2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-25420 | HIGH | 7.2 | 1.4% | Mar 26, 2024 | An issue in Ignite Realtime Openfire before 4.8.1 allows a remote attacker to escalate privileges via the admin.authoriz... |
| CVE-2024-2955 | HIGH | 7.5 | 1.4% | Mar 26, 2024 | T.38 dissector crash in Wireshark 4.2.0 to 4.0.3 and 4.0.0 to 4.0.13 allows denial of service via packet injection or cr... |
| CVE-2024-2902 | HIGH | 8.8 | 1.8% | Mar 26, 2024 | A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. This issue affects the function fromSetWi... |
| CVE-2024-2901 | HIGH | 8.8 | 1.7% | Mar 26, 2024 | A vulnerability has been found in Tenda AC7 15.03.06.44 and classified as critical. This vulnerability affects the funct... |
| CVE-2024-2900 | HIGH | 8.8 | 1.7% | Mar 26, 2024 | A vulnerability, which was classified as critical, was found in Tenda AC7 15.03.06.44. This affects the function savePar... |
| CVE-2024-28442 | HIGH | 7.5 | 0.8% | Mar 26, 2024 | Directory Traversal vulnerability in Yealink VP59 v.91.15.0.118 allows a physically proximate attacker to obtain sensiti... |
| CVE-2024-2899 | HIGH | 8.8 | 1.7% | Mar 26, 2024 | A vulnerability, which was classified as critical, has been found in Tenda AC7 15.03.06.44. Affected by this issue is th... |
| CVE-2024-2898 | HIGH | 8.8 | 1.7% | Mar 26, 2024 | A vulnerability classified as critical was found in Tenda AC7 15.03.06.44. Affected by this vulnerability is the functio... |
| CVE-2024-2897 | HIGH | 8.8 | 7.9% | Mar 26, 2024 | A vulnerability classified as critical has been found in Tenda AC7 15.03.06.44. Affected is the function formWriteFacMac... |
| CVE-2024-22436 | MEDIUM | 6.5 | 0.4% | Mar 26, 2024 | A security vulnerability in HPE IceWall Agent products could be exploited remotely to cause a denial of service. |
| CVE-2024-2951 | MEDIUM | 4.3 | 0.2% | Mar 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Metagauss RegistrationMagic.This issue affects RegistrationMagic: fro... |
| CVE-2024-2896 | HIGH | 8.8 | 1.9% | Mar 26, 2024 | A vulnerability was found in Tenda AC7 15.03.06.44. It has been rated as critical. This issue affects the function formW... |
| CVE-2024-2895 | HIGH | 8.8 | 1.7% | Mar 26, 2024 | A vulnerability was found in Tenda AC7 15.03.06.44. It has been declared as critical. This vulnerability affects the fun... |
| CVE-2024-26650 | — | — | — | Mar 26, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-26649 | MEDIUM | 5.5 | 0.2% | Mar 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix the null pointer when load rlc firm... |
| CVE-2024-26648 | MEDIUM | 5.5 | 0.2% | Mar 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix variable deferencing before NU... |
| CVE-2024-26647 | MEDIUM | 5.5 | 0.2% | Mar 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix late derefrence 'dsc' check in... |
| CVE-2024-26646 | MEDIUM | 5.5 | 0.2% | Mar 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: thermal: intel: hfi: Add syscore callbacks for syst... |
| CVE-2024-1313 | MEDIUM | 6.5 | 0.6% | Mar 26, 2024 | It is possible for a user in a different organization from the owner of a snapshot to bypass authorization and delete a ... |
| CVE-2024-2894 | HIGH | 8.8 | 1.6% | Mar 26, 2024 | A vulnerability was found in Tenda AC7 15.03.06.44. It has been classified as critical. This affects the function formSe... |
| CVE-2024-2893 | HIGH | 8.8 | 1.7% | Mar 26, 2024 | A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. Affected by this issue is the function fo... |
| CVE-2024-29735 | MEDIUM | 5.3 | 1.5% | Mar 26, 2024 | Improper Preservation of Permissions vulnerability in Apache Airflow.This issue affects Apache Airflow from 2.8.2 throug... |
| CVE-2024-2929 | HIGH | 7.8 | 0.3% | Mar 26, 2024 | A memory corruption vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious ... |
| CVE-2024-2921 | CRITICAL | 9.8 | 0.8% | Mar 26, 2024 | Improper access control in PAM vault permissions in Devolutions Server 2024.1.10.0 and earlier allows an authenticated u... |
| CVE-2024-2915 | HIGH | 8.8 | 0.6% | Mar 26, 2024 | Improper access control in PAM JIT elevation in Devolutions Server 2024.1.6 and earlier allows an attacker with access t... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now