2024 CVE Vulnerabilities

39,233 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-44174MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15. An attacker may be able to view r...
CVE-2024-44159HIGH7.1A path deletion vulnerability was addressed by preventing vulnerable code from running with privileges. This issue is fi...
CVE-2024-44156HIGH7.1A path deletion vulnerability was addressed by preventing vulnerable code from running with privileges. This issue is fi...
CVE-2024-44155MEDIUM6.5A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in Safari 18, iOS 1...
CVE-2024-44144MEDIUM5.5A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS ...
CVE-2024-44137MEDIUM4.6The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7.1, macOS Ventur...
CVE-2024-44126HIGH7.8The issue was addressed with improved checks. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, mac...
CVE-2024-44123LOW2.3A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequo...
CVE-2024-44122HIGH8.8A logic issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, macOS S...
CVE-2024-42011HIGH7.5The Spotify app 8.9.58 for iOS has a buffer overflow in its use of strcat.
CVE-2024-40867CRITICAL9.6A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in iOS 18.1 and iPa...
CVE-2024-40855MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7.1, macOS Ventur...
CVE-2024-40853LOW3.3This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 18 and iPadOS 18....
CVE-2024-40851LOW2.4This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 18.1 and iPadOS 1...
CVE-2024-40792LOW3.3A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. A malicious app...
CVE-2024-27849LOW3.3A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia...
CVE-2024-50457HIGH8.8Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-50453HIGH8.8Relative Path Traversal vulnerability in webangon The Pack Elementor addons the-pack-addon allows PHP Local File Inclusi...
CVE-2024-50436HIGH8.8Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-50435HIGH8.8Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-50434HIGH8.8Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-49755LOW3.1Duende IdentityServer is an OpenID Connect and OAuth 2.x framework for ASP.NET Core. IdentityServer's local API authenti...
CVE-2024-48826HIGH8.8Tenda AC7 v.15.03.06.44 ate_iwpriv_set has pre-authentication command injection allowing remote attackers to execute arb...
CVE-2024-48825HIGH8.8Tenda AC7 v.15.03.06.44 ate_ifconfig_set has pre-authentication command injection allowing remote attackers to execute a...
CVE-2024-48465CRITICAL9.8The MRBS version 1.5.0 has an SQL injection vulnerability in the edit_entry_handler.php file, specifically in the rooms%...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now