2024 CVE Vulnerabilities
39,233 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-50068 | MEDIUM | 5.5 | 0.2% | Oct 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm/damon/tests/sysfs-kunit.h: fix memory leak in da... |
| CVE-2024-45656 | CRITICAL | 9.8 | 0.4% | Oct 29, 2024 | IBM Flexible Service Processor (FSP) FW860.00 through FW860.B3, FW950.00 through FW950.C0, FW1030.00 through FW1030.61, ... |
| CVE-2024-10478 | MEDIUM | 5.4 | 0.3% | Oct 29, 2024 | A vulnerability, which was classified as problematic, has been found in LinZhaoguan pb-cms up to 2.0.1. This issue affec... |
| CVE-2024-10477 | MEDIUM | 5.4 | 0.3% | Oct 29, 2024 | A vulnerability classified as problematic was found in LinZhaoguan pb-cms up to 2.0.1. This vulnerability affects unknow... |
| CVE-2024-51509 | MEDIUM | 4.8 | 0.2% | Oct 28, 2024 | Tiki through 27.0 allows users who have certain permissions to insert a "Modules" (aka tiki-admin_modules.php) stored XS... |
| CVE-2024-51508 | MEDIUM | 4.8 | 0.2% | Oct 28, 2024 | Tiki through 27.0 allows users who have certain permissions to insert a "Create/Edit External Wiki" stored XSS payload i... |
| CVE-2024-51507 | MEDIUM | 4.8 | 0.2% | Oct 28, 2024 | Tiki through 27.0 allows users who have certain permissions to insert a "Create/Edit External Wiki" stored XSS payload i... |
| CVE-2024-51506 | MEDIUM | 4.8 | 0.2% | Oct 28, 2024 | Tiki through 27.0 allows users who have certain permissions to insert a "Create a Wiki Pages" stored XSS payload in the ... |
| CVE-2024-44295 | MEDIUM | 5.5 | 0.2% | Oct 28, 2024 | This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.... |
| CVE-2024-44283 | MEDIUM | 5.5 | 0.6% | Oct 28, 2024 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.1, macOS Sono... |
| CVE-2024-44260 | MEDIUM | 4.4 | 0.2% | Oct 28, 2024 | This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1... |
| CVE-2024-44257 | MEDIUM | 5.5 | 0.2% | Oct 28, 2024 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15.1, ma... |
| CVE-2024-44256 | HIGH | 8.6 | 0.2% | Oct 28, 2024 | The issue was addressed with improved input sanitization. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1... |
| CVE-2024-44240 | MEDIUM | 5.5 | 0.5% | Oct 28, 2024 | The issue was addressed with improved checks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 1... |
| CVE-2024-44237 | MEDIUM | 5.5 | 0.6% | Oct 28, 2024 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.1, ma... |
| CVE-2024-44217 | CRITICAL | 9.1 | 0.4% | Oct 28, 2024 | A permissions issue was addressed by removing vulnerable code and adding additional checks. This issue is fixed in iOS 1... |
| CVE-2024-44216 | MEDIUM | 5.5 | 0.2% | Oct 28, 2024 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.1, macOS Son... |
| CVE-2024-44145 | MEDIUM | 6.1 | 0.2% | Oct 28, 2024 | This issue was addressed through improved state management. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 1... |
| CVE-2024-30106 | MEDIUM | 4.3 | 0.3% | Oct 28, 2024 | HCL Connections is vulnerable to an information disclosure vulnerability, due to an IBM WebSphere Application Server err... |
| CVE-2024-50496 | CRITICAL | 10 | 0.5% | Oct 28, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in webandprint AR For WordPress ar-for-wordpress allows Up... |
| CVE-2024-50495 | CRITICAL | 9.8 | 0.5% | Oct 28, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in nunomorgadinho Plugin Propagator wp-propagator allows U... |
| CVE-2024-48594 | HIGH | 8.8 | 3.3% | Oct 28, 2024 | File Upload vulnerability in Prison Management System v.1.0 allows a remote attacker to execute arbitrary code via the f... |
| CVE-2024-48356 | CRITICAL | 9.8 | 0.5% | Oct 28, 2024 | LyLme Spage <=1.6.0 is vulnerable to SQL Injection via /admin/group.php. |
| CVE-2024-48177 | HIGH | 8.8 | 0.4% | Oct 28, 2024 | MRCMS 3.1.2 contains a SQL injection vulnerability via the RID parameter in /admin/article/delete.do. |
| CVE-2024-48107 | MEDIUM | 6.5 | 0.2% | Oct 28, 2024 | SparkShop <=1.1.7 is vulnerable to server-side request forgery (SSRF). This vulnerability allows attacks to scan ports o... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now