2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-42645HIGH7.5An issue in FlashMQ v1.14.0 allows attackers to cause an assertion failure via sending a crafted retain message, leading...
CVE-2024-42644HIGH7.5FlashMQ v1.14.0 was discovered to contain an assertion failure in the function PublishCopyFactory::getNewPublish, which ...
CVE-2024-49342HIGH7.5IBM Informix Dynamic Server 12.10 and 14.10 uses an inadequate account lockout setting that could allow a remote attacke...
CVE-2024-58264HIGH7.5The serde-json-wasm crate before 1.0.1 for Rust allows stack consumption via deeply nested JSON data.
CVE-2024-58261HIGH7.5The sequoia-openpgp crate 1.13.0 before 1.21.0 for Rust allows an infinite loop of "Reading a cert: Invalid operation: N...
CVE-2024-13507HIGH7.5The GeoDirectory – WP Business Directory Plugin and Classified Listings Directory plugin for WordPress is vulnerable to ...
CVE-2024-13976HIGH8.5A DLL injection vulnerability exists in Commvault for Windows 11.20.0, 11.28.0, 11.32.0, 11.34.0, and 11.36.0. During th...
CVE-2024-13975HIGH8.5A local privilege escalation vulnerability exists in Commvault for Windows versions 11.20.0, 11.28.0, 11.32.0, 11.34.0, ...
CVE-2024-48729HIGH7.1An issue in ETSI Open-Source MANO (OSM) 14.0.x before 14.0.3, 15.0.x before 15.0.2, 16.0.0, and 17.0.0 allows a remote a...
CVE-2024-12310HIGH7A vulnerability in Imprivata Enterprise Access Management (formerly Imprivata OneSign) allows bypassing the login screen...
CVE-2024-53286HIGH7.2Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in DDNS Record ...
CVE-2024-13974HIGH8.1A business logic vulnerability in the Up2Date component of Sophos Firewall older than version 21.0 MR1 (20.0.1) can lead...
CVE-2024-13973HIGH7.2A post-auth SQL injection vulnerability in WebAdmin of Sophos Firewall versions older than 21.0 MR1 (21.0.1) can potenti...
CVE-2024-41921HIGH7.8A code injection vulnerability has been discovered in the Robot Operating System (ROS) 'rostopic' command-line tool, aff...
CVE-2024-41148HIGH7.8A code injection vulnerability has been discovered in the Robot Operating System (ROS) 'rostopic' command-line tool, aff...
CVE-2024-39835HIGH7.8A code injection vulnerability has been identified in the Robot Operating System (ROS) 'roslaunch' command-line tool, af...
CVE-2024-39289HIGH7.8A code execution vulnerability has been discovered in the Robot Operating System (ROS) 'rosparam' tool, affecting ROS di...
CVE-2024-13972HIGH8.8A vulnerability related to registry permissions in the Intercept X for Windows updater prior to Core Agent version 2024....
CVE-2024-32323HIGH8.1SQL Injection vulnerability in cnhcit.com Haichang OA v.1.0.0 allows a remote attacker to obtain sensitive information v...
CVE-2024-42650HIGH7.5NanoMQ 0.17.5 was discovered to contain a segmentation fault via the component /nanomq/pub_handler.c. This vulnerability...
CVE-2024-42646HIGH7.5A segmentation fault in NanoMQ v0.21.10 allows attackers to cause a Denial of Service (DoS) via crafted messages.
CVE-2024-51770HIGH7.5An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.
CVE-2024-51769HIGH7.5An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.
CVE-2024-51768HIGH8An hsqldb-related remote code execution vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.
CVE-2024-51767HIGH7.3An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now