2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1874 | CRITICAL | 9.4 | 32.6% | Apr 29, 2024 | In PHP versions 8.1.* before 8.1.28, 8.2.* before 8.2.18, 8.3.* before 8.3.5, when using proc_open() command with array ... |
| CVE-2024-4298 | HIGH | 7.2 | 2.1% | Apr 29, 2024 | The email search interface of HGiga iSherlock (including MailSherlock, SpamSherock, AuditSherlock) fails to filter speci... |
| CVE-2024-4297 | MEDIUM | 4.9 | 0.7% | Apr 29, 2024 | The system configuration interface of HGiga iSherlock (including MailSherlock, SpamSherlock, AuditSherlock) fails to fil... |
| CVE-2024-4296 | MEDIUM | 4.9 | 0.7% | Apr 29, 2024 | The account management interface of HGiga iSherlock (including MailSherlock, SpamSherlock, AuditSherlock) fails to filte... |
| CVE-2024-33903 | MEDIUM | 5.9 | 0.5% | Apr 29, 2024 | In CARLA through 0.9.15.2, the collision sensor mishandles some situations involving pedestrians or bicycles, in part be... |
| CVE-2024-33899 | HIGH | 7.1 | 0.8% | Apr 29, 2024 | RARLAB WinRAR before 7.00, on Linux and UNIX platforms, allows attackers to spoof the screen output, or cause a denial o... |
| CVE-2024-33891 | HIGH | 8.8 | 1.0% | Apr 28, 2024 | Delinea Secret Server before 11.7.000001 allows attackers to bypass authentication via the SOAP API in SecretServer/webs... |
| CVE-2024-33331 | — | — | — | Apr 28, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-33891. Reason: This candidate is a reservation d... |
| CVE-2024-33883 | MEDIUM | 4 | 0.6% | Apr 28, 2024 | The ejs (aka Embedded JavaScript templates) package before 3.1.10 for Node.js lacks certain pollution protection. |
| CVE-2024-25050 | HIGH | 7.8 | 0.3% | Apr 28, 2024 | IBM i 7.2, 7.3, 7.4, 7.5 and IBM Rational Development Studio for i 7.2, 7.3, 7.4, 7.5 networking and compiler infrastruc... |
| CVE-2024-26928 | HIGH | 7.8 | 0.3% | Apr 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_debug_files_... |
| CVE-2024-26927 | HIGH | 8.4 | 0.3% | Apr 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Add some bounds checking to firmware dat... |
| CVE-2024-4294 | HIGH | 8.8 | 0.9% | Apr 27, 2024 | A vulnerability, which was classified as critical, has been found in PHPGurukul Doctor Appointment Management System 1.0... |
| CVE-2024-4293 | MEDIUM | 5.4 | 0.6% | Apr 27, 2024 | A vulnerability classified as problematic was found in PHPGurukul Doctor Appointment Management System 1.0. Affected by ... |
| CVE-2024-33851 | MEDIUM | 4.3 | 0.4% | Apr 27, 2024 | phpecc, as used in paragonie/phpecc before 2.0.1, has a branch-based timing leak in Point addition. (This is related to ... |
| CVE-2024-4292 | MEDIUM | 6.5 | 0.4% | Apr 27, 2024 | A vulnerability classified as critical has been found in Contemporary Controls BASrouter BACnet BASRT-B 2.7.2. Affected ... |
| CVE-2024-4291 | HIGH | 8.8 | 1.5% | Apr 27, 2024 | A vulnerability was found in Tenda A301 15.13.08.12_multi_TDE01. It has been rated as critical. This issue affects the f... |
| CVE-2024-4257 | MEDIUM | 6.5 | 12.1% | Apr 27, 2024 | A vulnerability was found in BlueNet Technology Clinical Browsing System 1.2.1. It has been classified as critical. This... |
| CVE-2024-4256 | MEDIUM | 4.8 | 0.5% | Apr 27, 2024 | A vulnerability was found in Techkshetra Info Solutions Savsoft Quiz 6.0 and classified as problematic. Affected by this... |
| CVE-2024-4255 | HIGH | 7.2 | 5.0% | Apr 27, 2024 | A vulnerability, which was classified as critical, has been found in Ruijie RG-UAC up to 20240419. This issue affects so... |
| CVE-2024-4252 | HIGH | 8.8 | 1.5% | Apr 27, 2024 | A vulnerability classified as critical has been found in Tenda i22 1.0.0.3(4687). This affects the function formSetUrlFi... |
| CVE-2024-4251 | HIGH | 8.8 | 1.3% | Apr 27, 2024 | A vulnerability was found in Tenda i21 1.0.0.14(4656). It has been rated as critical. Affected by this issue is the func... |
| CVE-2024-4250 | HIGH | 8.8 | 1.3% | Apr 27, 2024 | A vulnerability was found in Tenda i21 1.0.0.14(4656). It has been declared as critical. Affected by this vulnerability ... |
| CVE-2024-4249 | HIGH | 8.8 | 1.3% | Apr 27, 2024 | A vulnerability was found in Tenda i21 1.0.0.14(4656). It has been classified as critical. Affected is the function form... |
| CVE-2024-25048 | HIGH | 7.5 | 0.9% | Apr 27, 2024 | IBM MQ Appliance 9.3 CD and LTS are vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A re... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now