2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-29778MEDIUM4.7In ProtocolPsDedicatedBearInfoAdapter::processQosSession of protocolpsadapter.cpp, there is a possible out of bounds rea...
CVE-2024-5952MEDIUM6.5Deep Sea Electronics DSE855 Restart Missing Authentication Denial-of-Service Vulnerability. This vulnerability allows ne...
CVE-2024-5951MEDIUM6.5Deep Sea Electronics DSE855 Factory Reset Missing Authentication Denial-of-Service Vulnerability. This vulnerability all...
CVE-2024-5950HIGH8.8Deep Sea Electronics DSE855 Multipart Value Handling Stack-Based Buffer Overflow Remote Code Execution Vulnerability. Th...
CVE-2024-5949MEDIUM6.5Deep Sea Electronics DSE855 Multipart Boundary Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows ...
CVE-2024-5948HIGH8.8Deep Sea Electronics DSE855 Multipart Boundary Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vul...
CVE-2024-5947MEDIUM6.5Deep Sea Electronics DSE855 Configuration Backup Missing Authentication Information Disclosure Vulnerability. This vulne...
CVE-2024-5924HIGH8.8Dropbox Desktop Folder Sharing Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypas...
CVE-2024-4696HIGH7.5A privilege escalation vulnerability was reported in Lenovo Service Bridge prior to version 5.0.2.17 that could allow op...
CVE-2024-38313MEDIUM4.3In certain scenarios a malicious website could attempt to display a fake location URL bar which could mislead users as t...
CVE-2024-38312MEDIUM6.5When browsing private tabs, some data related to location history or webpage thumbnails could be persisted incorrectly w...
CVE-2024-38083MEDIUM4.3Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2024-30058MEDIUM5.4Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2024-30057MEDIUM5.4Microsoft Edge for iOS Spoofing Vulnerability
CVE-2024-37635CRITICAL9.8TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid in the function setWiFiBasicCf...
CVE-2024-37634CRITICAL9.8TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid in the function setWiFiEasyCfg...
CVE-2024-37633HIGH8.8TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid in the function setWiFiGuestCf...
CVE-2024-37632CRITICAL9.8TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via the password parameter in function ...
CVE-2024-37631HIGH8.8TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via the File parameter in function Uplo...
CVE-2024-36589MEDIUM4.3An issue in Annonshop.app DecentralizeJustice/anonymousLocker commit 2b2b4 to ba9fd and DecentralizeJustice/anonBackend ...
CVE-2024-36588MEDIUM6.5An issue in Annonshop.app DecentralizeJustice/ anonymousLocker commit 2b2b4 allows attackers to send messages erroneousl...
CVE-2024-36587HIGH7.8Insecure permissions in DNSCrypt-proxy v2.0.0alpha9 to v2.1.5 allows non-privileged attackers to escalate privileges to ...
CVE-2024-36586HIGH8.8An issue in AdGuardHome v0.93 to latest allows unprivileged attackers to escalate privileges via overwriting the AdGuard...
CVE-2024-38285HIGH7Logs storing credentials are insufficiently protected and can be decoded through the use of open source tools.
CVE-2024-38284HIGH8.7Transmitted data is logged between the device and the backend service. An attacker could use these logs to perform a rep...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now