2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-49534 | MEDIUM | 5.5 | 0.5% | Dec 10, 2024 | Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and earlier are affected by... |
| CVE-2024-49533 | MEDIUM | 5.5 | 0.5% | Dec 10, 2024 | Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and earlier are affected by... |
| CVE-2024-49532 | MEDIUM | 5.5 | 0.5% | Dec 10, 2024 | Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and earlier are affected by... |
| CVE-2024-49531 | MEDIUM | 5.5 | 0.3% | Dec 10, 2024 | Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and earlier are affected by... |
| CVE-2024-8540 | MEDIUM | 5.5 | 0.2% | Dec 10, 2024 | Insecure permissions in Ivanti Sentry before versions 9.20.2 and 10.0.2 or 10.1.0 allow a local authenticated attacker t... |
| CVE-2024-50931 | MEDIUM | 4.6 | 0.2% | Dec 10, 2024 | Silicon Labs Z-Wave Series 500 v6.84.0 was discovered to contain insecure permissions. |
| CVE-2024-50929 | MEDIUM | 6.2 | 0.2% | Dec 10, 2024 | Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to arbitrarily change th... |
| CVE-2024-50928 | MEDIUM | 6.5 | 0.3% | Dec 10, 2024 | Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to change the wakeup int... |
| CVE-2024-50924 | MEDIUM | 6.5 | 0.4% | Dec 10, 2024 | Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to cause disrupt communi... |
| CVE-2024-50921 | MEDIUM | 6.5 | 0.4% | Dec 10, 2024 | Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to cause a Denial of Ser... |
| CVE-2024-53245 | MEDIUM | 4.3 | 0.3% | Dec 10, 2024 | In Splunk Enterprise versions below 9.3.0, 9.2.4, and 9.1.7 and Splunk Cloud Platform versions below 9.1.2312.206, a low... |
| CVE-2024-53244 | MEDIUM | 5.7 | 0.5% | Dec 10, 2024 | In Splunk Enterprise versions below 9.3.2, 9.2.4, and 9.1.7 and Splunk Cloud Platform versions below 9.2.2406.107, 9.2.2... |
| CVE-2024-53243 | MEDIUM | 4.3 | 0.3% | Dec 10, 2024 | In Splunk Enterprise versions below 9.3.2, 9.2.4, and 9.1.7 and versions below 3.2.462, 3.7.18, and 3.8.5 of the Splunk ... |
| CVE-2024-55546 | MEDIUM | 5.4 | 0.3% | Dec 10, 2024 | Missing input validation in the ORing IAP-420 web-interface allows stored Cross-Site Scripting (XSS).This issue affects ... |
| CVE-2024-55545 | MEDIUM | 6.1 | 0.3% | Dec 10, 2024 | Missing input validation in the ORing IAP-420 web-interface allows Cross-Site Scripting (XSS).This issue affects IAP-420... |
| CVE-2024-46657 | MEDIUM | 5.5 | 0.3% | Dec 10, 2024 | Artifex Software mupdf v1.24.9 was discovered to contain a segmentation fault via the component /tools/pdfextract.c. Thi... |
| CVE-2024-12323 | MEDIUM | 6.1 | 0.3% | Dec 10, 2024 | The turboSMTP plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘page’ parameter in all versi... |
| CVE-2024-12236 | MEDIUM | 5.5 | 0.1% | Dec 10, 2024 | A security issue exists in Vertex Gemini API for customers using VPC-SC. By utilizing a custom crafted file URI for imag... |
| CVE-2024-54005 | MEDIUM | 5.9 | 0.2% | Dec 10, 2024 | A vulnerability has been identified in COMOS V10.3 (All versions < V10.3.3.5.8), COMOS V10.4.0 (All versions), COMOS V10... |
| CVE-2024-53832 | MEDIUM | 5.1 | 0.3% | Dec 10, 2024 | A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V05.30). The affected dev... |
| CVE-2024-49704 | MEDIUM | 5.7 | 0.2% | Dec 10, 2024 | A vulnerability has been identified in COMOS V10.3 (All versions < V10.3.3.5.8), COMOS V10.4.0 (All versions), COMOS V10... |
| CVE-2024-47117 | MEDIUM | 5.4 | 0.2% | Dec 10, 2024 | IBM Carbon Design System (Carbon Charts 0.4.0 through 1.13.16) is vulnerable to cross-site scripting. This vulnerability... |
| CVE-2024-11868 | MEDIUM | 5.3 | 1.1% | Dec 10, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versio... |
| CVE-2024-11928 | MEDIUM | 6.4 | 0.3% | Dec 10, 2024 | The iChart – Easy Charts and Graphs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘width’ pa... |
| CVE-2024-11106 | MEDIUM | 5.3 | 0.4% | Dec 10, 2024 | The Simple Restrict plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now