2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-53387HIGH8.8A DOM Clobbering vulnerability in umeditor v1.2.3 allows attackers to execute arbitrary code via supplying a crafted HTM...
CVE-2024-45782HIGH7.8A flaw was found in the HFS filesystem. When reading an HFS volume's name at grub_fs_mount(), the HFS filesystem driver ...
CVE-2024-45778MEDIUM5.5A stack overflow flaw was found when reading a BFS file system. A crafted BFS filesystem may lead to an uncontrolled loo...
CVE-2024-55570MEDIUM5.4/api/user/users in the web GUI for the Cubro EXA48200 network packet broker (build 20231025055018) fixed in V5.0R14.5P4-...
CVE-2024-55532CRITICAL9.8Improper Neutralization of Formula Elements in Export CSV feature of Apache Ranger in Apache Ranger Version < 2.6.0. Use...
CVE-2024-43169MEDIUM6.5IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a user to download a malicious file...
CVE-2024-41771HIGH7.5IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote attacker to download tempo...
CVE-2024-41770HIGH7.5IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote attacker to download tempo...
CVE-2024-8262CRITICAL9.8Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Proliz Software OBS allo...
CVE-2024-8261HIGH7.5Authorization Bypass Through User-Controlled Key vulnerability in Proliz Software OBS allows Exploiting Incorrectly Conf...
CVE-2024-45780MEDIUM6.7A flaw was found in grub2. When reading tar files, grub2 allocates an internal buffer for the file name. However, it fai...
CVE-2024-45779MEDIUM6An integer overflow flaw was found in the BFS file system driver in grub2. When reading a file with an indirect extent m...
CVE-2024-54179MEDIUM5.4IBM Business Automation Workflow and IBM Business Automation Workflow Enterprise Service Bus 24.0.0, 24.0.1 and earlier ...
CVE-2024-47092CRITICAL9.8Insecure deserialization and improper certificate validation in Checkmk Exchange plugin check-mk-api prior to 5.8.1
CVE-2024-53034HIGH7.8Memory corruption occurs during an Escape call if an invalid Kernel Mode CPU event and sync object handle are passed wit...
CVE-2024-53033HIGH7.8Memory corruption while doing Escape call when user provides valid kernel address in the place of valid user buffer addr...
CVE-2024-53032HIGH7Memory corruption may occur in keyboard virtual device due to guest VM interaction.
CVE-2024-53031HIGH7.8Memory corruption while reading a type value from a buffer controlled by the Guest Virtual Machine.
CVE-2024-53030HIGH7.8Memory corruption while processing input message passed from FE driver.
CVE-2024-53029HIGH8.8Memory corruption while reading a value from a buffer controlled by the Guest Virtual Machine.
CVE-2024-53028HIGH7Memory corruption may occur while processing message from frontend during allocation.
CVE-2024-53027HIGH7.5Transient DOS may occur while processing the country IE.
CVE-2024-53025MEDIUM5.5Transient DOS can occur while processing UCI command.
CVE-2024-53024HIGH7.8Memory corruption in display driver while detaching a device.
CVE-2024-53023HIGH7.8Memory corruption may occur while accessing a variable during extended back to back tests.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now