2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-54560MEDIUM5.5A logic issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18...
CVE-2024-54558LOW2.8A clickjacking issue was addressed with improved out-of-process view handling. This issue is fixed in iOS 18 and iPadOS ...
CVE-2024-54546HIGH7.5The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15. An app may be able to ca...
CVE-2024-54473MEDIUM5.5This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15. An a...
CVE-2024-54469MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, macOS Sonom...
CVE-2024-54467MEDIUM6.5A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18, iOS 18 and iPa...
CVE-2024-54463MEDIUM5.5This issue was addressed with improved entitlements. This issue is fixed in macOS Sequoia 15. An app may be able to acce...
CVE-2024-44227HIGH7.5The issue was addressed with improved memory handling. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An...
CVE-2024-44192MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in Safari 18, iOS 18 and iPadOS 18, macOS Sequoia 15, ...
CVE-2024-44179LOW2.4This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 17.7 and iPadOS 1...
CVE-2024-55199MEDIUM5.4A Stored Cross Site Scripting (XSS) vulnerability in Celk Sistemas Celk Saude v.3.1.252.1 allows a remote attacker to st...
CVE-2024-53307MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability in the /mw/ endpoint of Evisions MAPS v6.10.2.267 allows attackers ...
CVE-2024-52812MEDIUM5.4LF Edge eKuiper is an internet-of-things data analytics and stream processing engine. Prior to version 2.0.8, auser with...
CVE-2024-52905LOW2.7IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 could disclose sensitiv...
CVE-2024-47109MEDIUM5.3IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 UI could disclosure the installation path ...
CVE-2024-12604MEDIUM6.5Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Pa...
CVE-2024-57492MEDIUM5.5An issue in redoxOS relibc before commit 98aa4ea5 allows a local attacker to cause a denial of service via the round_up_...
CVE-2024-13919MEDIUM6.1The Laravel framework versions between 11.9.0 and 11.35.1 are susceptible to reflected cross-site scripting due to an im...
CVE-2024-13918MEDIUM6.1The Laravel framework versions between 11.9.0 and 11.35.1 are susceptible to reflected cross-site scripting due to an im...
CVE-2024-11638HIGH8.8The Gtbabel WordPress plugin before 6.6.9 does not ensure that the URL to perform code analysis upon belongs to the blog...
CVE-2024-43107HIGH7.2Improper Certificate Validation (CWE-295) in the Gallagher Milestone Integration Plugin (MIP) permits unauthenticated me...
CVE-2024-41724HIGH8.7Improper Certificate Validation (CWE-295) in the Gallagher Command Centre SALTO integration allowed an attacker to spoof...
CVE-2024-13924CRITICAL9.1The Starter Templates by FancyWP plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions...
CVE-2024-10326MEDIUM4.3The RomethemeKit For Elementor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing ...
CVE-2024-13675MEDIUM5.4The SlingBlocks – Gutenberg Blocks by FunnelKit (Formerly WooFunnels) plugin for WordPress is vulnerable to Stored Cross...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now