2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-49548 | MEDIUM | 5.5 | 0.3% | Dec 10, 2024 | InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by an out-of-bounds read vulnerability that could le... |
| CVE-2024-49547 | MEDIUM | 5.5 | 0.3% | Dec 10, 2024 | InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by an out-of-bounds read vulnerability that could le... |
| CVE-2024-49546 | MEDIUM | 5.5 | 0.3% | Dec 10, 2024 | InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by an out-of-bounds read vulnerability that could le... |
| CVE-2024-49541 | MEDIUM | 5.5 | 0.3% | Dec 10, 2024 | Illustrator versions 29.0.0, 28.7.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to d... |
| CVE-2024-53481 | MEDIUM | 6.1 | 0.5% | Dec 10, 2024 | A Cross Site Scripting (XSS) vulnerability in the profile.php of PHPGurukul Beauty Parlour Management System v1.1 allows... |
| CVE-2024-49554 | MEDIUM | 5.5 | 0.3% | Dec 10, 2024 | Media Encoder versions 25.0, 24.6.3 and earlier are affected by a NULL Pointer Dereference vulnerability that could resu... |
| CVE-2024-49535 | MEDIUM | 6.3 | 0.4% | Dec 10, 2024 | Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and earlier are affected by... |
| CVE-2024-49534 | MEDIUM | 5.5 | 0.5% | Dec 10, 2024 | Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and earlier are affected by... |
| CVE-2024-49533 | MEDIUM | 5.5 | 0.5% | Dec 10, 2024 | Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and earlier are affected by... |
| CVE-2024-49532 | MEDIUM | 5.5 | 0.5% | Dec 10, 2024 | Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and earlier are affected by... |
| CVE-2024-49531 | MEDIUM | 5.5 | 0.3% | Dec 10, 2024 | Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and earlier are affected by... |
| CVE-2024-8540 | MEDIUM | 5.5 | 0.2% | Dec 10, 2024 | Insecure permissions in Ivanti Sentry before versions 9.20.2 and 10.0.2 or 10.1.0 allow a local authenticated attacker t... |
| CVE-2024-50931 | MEDIUM | 4.6 | 0.2% | Dec 10, 2024 | Silicon Labs Z-Wave Series 500 v6.84.0 was discovered to contain insecure permissions. |
| CVE-2024-50929 | MEDIUM | 6.2 | 0.2% | Dec 10, 2024 | Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to arbitrarily change th... |
| CVE-2024-50928 | MEDIUM | 6.5 | 0.3% | Dec 10, 2024 | Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to change the wakeup int... |
| CVE-2024-50924 | MEDIUM | 6.5 | 0.4% | Dec 10, 2024 | Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to cause disrupt communi... |
| CVE-2024-50921 | MEDIUM | 6.5 | 0.4% | Dec 10, 2024 | Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to cause a Denial of Ser... |
| CVE-2024-53245 | MEDIUM | 4.3 | 0.3% | Dec 10, 2024 | In Splunk Enterprise versions below 9.3.0, 9.2.4, and 9.1.7 and Splunk Cloud Platform versions below 9.1.2312.206, a low... |
| CVE-2024-53244 | MEDIUM | 5.7 | 0.5% | Dec 10, 2024 | In Splunk Enterprise versions below 9.3.2, 9.2.4, and 9.1.7 and Splunk Cloud Platform versions below 9.2.2406.107, 9.2.2... |
| CVE-2024-53243 | MEDIUM | 4.3 | 0.3% | Dec 10, 2024 | In Splunk Enterprise versions below 9.3.2, 9.2.4, and 9.1.7 and versions below 3.2.462, 3.7.18, and 3.8.5 of the Splunk ... |
| CVE-2024-55546 | MEDIUM | 5.4 | 0.3% | Dec 10, 2024 | Missing input validation in the ORing IAP-420 web-interface allows stored Cross-Site Scripting (XSS).This issue affects ... |
| CVE-2024-55545 | MEDIUM | 6.1 | 0.3% | Dec 10, 2024 | Missing input validation in the ORing IAP-420 web-interface allows Cross-Site Scripting (XSS).This issue affects IAP-420... |
| CVE-2024-46657 | MEDIUM | 5.5 | 0.3% | Dec 10, 2024 | Artifex Software mupdf v1.24.9 was discovered to contain a segmentation fault via the component /tools/pdfextract.c. Thi... |
| CVE-2024-12323 | MEDIUM | 6.1 | 0.3% | Dec 10, 2024 | The turboSMTP plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘page’ parameter in all versi... |
| CVE-2024-12236 | MEDIUM | 5.5 | 0.1% | Dec 10, 2024 | A security issue exists in Vertex Gemini API for customers using VPC-SC. By utilizing a custom crafted file URI for imag... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now