2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-23921 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-23920 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-24731 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Silicon Labs... |
| CVE-2024-23973 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Silicon Labs... |
| CVE-2024-23971 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-23970 | MEDIUM | 6.5 | 0.2% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to compromise transport security on affected installations of Charg... |
| CVE-2024-23969 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-23968 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-23963 | HIGH | 8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Alpine Halo9... |
| CVE-2024-23962 | MEDIUM | 5.3 | 0.7% | Jan 31, 2025 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Alpine Halo9 d... |
| CVE-2024-23937 | MEDIUM | 4.3 | 0.4% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sili... |
| CVE-2024-23930 | MEDIUM | 4.3 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to create a denial-of-service condition on affected installations o... |
| CVE-2024-23928 | MEDIUM | 6.5 | 0.2% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected i... |
| CVE-2024-1211 | HIGH | 8.8 | 0.3% | Jan 31, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.6 prior to 16.9.7, starting from 16... |
| CVE-2024-11611 | HIGH | 7.8 | 0.3% | Jan 30, 2025 | AutomationDirect C-More EA9 EAP9 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability ... |
| CVE-2024-11610 | HIGH | 7.8 | 0.3% | Jan 30, 2025 | AutomationDirect C-More EA9 EAP9 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability ... |
| CVE-2024-11609 | HIGH | 7.8 | 0.3% | Jan 30, 2025 | AutomationDirect C-More EA9 EAP9 File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vuln... |
| CVE-2024-10604 | MEDIUM | 5.3 | 0.2% | Jan 30, 2025 | Vulnerabilities in the algorithms used by Fuchsia to populate network protocol header fields, specifically the TCP ISN, ... |
| CVE-2024-10603 | MEDIUM | 5.3 | 0.3% | Jan 30, 2025 | Weaknesses in the generation of TCP/UDP source ports and some other header values in Google's gVisor allowed them to be ... |
| CVE-2024-10026 | MEDIUM | 5.3 | 0.2% | Jan 30, 2025 | A weak hashing algorithm and small sizes of seeds/secrets in Google's gVisor allowed for a remote attacker to calculate ... |
| CVE-2024-44142 | HIGH | 7.8 | 0.3% | Jan 30, 2025 | The issue was addressed with improved bounds checks. This issue is fixed in GarageBand 10.4.12. Processing a maliciously... |
| CVE-2024-12248 | CRITICAL | 9.8 | 1.3% | Jan 30, 2025 | Contec Health CMS8000 Patient Monitor is vulnerable to an out-of-bounds write, which could allow an attacker to send spe... |
| CVE-2024-2658 | HIGH | 8.5 | 0.4% | Jan 30, 2025 | A misconfiguration in lmadmin.exe of FlexNet Publisher versions prior to 2024 R1 (11.19.6.0) allows the OpenSSL configur... |
| CVE-2024-55417 | MEDIUM | 4.3 | 12.3% | Jan 30, 2025 | DevDojo Voyager through version 1.8.0 is vulnerable to bypassing the file type verification when an authenticated user u... |
| CVE-2024-55416 | LOW | 3.5 | 24.1% | Jan 30, 2025 | DevDojo Voyager through version 1.8.0 is vulnerable to reflected XSS via /admin/compass. By manipulating an authenticate... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now