2024 CVE Vulnerabilities

39,152 CVEs published in 2024.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2024-47869LOW2.3Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves a **timing attack** ...
CVE-2024-47867LOW2.1Gradio is an open-source Python package designed for quick prototyping. This vulnerability is a **lack of integrity chec...
CVE-2024-47168LOW2.3Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves data exposure due to...
CVE-2024-47166LOW2.3Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves a **one-level read p...
CVE-2024-47164LOW2.3Gradio is an open-source Python package designed for quick prototyping. This vulnerability relates to the **bypass of di...
CVE-2024-45149LOW2.7Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Access Control v...
CVE-2024-45135LOW2.7Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Access Control v...
CVE-2024-45134LOW2.7Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Information Exposure vuln...
CVE-2024-45133LOW2.7Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Information Exposure vuln...
CVE-2024-45120LOW3.1Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by a Time-of-check Time-of-use ...
CVE-2024-7038LOW2.7An information disclosure vulnerability exists in open-webui version 0.3.8. The vulnerability is related to the embeddin...
CVE-2024-47813LOW2.9Wasmtime is an open source runtime for WebAssembly. Under certain concurrent event orderings, a `wasmtime::Engine`'s int...
CVE-2024-27457LOW1.8Improper check for unusual or exceptional conditions in Intel(R) TDX Module firmware before version 1.5.06 may allow a p...
CVE-2024-8518LOW3.3CWE-20: Improper Input Validation vulnerability exists that could cause a crash of the Zelio Soft 2 application when a s...
CVE-2024-34672LOW3.3Improper input validation in SamsungVideoPlayer prior to versions 7.3.29.1 in Android 12, 7.3.36.1 in Android 13, and 7....
CVE-2024-34664LOW2.4Improper check for exception conditions in Knox Guard prior to SMR Oct-2024 Release 1 allows physical attackers to bypas...
CVE-2024-9026LOW3.3In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, when using PHP-FPM SAPI and it is configu...
CVE-2024-41511LOW3.9A Path Traversal (Local File Inclusion) vulnerability in "BinaryFileRedirector.ashx" in CADClick v1.11.0 and before allo...
CVE-2024-0125LOW3.3NVIDIA CUDA Toolkit for Windows and Linux contains a vulnerability in the nvdisam command line tool, where a user can ca...
CVE-2024-0124LOW3.3NVIDIA CUDA Toolkit for Windows and Linux contains a vulnerability in the nvdisam command line tool, where a user can ca...
CVE-2024-0123LOW3.3NVIDIA CUDA toolkit for Windows and Linux contains a vulnerability in the nvdisasm command line tool where an attacker m...
CVE-2024-24122LOW3.3A remote code execution vulnerability in the project management of Wanxing Technology's Yitu project which allows an att...
CVE-2024-47612LOW3.5DataDump is a MediaWiki extension that provides dumps of wikis. Several interface messages are unescaped (more specifica...
CVE-2024-47526LOW2.4LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Self Cross-Site Scripting (Self-XSS) vulne...
CVE-2024-28808LOW2.7An issue was discovered in Infinera hiT 7300 5.60.50. Hidden functionality in the web interface allows a remote authenti...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now