2024 CVE Vulnerabilities

39,217 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-2105MEDIUM6.5An unauthorised attacker within bluetooth range may use an improper validation during the BLE connection request to dead...
CVE-2024-2104HIGH8.8Due to improper BLE security configurations on the device's GATT server, an adjacent unauthenticated attacker can read a...
CVE-2024-47570MEDIUM6.6An insertion of sensitive information into log file vulnerability [CWE-532] in FortiOS 7.4.0 through 7.4.3, 7.2.0 throug...
CVE-2024-56840HIGH7.5A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2024-56839HIGH8.6A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2024-56838HIGH8.6A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2024-56837HIGH8.6A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2024-56836HIGH8.8A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2024-56835HIGH8.8A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2024-56464LOW2.7IBM QRadar SIEM 7.5 - 7.5.0 UP14 IF01 is affected by an information disclosure vulnerability involving exposure of direc...
CVE-2024-38798MEDIUM5.8EDK2 contains a vulnerability in BIOS where an attacker may cause “Exposure of Sensitive Information to an Unauthorized ...
CVE-2024-9183MEDIUM6.4GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.4 prior to 18.4.5, 18.5 prior to 18.5.3, a...
CVE-2024-58278HIGH8.5perl2exe <= V30.10C contains an arbitrary code execution vulnerability that allows local authenticated attackers to exec...
CVE-2024-58277HIGH8.7R Radio Network FM Transmitter 1.07 allows unauthenticated attackers to access the admin user's password through the sys...
CVE-2024-58276HIGH8.7Obi08/Enrollment System 1.0 contains a SQL injection vulnerability in the keyword parameter of /get_subject.php that all...
CVE-2024-58275HIGH8.7Easywall 0.3.1 allows authenticated remote command execution via a command injection vulnerability in the /ports-save en...
CVE-2024-5401HIGH8.8Improper control of dynamically-managed code resources vulnerability in WebAPI component in Synology DiskStation Manager...
CVE-2024-45539HIGH7.5Out-of-bounds write vulnerability in cgi components in Synology DiskStation Manager (DSM) before 7.2.1-69057-2 and 7.2.2...
CVE-2024-45538CRITICAL9.6Cross-Site Request Forgery (CSRF) vulnerability in WebAPI Framework in Synology DiskStation Manager (DSM) before 7.2.1-6...
CVE-2024-3884HIGH7.5A flaw was found in Undertow that can cause remote denial of service attacks. When the server uses the FormEncodedDataDe...
CVE-2024-32643HIGH7.5Masa CMS is an open source Enterprise Content Management platform. Prior to 7.2.8, 7.3.13, and 7.4.6, if the URL to the ...
CVE-2024-32642HIGH8.8Masa CMS is an open source Enterprise Content Management platform. Prior to 7.2.8, 7.3.13, and 7.4.6, there is vulnerabl...
CVE-2024-32641CRITICAL9.8Masa CMS is an open source Enterprise Content Management platform. Masa CMS versions prior to 7.2.8, 7.3.13, and 7.4.6 a...
CVE-2024-45675HIGH7.8IBM Informix Dynamic Server 14.10 could allow a local user on the system to log into the Informix server as administrato...
CVE-2024-51999Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error and is not a ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now