2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-25420HIGH7.2An issue in Ignite Realtime Openfire before 4.8.1 allows a remote attacker to escalate privileges via the admin.authoriz...
CVE-2024-2955HIGH7.5T.38 dissector crash in Wireshark 4.2.0 to 4.0.3 and 4.0.0 to 4.0.13 allows denial of service via packet injection or cr...
CVE-2024-2902HIGH8.8A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. This issue affects the function fromSetWi...
CVE-2024-2901HIGH8.8A vulnerability has been found in Tenda AC7 15.03.06.44 and classified as critical. This vulnerability affects the funct...
CVE-2024-2900HIGH8.8A vulnerability, which was classified as critical, was found in Tenda AC7 15.03.06.44. This affects the function savePar...
CVE-2024-28442HIGH7.5Directory Traversal vulnerability in Yealink VP59 v.91.15.0.118 allows a physically proximate attacker to obtain sensiti...
CVE-2024-2899HIGH8.8A vulnerability, which was classified as critical, has been found in Tenda AC7 15.03.06.44. Affected by this issue is th...
CVE-2024-2898HIGH8.8A vulnerability classified as critical was found in Tenda AC7 15.03.06.44. Affected by this vulnerability is the functio...
CVE-2024-2897HIGH8.8A vulnerability classified as critical has been found in Tenda AC7 15.03.06.44. Affected is the function formWriteFacMac...
CVE-2024-22436MEDIUM6.5A security vulnerability in HPE IceWall Agent products could be exploited remotely to cause a denial of service.
CVE-2024-2951MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Metagauss RegistrationMagic.This issue affects RegistrationMagic: fro...
CVE-2024-2896HIGH8.8A vulnerability was found in Tenda AC7 15.03.06.44. It has been rated as critical. This issue affects the function formW...
CVE-2024-2895HIGH8.8A vulnerability was found in Tenda AC7 15.03.06.44. It has been declared as critical. This vulnerability affects the fun...
CVE-2024-26650Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-26649MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix the null pointer when load rlc firm...
CVE-2024-26648MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix variable deferencing before NU...
CVE-2024-26647MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix late derefrence 'dsc' check in...
CVE-2024-26646MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: thermal: intel: hfi: Add syscore callbacks for syst...
CVE-2024-1313MEDIUM6.5It is possible for a user in a different organization from the owner of a snapshot to bypass authorization and delete a ...
CVE-2024-2894HIGH8.8A vulnerability was found in Tenda AC7 15.03.06.44. It has been classified as critical. This affects the function formSe...
CVE-2024-2893HIGH8.8A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. Affected by this issue is the function fo...
CVE-2024-29735MEDIUM5.3Improper Preservation of Permissions vulnerability in Apache Airflow.This issue affects Apache Airflow from 2.8.2 throug...
CVE-2024-2929HIGH7.8 A memory corruption vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious ...
CVE-2024-2921CRITICAL9.8Improper access control in PAM vault permissions in Devolutions Server 2024.1.10.0 and earlier allows an authenticated u...
CVE-2024-2915HIGH8.8Improper access control in PAM JIT elevation in Devolutions Server 2024.1.6 and earlier allows an attacker with access t...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now