2024 CVE Vulnerabilities

39,152 CVEs published in 2024.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2024-24769LOW2.1vantage6 is an open-source infrastructure for privacy preserving analysis. Prior to version 5.0.0, users can reset their...
CVE-2024-58350LOW2.1Ghidra before 11.2 contains a use after free vulnerability in the Sleigh backend caused by undefined static initializati...
CVE-2024-42206LOW3.1HCL iReflection Third party vulnerable and outdated components issue was detected in the web application
CVE-2024-47272LOW2.7Incorrect authorization vulnerability in IO Module functionality in Synology Surveillance Station before 9.2.2-11575 and...
CVE-2024-47270LOW2.7Improper preservation of permissions vulnerability in Archiving Push functionality in Synology Surveillance Station befo...
CVE-2024-47267LOW2.7Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in Archiving Pull functiona...
CVE-2024-21950LOW1.8An out of bounds read in the remote management firmware could allow a privileged attacker read a limited section of memo...
CVE-2024-7083LOW3.5The Email Encoder WordPress plugin before 2.3.4 does not sanitise and escape some of its settings, which could allow hi...
CVE-2024-14026LOW2A command injection vulnerability has been reported to affect several QNAP operating system versions. If an attacker gai...
CVE-2024-14025LOW0.1An SQL injection vulnerability has been reported to affect Video Station. If an attacker gains local network access who ...
CVE-2024-14024LOW0.1An improper certificate validation vulnerability has been reported to affect Video Station. If an attacker gains local n...
CVE-2024-48928LOW2.7Piwigo is an open source photo gallery application for the web. In versions on the 14.x branch, when installing, the sec...
CVE-2024-55271LOW3.5A Cross-Site Request Forgery (CSRF) vulnerability has been identified in phpgurukul Gym Management System 1.0. This issu...
CVE-2024-56808LOW2A command injection vulnerability has been reported to affect Media Streaming add-on. If an attacker gains local network...
CVE-2024-56807LOW1.7An out-of-bounds read vulnerability has been reported to affect Media Streaming add-on. If an attacker gains local netwo...
CVE-2024-54556LOW2.4This issue was addressed through improved state management. This issue is fixed in iOS 18.1 and iPadOS 18.1. A user may ...
CVE-2024-44210LOW3.3This issue was addressed with improved permissions checking. This issue is fixed in macOS Sequoia 15.1. An app may be ab...
CVE-2024-14020LOW2.3A weakness has been identified in carboneio carbone up to fbcd349077ad0e8748be73eab2a82ea92b6f8a7e. This impacts an unkn...
CVE-2024-56464LOW2.7IBM QRadar SIEM 7.5 - 7.5.0 UP14 IF01 is affected by an information disclosure vulnerability involving exposure of direc...
CVE-2024-48341LOW3.7dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/doAdminAction....
CVE-2024-36331LOW3.2Improper initialization of CPU cache memory could allow a privileged attacker with hypervisor access to overwrite SEV-SN...
CVE-2024-21977LOW3.2Incomplete cleanup after loading a CPU microcode patch may allow a privileged attacker to degrade the entropy of the RDR...
CVE-2024-12923LOW2A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If a remote attacker gains a user ...
CVE-2024-44271LOW3.3The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2. An app may be able to record th...
CVE-2024-41985LOW2.1A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >= V13.2 < V2506), SOA Au...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now