CVE Database

59444+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-8939
6.2 MEDIUM

A vulnerability was found in the ilab model serve component, where improper handling of the best_of parameter in the vllm JSON web API can lead …

Sep 17, 2024
CVE-2024-38860
6.1 MEDIUM

Improper neutralization of input in Checkmk before versions 2.3.0p16 and 2.2.0p34 allows attackers to craft malicious links that can facilitate phishing attacks.

Sep 17, 2024
CVE-2024-8897
6.1 MEDIUM

Under certain conditions, an attacker with the ability to redirect users to a malicious site via an open redirect on a trusted site, may be …

Sep 17, 2024
CVE-2024-8093
6.5 MEDIUM

The Posts reminder WordPress plugin through 0.20 does not have CSRF check in place when updating its settings, which could allow attackers to make a …

Sep 17, 2024
CVE-2024-8092
5.4 MEDIUM

The Accordion Image Menu WordPress plugin through 3.1.3 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which …

Sep 17, 2024
CVE-2024-8091
6.5 MEDIUM

The Enhanced Search Box WordPress plugin through 0.6.1 does not have CSRF check in place when updating its settings, which could allow attackers to make …

Sep 17, 2024
CVE-2024-8052
6.1 MEDIUM

The Review Ratings WordPress plugin through 1.6 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could …

Sep 17, 2024
CVE-2024-8051
5.4 MEDIUM

The Special Feed Items WordPress plugin through 1.0.1 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which …

Sep 17, 2024
CVE-2024-8047
6.5 MEDIUM

The Visual Sound (old) WordPress plugin through 1.06 does not have CSRF check in place when updating its settings, which could allow attackers to make …

Sep 17, 2024
CVE-2024-8044
6.5 MEDIUM

The infolinks Ad Wrap WordPress plugin through 1.0.2 does not have CSRF check in place when updating its settings, which could allow attackers to make …

Sep 17, 2024
CVE-2024-8043
5.4 MEDIUM

The Vikinghammer Tweet WordPress plugin through 0.2.4 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could …

Sep 17, 2024
CVE-2024-5170
4.8 MEDIUM

The Logo Manager For Enamad WordPress plugin through 0.7.1 does not sanitise and escape in its widgets settings, which could allow high privilege users such …

Sep 17, 2024
CVE-2024-44202
5.3 MEDIUM

An authentication issue was addressed with improved state management. This issue is fixed in Safari 18, iOS 18 and iPadOS 18. Private Browsing tabs may …

Sep 17, 2024
CVE-2024-44198
5.5 MEDIUM

An integer overflow was addressed through improved input validation. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18, visionOS …

Sep 17, 2024
CVE-2024-44191
5.5 MEDIUM

This issue was addressed through improved state management. This issue is fixed in Xcode 16, iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, …

Sep 17, 2024
CVE-2024-44190
5.5 MEDIUM

A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An app …

Sep 17, 2024
CVE-2024-44188
5.5 MEDIUM

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. An app may be able to access protected user …

Sep 17, 2024
CVE-2024-44187
6.5 MEDIUM

A cross-origin issue existed with "iframe" elements. This was addressed with improved tracking of security origins. This issue is fixed in Safari 18, iOS 18 …

Sep 17, 2024
CVE-2024-44186
5.5 MEDIUM

An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15. An app may be able to access protected …

Sep 17, 2024
CVE-2024-44184
5.5 MEDIUM

A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sequoia …

Sep 17, 2024
CVE-2024-44183
5.5 MEDIUM

A logic error was addressed with improved error handling. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS …

Sep 17, 2024
CVE-2024-44182
5.5 MEDIUM

This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An …

Sep 17, 2024
CVE-2024-44181
5.5 MEDIUM

An issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An …

Sep 17, 2024
CVE-2024-44178
5.5 MEDIUM

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An app …

Sep 17, 2024
CVE-2024-44177
5.5 MEDIUM

A privacy issue was addressed by removing sensitive data. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An app …

Sep 17, 2024
CVE-2024-44176
5.5 MEDIUM

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, …

Sep 17, 2024
CVE-2024-44171
4.6 MEDIUM

This issue was addressed through improved state management. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, watchOS 11. …

Sep 17, 2024
CVE-2024-44170
5.5 MEDIUM

A privacy issue was addressed by moving sensitive data to a more secure location. This issue is fixed in iOS 18 and iPadOS 18, macOS …

Sep 17, 2024
CVE-2024-44169
5.5 MEDIUM

The issue was addressed with improved memory handling. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sequoia …

Sep 17, 2024
CVE-2024-44168
5.5 MEDIUM

A library injection issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An app …

Sep 17, 2024
CVE-2024-44167
5.5 MEDIUM

This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, macOS Sonoma 14.7, …

Sep 17, 2024
CVE-2024-44166
5.5 MEDIUM

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS …

Sep 17, 2024
CVE-2024-44163
5.5 MEDIUM

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. A malicious application may …

Sep 17, 2024
CVE-2024-44161
5.5 MEDIUM

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. Processing a …

Sep 17, 2024
CVE-2024-44160
5.5 MEDIUM

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. Processing …

Sep 17, 2024
CVE-2024-44158
5.5 MEDIUM

This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 17.7 and iPadOS 17.7, macOS Sequoia 15, macOS Sonoma …

Sep 17, 2024
CVE-2024-44154
5.5 MEDIUM

A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. Processing a maliciously crafted …

Sep 17, 2024
CVE-2024-44153
5.5 MEDIUM

The issue was addressed with improved permissions logic. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. An app may be able to …

Sep 17, 2024
CVE-2024-44151
5.5 MEDIUM

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An app may …

Sep 17, 2024
CVE-2024-44147
5.5 MEDIUM

This issue was addressed through improved state management. This issue is fixed in iOS 18 and iPadOS 18. An app may gain unauthorized access to …

Sep 17, 2024
CVE-2024-44135
5.5 MEDIUM

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. An app may be able to …

Sep 17, 2024
CVE-2024-44134
5.5 MEDIUM

This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15. An app may be able to read …

Sep 17, 2024
CVE-2024-44133
5.5 MEDIUM

This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15. On MDM managed devices, an app may be …

Sep 17, 2024
CVE-2024-44131
5.5 MEDIUM

This issue was addressed with improved validation of symlinks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An app may …

Sep 17, 2024
CVE-2024-44130
4.4 MEDIUM

This issue was addressed with improved data protection. This issue is fixed in macOS Sequoia 15. An app with root privileges may be able to …

Sep 17, 2024
CVE-2024-44129
5.5 MEDIUM

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15, macOS Ventura 13.7. An app may be able to leak …

Sep 17, 2024
CVE-2024-44128
5.5 MEDIUM

This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura …

Sep 17, 2024
CVE-2024-44127
5.3 MEDIUM

This issue was addressed through improved state management. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18. Private Browsing …

Sep 17, 2024
CVE-2024-44125
5.5 MEDIUM

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. A malicious application may be able to …

Sep 17, 2024
CVE-2024-44124
6.5 MEDIUM

This issue was addressed through improved state management. This issue is fixed in iOS 18 and iPadOS 18. A malicious Bluetooth input device may bypass …

Sep 17, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.