2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-42645 | HIGH | 7.5 | 0.5% | Jul 29, 2025 | An issue in FlashMQ v1.14.0 allows attackers to cause an assertion failure via sending a crafted retain message, leading... |
| CVE-2024-42644 | HIGH | 7.5 | 0.5% | Jul 29, 2025 | FlashMQ v1.14.0 was discovered to contain an assertion failure in the function PublishCopyFactory::getNewPublish, which ... |
| CVE-2024-49342 | HIGH | 7.5 | 0.3% | Jul 28, 2025 | IBM Informix Dynamic Server 12.10 and 14.10 uses an inadequate account lockout setting that could allow a remote attacke... |
| CVE-2024-58264 | HIGH | 7.5 | 0.4% | Jul 27, 2025 | The serde-json-wasm crate before 1.0.1 for Rust allows stack consumption via deeply nested JSON data. |
| CVE-2024-58261 | HIGH | 7.5 | 0.4% | Jul 27, 2025 | The sequoia-openpgp crate 1.13.0 before 1.21.0 for Rust allows an infinite loop of "Reading a cert: Invalid operation: N... |
| CVE-2024-13507 | HIGH | 7.5 | 0.4% | Jul 26, 2025 | The GeoDirectory – WP Business Directory Plugin and Classified Listings Directory plugin for WordPress is vulnerable to ... |
| CVE-2024-13976 | HIGH | 8.5 | 0.2% | Jul 25, 2025 | A DLL injection vulnerability exists in Commvault for Windows 11.20.0, 11.28.0, 11.32.0, 11.34.0, and 11.36.0. During th... |
| CVE-2024-13975 | HIGH | 8.5 | 0.1% | Jul 25, 2025 | A local privilege escalation vulnerability exists in Commvault for Windows versions 11.20.0, 11.28.0, 11.32.0, 11.34.0, ... |
| CVE-2024-48729 | HIGH | 7.1 | 0.3% | Jul 25, 2025 | An issue in ETSI Open-Source MANO (OSM) 14.0.x before 14.0.3, 15.0.x before 15.0.2, 16.0.0, and 17.0.0 allows a remote a... |
| CVE-2024-12310 | HIGH | 7 | 0.2% | Jul 23, 2025 | A vulnerability in Imprivata Enterprise Access Management (formerly Imprivata OneSign) allows bypassing the login screen... |
| CVE-2024-53286 | HIGH | 7.2 | 1.1% | Jul 23, 2025 | Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in DDNS Record ... |
| CVE-2024-13974 | HIGH | 8.1 | 6.7% | Jul 21, 2025 | A business logic vulnerability in the Up2Date component of Sophos Firewall older than version 21.0 MR1 (20.0.1) can lead... |
| CVE-2024-13973 | HIGH | 7.2 | 8.3% | Jul 21, 2025 | A post-auth SQL injection vulnerability in WebAdmin of Sophos Firewall versions older than 21.0 MR1 (21.0.1) can potenti... |
| CVE-2024-41921 | HIGH | 7.8 | 0.2% | Jul 17, 2025 | A code injection vulnerability has been discovered in the Robot Operating System (ROS) 'rostopic' command-line tool, aff... |
| CVE-2024-41148 | HIGH | 7.8 | 0.2% | Jul 17, 2025 | A code injection vulnerability has been discovered in the Robot Operating System (ROS) 'rostopic' command-line tool, aff... |
| CVE-2024-39835 | HIGH | 7.8 | 0.2% | Jul 17, 2025 | A code injection vulnerability has been identified in the Robot Operating System (ROS) 'roslaunch' command-line tool, af... |
| CVE-2024-39289 | HIGH | 7.8 | 0.2% | Jul 17, 2025 | A code execution vulnerability has been discovered in the Robot Operating System (ROS) 'rosparam' tool, affecting ROS di... |
| CVE-2024-13972 | HIGH | 8.8 | 0.1% | Jul 17, 2025 | A vulnerability related to registry permissions in the Intercept X for Windows updater prior to Core Agent version 2024.... |
| CVE-2024-32323 | HIGH | 8.1 | 0.3% | Jul 17, 2025 | SQL Injection vulnerability in cnhcit.com Haichang OA v.1.0.0 allows a remote attacker to obtain sensitive information v... |
| CVE-2024-42650 | HIGH | 7.5 | 0.5% | Jul 15, 2025 | NanoMQ 0.17.5 was discovered to contain a segmentation fault via the component /nanomq/pub_handler.c. This vulnerability... |
| CVE-2024-42646 | HIGH | 7.5 | 0.4% | Jul 14, 2025 | A segmentation fault in NanoMQ v0.21.10 allows attackers to cause a Denial of Service (DoS) via crafted messages. |
| CVE-2024-51770 | HIGH | 7.5 | 0.4% | Jul 14, 2025 | An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17. |
| CVE-2024-51769 | HIGH | 7.5 | 0.4% | Jul 14, 2025 | An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17. |
| CVE-2024-51768 | HIGH | 8 | 0.4% | Jul 14, 2025 | An hsqldb-related remote code execution vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17. |
| CVE-2024-51767 | HIGH | 7.3 | 1.1% | Jul 14, 2025 | An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now