CISA's list that day

21 November 2024

On CISA added 3 vulnerabilities to its list of exploited vulnerabilities, in Oracle Agile Product Lifecycle Management (PLM) and Apple Multiple Products. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2024-44309Cross-Site Scripting (XSS)Apple Multiple ProductsPatch soon0.23
CVE-2024-44308Code ExecutionApple Multiple ProductsPatch soon0.10
CVE-2024-21287Incorrect AuthorizationOracle Agile Product Lifecycle Management (PLM)Patch soon0.02

Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.