2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-36137 | LOW | 3.3 | 0.4% | Sep 7, 2024 | A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the --allow-fs... |
| CVE-2024-32771 | LOW | 2.4 | 0.2% | Sep 6, 2024 | An improper restriction of excessive authentication attempts vulnerability has been reported to affect several QNAP oper... |
| CVE-2024-6792 | LOW | 3.5 | 0.4% | Sep 6, 2024 | The WP ULike WordPress plugin before 4.7.2.1 does not properly sanitize user display names when rendering on a public p... |
| CVE-2024-34652 | LOW | 3.3 | 0.1% | Sep 4, 2024 | Incorrect authorization in kperfmon prior to SMR Sep-2024 Release 1 allows local attackers to access information related... |
| CVE-2024-34650 | LOW | 3.3 | 0.1% | Sep 4, 2024 | Incorrect authorization in CocktailbarService prior to SMR Sep-2024 Release 1 allows local attackers to access privilege... |
| CVE-2024-34649 | LOW | 2.4 | 0.2% | Sep 4, 2024 | Improper access control in new Dex Mode in multitasking framework prior to SMR Sep-2024 Release 1 allows physical attack... |
| CVE-2024-34641 | LOW | 3.3 | 0.1% | Sep 4, 2024 | Improper Export of Android Application Components in FeliCaTest prior to SMR Sep-2024 Release 1 allows local attackers t... |
| CVE-2024-34640 | LOW | 3.3 | 0.1% | Sep 4, 2024 | Improper access control vulnerability in BGProtectManager prior to SMR Sep-2024 Release 1 allows local attackers to bypa... |
| CVE-2024-45620 | LOW | 3.9 | 0.3% | Sep 3, 2024 | A vulnerability was found in the pkcs15-init tool in OpenSC. An attacker could use a crafted USB Device or Smart Card, w... |
| CVE-2024-45618 | LOW | 3.9 | 0.3% | Sep 3, 2024 | A vulnerability was found in pkcs15-init in OpenSC. An attacker could use a crafted USB Device or Smart Card, which woul... |
| CVE-2024-45617 | LOW | 3.9 | 0.3% | Sep 3, 2024 | A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted ... |
| CVE-2024-45616 | LOW | 3.9 | 0.4% | Sep 3, 2024 | A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted ... |
| CVE-2024-45615 | LOW | 3.9 | 0.4% | Sep 3, 2024 | A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. The problem is missing initial... |
| CVE-2024-45310 | LOW | 3.6 | 0.3% | Sep 3, 2024 | runc is a CLI tool for spawning and running containers according to the OCI specification. runc 1.1.13 and earlier, as w... |
| CVE-2024-45305 | LOW | 2.5 | 0.2% | Sep 2, 2024 | gix-path is a crate of the gitoxide project dealing with git paths and their conversions. `gix-path` executes `git` to f... |
| CVE-2024-0109 | LOW | 3.3 | 0.2% | Aug 31, 2024 | NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` where a user may cause a crash by passing in a malfo... |
| CVE-2024-44918 | LOW | 3.5 | 0.3% | Aug 30, 2024 | A cross-site scripting (XSS) vulnerability in the component admin_datarelate.php of SeaCMS v12.9 allows attackers to exe... |
| CVE-2024-39300 | LOW | 3.7 | 0.5% | Aug 30, 2024 | Missing authentication vulnerability exists in Telnet function of WAB-I1750-PS v1.5.10 and earlier. When Telnet function... |
| CVE-2024-2502 | LOW | 2 | 0.2% | Aug 29, 2024 | An application can be configured to block boot attempts after consecutive tamper resets are detected, which may not occu... |
| CVE-2024-43944 | LOW | 3.7 | 0.4% | Aug 29, 2024 | Authentication Bypass by Spoofing vulnerability in ilyasine Maintenance & Coming Soon Redirect Animation maintenance-com... |
| CVE-2024-43265 | LOW | 3.5 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Analytify.This issue affects Analytify: from n/a through 5.3.1. |
| CVE-2024-42792 | LOW | 3.5 | 0.2% | Aug 26, 2024 | A Cross-Site Request Forgery (CSRF) vulnerability was found in Kashipara Music Management System v1.0 via /music/ajax.ph... |
| CVE-2024-40884 | LOW | 2.7 | 0.4% | Aug 22, 2024 | Mattermost versions 9.5.x <= 9.5.7, 9.10.x <= 9.10.0 fail to properly enforce permissions which allows a team admin user... |
| CVE-2024-43785 | LOW | 2.5 | 0.2% | Aug 22, 2024 | gitoxide An idiomatic, lean, fast & safe pure Rust implementation of Git. gitoxide-core, which provides most underlying ... |
| CVE-2024-32939 | LOW | 3.7 | 0.2% | Aug 22, 2024 | Mattermost versions 9.9.x <= 9.9.1, 9.5.x <= 9.5.7, 9.10.x <= 9.10.0, 9.8.x <= 9.8.2, when shared channels are enabled, ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now