2024 CVE Vulnerabilities
39,242 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37055 | HIGH | 8.8 | 0.6% | Jun 4, 2024 | Deserialization of untrusted data can occur in versions of the MLflow platform running version 1.24.0 or newer, enabling... |
| CVE-2024-37054 | HIGH | 8.8 | 0.7% | Jun 4, 2024 | Deserialization of untrusted data can occur in versions of the MLflow platform running version 0.9.0 or newer, enabling ... |
| CVE-2024-37053 | HIGH | 8.8 | 0.6% | Jun 4, 2024 | Deserialization of untrusted data can occur in versions of the MLflow platform running version 1.1.0 or newer, enabling ... |
| CVE-2024-37052 | HIGH | 8.8 | 0.6% | Jun 4, 2024 | Deserialization of untrusted data can occur in versions of the MLflow platform running version 1.1.0 or newer, enabling ... |
| CVE-2024-5463 | MEDIUM | 6.5 | 0.4% | Jun 4, 2024 | A vulnerability regarding buffer copy without checking the size of input ('Classic Buffer Overflow') has been found in t... |
| CVE-2024-4637 | MEDIUM | 5.4 | 0.3% | Jun 4, 2024 | The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and inclu... |
| CVE-2024-5000 | HIGH | 7.5 | 0.6% | Jun 4, 2024 | An unauthenticated remote attacker can use a malicious OPC UA client to send a crafted request to affected CODESYS produ... |
| CVE-2024-4581 | MEDIUM | 5.4 | 0.3% | Jun 4, 2024 | The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Add Layer widge... |
| CVE-2024-5422 | HIGH | 7.1 | 0.7% | Jun 4, 2024 | An uncontrolled resource consumption of file descriptors in SEH Computertechnik utnserver Pro, SEH Computertechnik utnse... |
| CVE-2024-5421 | HIGH | 8.7 | 3.7% | Jun 4, 2024 | Missing input validation and OS command integration of the input in the utnserver Pro, utnserver ProMAX, INU-100 web-int... |
| CVE-2024-5420 | HIGH | 8.3 | 5.5% | Jun 4, 2024 | Missing input validation in the SEH Computertechnik utnserver Pro, SEH Computertechnik utnserver ProMAX, SEH Computertec... |
| CVE-2024-4253 | CRITICAL | 9.1 | 1.7% | Jun 4, 2024 | A command injection vulnerability exists in the gradio-app/gradio repository, specifically within the 'test-functional.y... |
| CVE-2024-36104 | CRITICAL | 9.1 | 87.9% | Jun 4, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache OFBiz. This issue... |
| CVE-2024-5485 | MEDIUM | 6.4 | 0.4% | Jun 4, 2024 | The SureTriggers – Connect All Your Plugins, Apps, Tools & Automate Everything! plugin for WordPress is vulnerable to St... |
| CVE-2024-20887 | HIGH | 7.5 | 0.3% | Jun 4, 2024 | Arbitrary directory creation in GalaxyBudsManager PC prior to version 2.1.240315.51 allows attacker to create arbitrary ... |
| CVE-2024-20886 | MEDIUM | 6.2 | 0.2% | Jun 4, 2024 | Arbitrary directory creation in Samsung Live Wallpaper PC prior to version 3.3.8.0 allows attacker to create arbitrary d... |
| CVE-2024-20885 | LOW | 3.3 | 0.1% | Jun 4, 2024 | Improper component protection vulnerability in Samsung Dialer prior to SMR May-2024 Release 1 allows local attackers to ... |
| CVE-2024-20884 | HIGH | 7.8 | 0.1% | Jun 4, 2024 | Incorrect use of privileged API vulnerability in getSemBatteryUsageStats in BatteryStatsService prior to SMR Jun-2024 Re... |
| CVE-2024-20883 | HIGH | 7.8 | 0.1% | Jun 4, 2024 | Incorrect use of privileged API vulnerability in registerBatteryStatsCallback in BatteryStatsService prior to SMR Jun-20... |
| CVE-2024-20882 | MEDIUM | 4.6 | 0.2% | Jun 4, 2024 | Out-of-bounds read vulnerability in bootloader prior to SMR June-2024 Release 1 allows physical attackers to arbitrary d... |
| CVE-2024-20881 | MEDIUM | 6.7 | 0.2% | Jun 4, 2024 | Improper input validation vulnerability in chnactiv TA prior to SMR Jun-2024 Release 1 allows local privileged attackers... |
| CVE-2024-20880 | MEDIUM | 6.8 | 0.3% | Jun 4, 2024 | Stack-based buffer overflow vulnerability in bootloader prior to SMR Jun-2024 Release 1 allows physical attackers to ove... |
| CVE-2024-20879 | HIGH | 7.1 | 0.1% | Jun 4, 2024 | Improper input validation vulnerability in libsavscmn.so prior to SMR Jun-2024 Release 1 allows local attackers to write... |
| CVE-2024-20878 | HIGH | 7.8 | 0.2% | Jun 4, 2024 | Heap out-of-bound write vulnerability in parsing grid image in libsavscmn.so prior to SMR June-2024 Release 1 allows loc... |
| CVE-2024-20877 | HIGH | 7.8 | 0.2% | Jun 4, 2024 | Heap out-of-bound write vulnerability in parsing grid image header in libsavscmn.so prior to SMR Jun-2024 Release 1 allo... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now