2024 CVE Vulnerabilities

No CVEs published in 2024.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2024-52587LOW2.7StepSecurity's Harden-Runner provides network egress filtering and runtime security for GitHub-hosted and self-hosted ru...
CVE-2024-52585LOW1.2Autolab is a course management service that enables auto-graded programming assignments. There is an HTML injection vuln...
CVE-2024-47820LOW3.5MarkUs, a web application for the submission and grading of student assignments, is vulnerable to path traversal in vers...
CVE-2024-5030LOW3.8The CM Table Of Contents WordPress plugin before 1.2.3 does not have CSRF check in place when resetting its settings, w...
CVE-2024-52514LOW3.5Nextcloud Server is a self hosted personal cloud system. After a user received a share with some files inside being bloc...
CVE-2024-46383LOW2.4Hathway Skyworth Router CM5100-511 v4.1.1.24 was discovered to store sensitive information about USB and Wifi connected ...
CVE-2024-10977LOW3.7Client use of server error message in PostgreSQL allows a server not trusted under current SSL or GSS settings to furnis...
CVE-2024-5917LOW2.1A server-side request forgery in PAN-OS software enables an authenticated attacker with administrative privileges to use...
CVE-2024-38660LOW2Protection mechanism failure in the SPP for some Intel(R) Xeon(R) processor family (E-Core) may allow an authenticated u...
CVE-2024-34776LOW2Out-of-bounds write in some Intel(R) SGX SDK software may allow an authenticated user to potentially enable escalation o...
CVE-2024-32667LOW2.4Out-of-bounds read for some OpenCL(TM) software may allow an authenticated user to potentially enable denial of service ...
CVE-2024-32485LOW2.4Improper Input Validation in some Intel(R) VROC software before version 8.6.0.2003 may allow an authenticated user to po...
CVE-2024-28051LOW1Out-of-bounds read in some Intel(R) VPL software before version 24.1.4 may allow an authenticated user to potentially en...
CVE-2024-28030LOW1NULL pointer dereference in some Intel(R) VPL software before version 24.1.4 may allow an authenticated user to potentia...
CVE-2024-21808LOW1Improper buffer restrictions in some Intel(R) VPL software before version 24.1.4 may allow an authenticated user to pote...
CVE-2024-21783LOW2.4Integer overflow for some Intel(R) VPL software before version 24.1.4 may allow an authenticated user to potentially ena...
CVE-2024-35274LOW2.3An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability [CWE-22] in Fortinet For...
CVE-2024-9842LOW3.3Incorrect permissions in Ivanti Secure Access Client before version 22.7R4 allows a local authenticated attacker to crea...
CVE-2024-51749LOW3.5Element is a Matrix web client built using the Matrix React SDK. Versions of Element Web and Desktop earlier than 1.11.8...
CVE-2024-11126LOW2.3A vulnerability was found in Digistar AG-30 Plus 2.6b. It has been classified as problematic. Affected is an unknown fun...
CVE-2024-50560LOW2.3A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2), RUGGEDCOM...
CVE-2024-47799LOW3.5Exposure of sensitive system information to an unauthorized control sphere issue exists in Mesh Wi-Fi router RP562B firm...
CVE-2024-48838LOW3.3Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a Files or Directories Acc...
CVE-2024-10672LOW2.7The Multiple Page Generator Plugin – MPG plugin for WordPress is vulnerable to arbitrary file deletion due to insufficie...
CVE-2024-47587LOW3.5Cash Operations does not perform necessary authorization check for an authenticated user, resulting in escalation of pri...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now