Show filters
40,926 Total Results
Displaying 631-640 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown
CVE-2024-11279
Disclosure Date: December 12, 2024 (last updated December 21, 2024)
The Schema App Structured Data plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.2.4. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
0
Attacker Value
Unknown
CVE-2024-54529
Disclosure Date: December 12, 2024 (last updated December 21, 2024)
A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. An app may be able to execute arbitrary code with kernel privileges.
0
Attacker Value
Unknown
CVE-2024-54524
Disclosure Date: December 12, 2024 (last updated December 19, 2024)
A logic issue was addressed with improved file handling. This issue is fixed in macOS Sequoia 15.2. A malicious app may be able to access arbitrary files.
0
Attacker Value
Unknown
CVE-2024-54514
Disclosure Date: December 12, 2024 (last updated December 19, 2024)
The issue was addressed with improved checks. This issue is fixed in watchOS 11.2, tvOS 18.2, macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. An app may be able to break out of its sandbox.
0
Attacker Value
Unknown
CVE-2024-54505
Disclosure Date: December 12, 2024 (last updated December 18, 2024)
A type confusion issue was addressed with improved memory handling. This issue is fixed in iPadOS 17.7.3, watchOS 11.2, visionOS 2.2, tvOS 18.2, macOS Sequoia 15.2, Safari 18.2, iOS 18.2 and iPadOS 18.2. Processing maliciously crafted web content may lead to memory corruption.
0
Attacker Value
Unknown
CVE-2024-54503
Disclosure Date: December 12, 2024 (last updated December 18, 2024)
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 18.2 and iPadOS 18.2. Muting a call while ringing may not result in mute being enabled.
0
Attacker Value
Unknown
CVE-2024-54502
Disclosure Date: December 12, 2024 (last updated December 19, 2024)
The issue was addressed with improved checks. This issue is fixed in watchOS 11.2, visionOS 2.2, tvOS 18.2, macOS Sequoia 15.2, Safari 18.2, iOS 18.2 and iPadOS 18.2. Processing maliciously crafted web content may lead to an unexpected process crash.
0
Attacker Value
Unknown
CVE-2024-54501
Disclosure Date: December 12, 2024 (last updated December 20, 2024)
The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.3, watchOS 11.2, visionOS 2.2, tvOS 18.2, macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. Processing a maliciously crafted file may lead to a denial of service.
0
Attacker Value
Unknown
CVE-2024-54495
Disclosure Date: December 12, 2024 (last updated December 19, 2024)
The issue was addressed with improved permissions logic. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2. An app may be able to modify protected parts of the file system.
0
Attacker Value
Unknown
CVE-2024-54491
Disclosure Date: December 12, 2024 (last updated January 13, 2025)
The issue was resolved by sanitizing logging This issue is fixed in macOS Sequoia 15.2. A malicious application may be able to determine a user's current location.
0