2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2024-4278LOW2.7An information disclosure issue has been discovered in GitLab EE affecting all versions starting from 16.5 prior to 17.2...
CVE-2024-0133LOW3.4NVIDIA Container Toolkit 1.16.1 or earlier contains a vulnerability in the default mode of operation allowing a speciall...
CVE-2024-8350LOW2.7The Uncanny Groups for LearnDash plugin for WordPress is vulnerable to user group add due to a missing capability check ...
CVE-2024-45599LOW3.8Cursor is an artificial intelligence code editor. Prior to version 0.41.0, if a user on macOS has granted Cursor access ...
CVE-2024-8263LOW2.7An improper privilege management vulnerability allowed arbitrary workflows to be committed using an improperly scoped PA...
CVE-2024-45453LOW3.7Authentication Bypass by Spoofing vulnerability in Peter Hardy-vanDoorn Maintenance Redirect jf3-maintenance-mode.This i...
CVE-2024-8612LOW3.8A flaw was found in QEMU, in the virtio-scsi, virtio-blk, and virtio-crypto devices. The size for virtqueue_push as set ...
CVE-2024-46794LOW3.3In the Linux kernel, the following vulnerability has been resolved: x86/tdx: Fix data leak in mmio_read() The mmio_rea...
CVE-2024-46792LOW3.3In the Linux kernel, the following vulnerability has been resolved: riscv: misaligned: Restrict user access to kernel m...
CVE-2024-44180LOW2.4The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18. An attacker with physical acc...
CVE-2024-44139LOW2.4The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18. An attacker with physical acc...
CVE-2024-40838LOW3.3A privacy issue was addressed by moving sensitive data to a protected location. This issue is fixed in macOS Sequoia 15....
CVE-2024-40830LOW3.3This issue was addressed with improved data protection. This issue is fixed in iOS 18 and iPadOS 18. An app may be able ...
CVE-2024-40791LOW3.3A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 17.7 and ...
CVE-2024-36066LOW3.1The CMP CLI client in KeyFactor EJBCA before 8.3.1 has only 6 octets of salt, and is thus not compliant with the securit...
CVE-2024-6446LOW3.5An issue has been discovered in GitLab affecting all versions starting from 17.1 to 17.1.7, 17.2 prior to 17.2.5 and 17....
CVE-2024-44575LOW3.7RELY-PCIe v22.2.1 to v23.1.0 does not set the Secure attribute for sensitive cookies in HTTPS sessions, which could caus...
CVE-2024-1656LOW2.6Affected versions of Octopus Server had a weak content security policy.
CVE-2024-45323LOW2.7An improper access control vulnerability [CWE-284] in FortiEDR Manager API 6.2.0 through 6.2.2, 6.0 all versions may all...
CVE-2024-36511LOW3.7An improperly implemented security check for standard vulnerability [CWE-358] in FortiADC Web Application Firewall (WAF)...
CVE-2024-8443LOW2.9A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card...
CVE-2024-45284LOW2.4An authenticated attacker with high privilege can use functions of SLCM transactions to which access should be restricte...
CVE-2024-41728LOW2.7Due to missing authorization check, SAP NetWeaver Application Server for ABAP and ABAP Platform allows an attacker logge...
CVE-2024-44114LOW2.7SAP NetWeaver Application Server for ABAP and ABAP Platform allow users with high privileges to execute a program that r...
CVE-2024-8042LOW3.1Rapid7 Insight Platform versions between November 2019 and August 14, 2024 suffer from missing authorization issues wher...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now