2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-1068HIGH7.2The 404 Solution WordPress plugin before 2.35.8 does not properly sanitise and escape a parameter before using it in a S...
CVE-2024-0561MEDIUM5.4The Ultimate Posts Widget WordPress plugin before 2.3.1 does not validate and escape some of its Widget options before o...
CVE-2024-0559MEDIUM6.5The Enhanced Text Widget WordPress plugin before 1.6.6 does not validate and escape some of its Widget options before ou...
CVE-2024-23717HIGH8.8In access_secure_service_from_temp_bond of btm_sec.cc, there is a possible way to achieve keystroke injection due to imp...
CVE-2024-1696HIGH7.8In Santesoft Sante FFT Imaging versions 1.4.1 and prior once a user opens a malicious DCM file on affected FFT Imaging i...
CVE-2024-0053LOW3.3In getCustomPrinterIcon of PrintManagerService.java, there is a possible way to view other user's images due to a confus...
CVE-2024-0052LOW3.3In multiple functions of healthconnect, there is a possible leakage of exercise route data due to a missing permission c...
CVE-2024-0051HIGH7.8In onQueueFilled of SoftMPEG4.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lea...
CVE-2024-0050HIGH7.8In getConfig of SoftVideoDecoderOMXComponent.cpp, there is a possible out of bounds write due to a missing validation ch...
CVE-2024-0049HIGH7.8In multiple locations, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local e...
CVE-2024-0048HIGH7.8In Session of AccountManagerService.java, there is a possible method to retain foreground service privileges due to inco...
CVE-2024-0047MEDIUM5.5In writeUserLP of UserManagerService.java, device policies are serialized with an incorrect tag due to a logic error in ...
CVE-2024-0046HIGH7.8In installExistingPackageAsUser of InstallPackageHelper.java, there is a possible carrier restriction bypass due to a lo...
CVE-2024-0045MEDIUM6.5In smp_proc_sec_req of smp_act.cc, there is a possible out of bounds read due to improper input validation. This could l...
CVE-2024-0044MEDIUM6.7In createSessionInternal of PackageInstallerService.java, there is a possible run-as any app due to improper input valid...
CVE-2024-0039CRITICAL9.8In attp_build_value_cmd of att_protocol.cc, there is a possible out of bounds write due to a missing bounds check. This ...
CVE-2024-23612HIGH7.8An improper error handling vulnerability in LabVIEW may result in remote code execution. Successful exploitation requir...
CVE-2024-23611HIGH7.8An out of bounds write due to a missing bounds check in LabVIEW may result in remote code execution. Successful exploita...
CVE-2024-23610HIGH7.8An out of bounds write due to a missing bounds check in LabVIEW may result in remote code execution. Successful exploita...
CVE-2024-23609HIGH7.8An improper error handling vulnerability in LabVIEW may result in remote code execution. Successful exploitation requir...
CVE-2024-23608HIGH7.8An out of bounds write due to a missing bounds check in LabVIEW may result in remote code execution. Successful exploit...
CVE-2024-0670HIGH7.8Privilege escalation in windows agent plugin in Checkmk before 2.2.0p23, 2.1.0p40 and 2.0.0 (EOL) allows local user to e...
CVE-2024-1441MEDIUM5.5An off-by-one error flaw was found in the udevListInterfacesByStatus() function in libvirt when the number of interfaces...
CVE-2024-2370Rejected reason: DO NOT USE THIS CVE ID NUMBER. Consult IDs: CVE-2018-5341. Reason: This CVE Record is a duplicate of CV...
CVE-2024-1373Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-46209. Reason: This candidate is a ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now