2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-1874CRITICAL9.4In PHP versions 8.1.* before 8.1.28, 8.2.* before 8.2.18, 8.3.* before 8.3.5, when using proc_open() command with array ...
CVE-2024-4298HIGH7.2The email search interface of HGiga iSherlock (including MailSherlock, SpamSherock, AuditSherlock) fails to filter speci...
CVE-2024-4297MEDIUM4.9The system configuration interface of HGiga iSherlock (including MailSherlock, SpamSherlock, AuditSherlock) fails to fil...
CVE-2024-4296MEDIUM4.9The account management interface of HGiga iSherlock (including MailSherlock, SpamSherlock, AuditSherlock) fails to filte...
CVE-2024-33903MEDIUM5.9In CARLA through 0.9.15.2, the collision sensor mishandles some situations involving pedestrians or bicycles, in part be...
CVE-2024-33899HIGH7.1RARLAB WinRAR before 7.00, on Linux and UNIX platforms, allows attackers to spoof the screen output, or cause a denial o...
CVE-2024-33891HIGH8.8Delinea Secret Server before 11.7.000001 allows attackers to bypass authentication via the SOAP API in SecretServer/webs...
CVE-2024-33331Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-33891. Reason: This candidate is a reservation d...
CVE-2024-33883MEDIUM4The ejs (aka Embedded JavaScript templates) package before 3.1.10 for Node.js lacks certain pollution protection.
CVE-2024-25050HIGH7.8IBM i 7.2, 7.3, 7.4, 7.5 and IBM Rational Development Studio for i 7.2, 7.3, 7.4, 7.5 networking and compiler infrastruc...
CVE-2024-26928HIGH7.8In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_debug_files_...
CVE-2024-26927HIGH8.4In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Add some bounds checking to firmware dat...
CVE-2024-4294HIGH8.8A vulnerability, which was classified as critical, has been found in PHPGurukul Doctor Appointment Management System 1.0...
CVE-2024-4293MEDIUM5.4A vulnerability classified as problematic was found in PHPGurukul Doctor Appointment Management System 1.0. Affected by ...
CVE-2024-33851MEDIUM4.3phpecc, as used in paragonie/phpecc before 2.0.1, has a branch-based timing leak in Point addition. (This is related to ...
CVE-2024-4292MEDIUM6.5A vulnerability classified as critical has been found in Contemporary Controls BASrouter BACnet BASRT-B 2.7.2. Affected ...
CVE-2024-4291HIGH8.8A vulnerability was found in Tenda A301 15.13.08.12_multi_TDE01. It has been rated as critical. This issue affects the f...
CVE-2024-4257MEDIUM6.5A vulnerability was found in BlueNet Technology Clinical Browsing System 1.2.1. It has been classified as critical. This...
CVE-2024-4256MEDIUM4.8A vulnerability was found in Techkshetra Info Solutions Savsoft Quiz 6.0 and classified as problematic. Affected by this...
CVE-2024-4255HIGH7.2A vulnerability, which was classified as critical, has been found in Ruijie RG-UAC up to 20240419. This issue affects so...
CVE-2024-4252HIGH8.8A vulnerability classified as critical has been found in Tenda i22 1.0.0.3(4687). This affects the function formSetUrlFi...
CVE-2024-4251HIGH8.8A vulnerability was found in Tenda i21 1.0.0.14(4656). It has been rated as critical. Affected by this issue is the func...
CVE-2024-4250HIGH8.8A vulnerability was found in Tenda i21 1.0.0.14(4656). It has been declared as critical. Affected by this vulnerability ...
CVE-2024-4249HIGH8.8A vulnerability was found in Tenda i21 1.0.0.14(4656). It has been classified as critical. Affected is the function form...
CVE-2024-25048HIGH7.5IBM MQ Appliance 9.3 CD and LTS are vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A re...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now