2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-30253 | HIGH | 7.5 | 0.6% | Apr 17, 2024 | @solana/web3.js is the Solana JavaScript SDK. Using particular inputs with `@solana/web3.js` will result in memory exhau... |
| CVE-2024-29035 | MEDIUM | 5.3 | 0.4% | Apr 17, 2024 | Umbraco is an ASP.NET CMS. Failing webhooks logs are available when solution is not in debug mode. Those logs can contai... |
| CVE-2024-32315 | MEDIUM | 4.7 | 0.4% | Apr 17, 2024 | Tenda FH1202 v1.2.0.14(408) firmware has a stack overflow vulnerability via the adslPwd parameter in the formWanParamete... |
| CVE-2024-32311 | MEDIUM | 6.5 | 0.5% | Apr 17, 2024 | Tenda FH1203 v2.0.1.6 firmware has a stack overflow vulnerability via the adslPwd parameter in the formWanParameterSetti... |
| CVE-2024-32306 | MEDIUM | 5.7 | 0.5% | Apr 17, 2024 | Tenda AC10U v1.0 Firmware v15.03.06.49 has a stack overflow vulnerability located via the PPW parameter in the fromWizar... |
| CVE-2024-32302 | MEDIUM | 6.3 | 0.4% | Apr 17, 2024 | Tenda FH1202 v1.2.0.14(408) firmware has a stack overflow vulnerability via the PPW parameter in the fromWizardHandle fu... |
| CVE-2024-32299 | HIGH | 8.8 | 0.8% | Apr 17, 2024 | Tenda FH1203 v2.0.1.6 firmware has a stack overflow vulnerability via the PPW parameter in the fromWizardHandle function... |
| CVE-2024-32293 | HIGH | 8 | 5.6% | Apr 17, 2024 | Tenda W30E v1.0 V1.0.1.25(633) firmware has a stack overflow vulnerability via the page parameter in the fromDhcpListCli... |
| CVE-2024-32292 | HIGH | 8.8 | 1.7% | Apr 17, 2024 | Tenda W30E v1.0 V1.0.1.25(633) firmware contains a command injection vulnerablility in the formexeCommand function via t... |
| CVE-2024-32291 | HIGH | 7.5 | 0.7% | Apr 17, 2024 | Tenda W30E v1.0 firmware v1.0.1.25(633) has a stack overflow vulnerability via the page parameter in the fromNatlimit fu... |
| CVE-2024-32290 | MEDIUM | 6.7 | 0.7% | Apr 17, 2024 | Tenda W30E v1.0 v1.0.1.25(633) firmware has a stack overflow vulnerability via the page parameter in the fromAddressNat ... |
| CVE-2024-32288 | MEDIUM | 6.3 | 0.5% | Apr 17, 2024 | Tenda W30E v1.0 V1.0.1.25(633) firmware has a stack overflow vulnerability located via the page parameter in the fromweb... |
| CVE-2024-32287 | MEDIUM | 6.5 | 0.5% | Apr 17, 2024 | Tenda W30E v1.0 V1.0.1.25(633) firmware has a stack overflow vulnerability via the qos parameter in the fromqossetting f... |
| CVE-2024-32286 | CRITICAL | 9.8 | 0.8% | Apr 17, 2024 | Tenda W30E v1.0 V1.0.1.25(633) firmware has a stack overflow vulnerability located via the page parameter in the fromVir... |
| CVE-2024-32285 | HIGH | 8 | 0.7% | Apr 17, 2024 | Tenda W30E v1.0 V1.0.1.25(633) firmware has a stack overflow vulnerability via the password parameter in the formaddUser... |
| CVE-2024-32283 | HIGH | 7.3 | 0.9% | Apr 17, 2024 | Tenda FH1203 V2.0.1.6 firmware has a command injection vulnerablility in formexeCommand function via the cmdinput parame... |
| CVE-2024-32282 | MEDIUM | 6.3 | 0.8% | Apr 17, 2024 | Tenda FH1202 v1.2.0.14(408) firmware contains a command injection vulnerablility in the formexeCommand function via the ... |
| CVE-2024-31578 | HIGH | 7.5 | 1.0% | Apr 17, 2024 | FFmpeg version n6.1.1 was discovered to contain a heap use-after-free via the av_hwframe_ctx_init function. |
| CVE-2024-2419 | HIGH | 7.1 | 0.5% | Apr 17, 2024 | A flaw was found in Keycloak's redirect_uri validation logic. This issue may allow a bypass of otherwise explicitly allo... |
| CVE-2024-1249 | HIGH | 7.4 | 0.4% | Apr 17, 2024 | A flaw was found in Keycloak's OIDC component in the "checkLoginIframe," which allows unvalidated cross-origin messages.... |
| CVE-2024-1132 | HIGH | 8.1 | 1.6% | Apr 17, 2024 | A flaw was found in Keycloak, where it does not properly validate URLs included in a redirect. This issue could allow an... |
| CVE-2024-32313 | MEDIUM | 6.5 | 0.5% | Apr 17, 2024 | Tenda FH1205 V2.0.0.7(775) firmware has a stack overflow vulnerability located via the adslPwd parameter of the formWanP... |
| CVE-2024-32312 | MEDIUM | 5.7 | 0.5% | Apr 17, 2024 | Tenda F1203 V2.0.1.6 firmware has a stack overflow vulnerability located in the adslPwd parameter of the formWanParamete... |
| CVE-2024-32310 | HIGH | 8 | 0.7% | Apr 17, 2024 | Tenda F1203 V2.0.1.6 firmware has a stack overflow vulnerability located in the PPW parameter of the fromWizardHandle fu... |
| CVE-2024-32307 | HIGH | 7.4 | 0.6% | Apr 17, 2024 | Tenda FH1205 V2.0.0.7(775) firmware has a stack overflow vulnerability located via the PPW parameter in the fromWizardHa... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now