Customer Relationship Management (CRM) software application. In versions prior to 7.14.4 and ...
CVE-2024-35754MEDIUM6.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Ovic Team Ovic Importer ...
CVE-2024-35749MEDIUM5.3Authentication Bypass by Spoofing vulnerability in Acurax Under Construction / Maintenance Mode from Acurax allows Authe...
CVE-2024-35747MEDIUM5.3Improper Restriction of Excessive Authentication Attempts vulnerability in wpdevart Contact Form Builder, Contact Widget...
CVE-2024-35744MEDIUM6.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Ravidhu Dissanayake Upun...
CVE-2024-35743MEDIUM6.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Siteclean SC filechecker...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now