2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4583 | MEDIUM | 5.3 | 0.6% | May 7, 2024 | A vulnerability classified as problematic was found in Faraday GM8181 and GM828x up to 20240429. Affected by this vulner... |
| CVE-2024-4582 | HIGH | 7.3 | 1.4% | May 7, 2024 | A vulnerability classified as critical has been found in Faraday GM8181 and GM828x up to 20240429. Affected is an unknow... |
| CVE-2024-4346 | CRITICAL | 9.1 | 1.5% | May 7, 2024 | The Startklar Elementor Addons plugin for WordPress is vulnerable to arbitrary file deletion in all versions up to, and ... |
| CVE-2024-4345 | CRITICAL | 9.8 | 1.4% | May 7, 2024 | The Startklar Elementor Addons plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file typ... |
| CVE-2024-3759 | HIGH | 7.8 | 0.2% | May 7, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker arbitrary code execution in TCB through use after free. |
| CVE-2024-3758 | HIGH | 7.8 | 0.2% | May 7, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker arbitrary code execution in TCB through heap buffer over... |
| CVE-2024-3757 | MEDIUM | 5.5 | 0.2% | May 7, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause service crash through integer overflow. |
| CVE-2024-31078 | MEDIUM | 5.5 | 0.2% | May 7, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause service crash through NULL pointer dereference. |
| CVE-2024-27217 | HIGH | 7.8 | 0.2% | May 7, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through u... |
| CVE-2024-23808 | HIGH | 7.8 | 0.2% | May 7, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through u... |
| CVE-2024-4186 | CRITICAL | 9.8 | 0.9% | May 7, 2024 | The Edwiser Bridge plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.0.5. ... |
| CVE-2024-3628 | LOW | 3.8 | 0.4% | May 7, 2024 | The EasyEvent WordPress plugin through 1.0.0 does not sanitise and escape some of its settings, which could allow high p... |
| CVE-2024-22472 | HIGH | 8.1 | 0.8% | May 7, 2024 | A buffer Overflow vulnerability in Silicon Labs 500 Series Z-Wave devices may allow Denial of Service, and potential Re... |
| CVE-2024-20872 | LOW | 3.3 | 0.1% | May 7, 2024 | Improper handling of insufficient privileges vulnerability in TalkbackSE prior to version Android 14 allows local attack... |
| CVE-2024-20871 | MEDIUM | 4.6 | 0.2% | May 7, 2024 | Improper authorization vulnerability in Samsung Keyboard prior to version One UI 5.1.1 allows physical attackers to part... |
| CVE-2024-20870 | MEDIUM | 5.5 | 0.1% | May 7, 2024 | Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.71.8 allows loc... |
| CVE-2024-20869 | MEDIUM | 5.5 | 0.1% | May 7, 2024 | Improper privilege management vulnerability in Samsung Internet prior to version 25.0.0.41 allows local attackers to byp... |
| CVE-2024-20868 | HIGH | 7.1 | 0.2% | May 7, 2024 | Improper input validation in Samsung Notes prior to version 4.4.15 allows local attackers to delete files with Samsung N... |
| CVE-2024-20867 | MEDIUM | 5.5 | 0.2% | May 7, 2024 | Improper privilege management vulnerability in Samsung Email prior to version 6.1.91.14 allows local attackers to access... |
| CVE-2024-20866 | MEDIUM | 6.6 | 0.3% | May 7, 2024 | Authentication bypass vulnerability in Setupwizard prior to SMR May-2024 Release 1 allows physical attackers to skip act... |
| CVE-2024-20865 | MEDIUM | 6.8 | 0.3% | May 7, 2024 | Authentication bypass in bootloader prior to SMR May-2024 Release 1 allows physical attackers to flash arbitrary images. |
| CVE-2024-20864 | MEDIUM | 5.5 | 0.2% | May 7, 2024 | Improper access control vulnerability in DarManagerService prior to SMR May-2024 Release 1 allows local attackers to mon... |
| CVE-2024-20863 | MEDIUM | 6.7 | 0.2% | May 7, 2024 | Out of bounds write vulnerability in SNAP in HAL prior to SMR May-2024 Release 1 allows local privileged attackers to ex... |
| CVE-2024-20862 | MEDIUM | 6.7 | 0.2% | May 7, 2024 | Out-of-bounds write in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary... |
| CVE-2024-20861 | MEDIUM | 6.7 | 0.2% | May 7, 2024 | Use after free vulnerability in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to cause me... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now