2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-38409 | HIGH | 7.8 | 0.1% | Nov 4, 2024 | Memory corruption while station LL statistic handling. |
| CVE-2024-38407 | HIGH | 7 | 0.1% | Nov 4, 2024 | Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver. |
| CVE-2024-38406 | HIGH | 7 | 0.1% | Nov 4, 2024 | Memory corruption while handling IOCTL calls in JPEG Encoder driver. |
| CVE-2024-33033 | HIGH | 7.8 | 0.1% | Nov 4, 2024 | Memory corruption while processing IOCTL calls to unmap the buffers. |
| CVE-2024-10760 | HIGH | 7.5 | 0.4% | Nov 4, 2024 | A vulnerability was found in code-projects University Event Management System 1.0 and classified as critical. This issue... |
| CVE-2024-10759 | HIGH | 8.8 | 0.5% | Nov 4, 2024 | A vulnerability has been found in itsourcecode Farm Management System 1.0 and classified as critical. This vulnerability... |
| CVE-2024-20104 | HIGH | 8.4 | 0.1% | Nov 4, 2024 | In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pri... |
| CVE-2024-10749 | HIGH | 8.1 | 0.5% | Nov 4, 2024 | A vulnerability, which was classified as critical, was found in ThinkAdmin up to 6.1.67. Affected is the function script... |
| CVE-2024-10742 | HIGH | 7.5 | 0.4% | Nov 3, 2024 | A vulnerability was found in code-projects Wazifa System 1.0 and classified as critical. This issue affects some unknown... |
| CVE-2024-51774 | HIGH | 8.1 | 3.3% | Nov 2, 2024 | qBittorrent before 5.0.1 proceeds with use of https URLs even after certificate validation errors. |
| CVE-2024-9191 | HIGH | 7.8 | 0.2% | Nov 1, 2024 | The Okta Device Access features, provided by the Okta Verify agent for Windows, provides access to the OktaDeviceAccessP... |
| CVE-2024-48353 | HIGH | 7.5 | 0.4% | Nov 1, 2024 | Yealink Meeting Server before V26.0.0.67 allows attackers to obtain static key information from a front-end JS file and ... |
| CVE-2024-51492 | HIGH | 8.8 | 0.5% | Nov 1, 2024 | Zusam is a free and open-source way to self-host private forums. Prior to version 0.5.6, specially crafted SVG files upl... |
| CVE-2024-51248 | HIGH | 8.8 | 0.8% | Nov 1, 2024 | In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman... |
| CVE-2024-51247 | HIGH | 8.8 | 0.8% | Nov 1, 2024 | In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman... |
| CVE-2024-51245 | HIGH | 8.8 | 0.8% | Nov 1, 2024 | In DrayTek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman... |
| CVE-2024-51244 | HIGH | 8.8 | 0.8% | Nov 1, 2024 | In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman... |
| CVE-2024-49770 | HIGH | 7.7 | 0.7% | Nov 1, 2024 | `oak` is a middleware framework for Deno's native HTTP server, Deno Deploy, Node.js 16.5 and later, Cloudflare Workers a... |
| CVE-2024-48352 | HIGH | 7.5 | 0.5% | Nov 1, 2024 | Yealink Meeting Server before V26.0.0.67 is vulnerable to sensitive data exposure in the server response via sending HTT... |
| CVE-2024-48217 | HIGH | 8.8 | 0.7% | Nov 1, 2024 | An Insecure Direct Object Reference (IDOR) in the dashboard of SiSMART v7.4.0 allows attackers to execute a horizontal-p... |
| CVE-2024-41744 | HIGH | 8.8 | 0.2% | Nov 1, 2024 | IBM CICS TX Standard 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious... |
| CVE-2024-40490 | HIGH | 7.5 | 0.5% | Nov 1, 2024 | An issue in Sourcebans++ before v.1.8.0 allows a remote attacker to obtain sensitive information via a crafted XAJAX cal... |
| CVE-2024-22733 | HIGH | 7.5 | 0.6% | Nov 1, 2024 | TP Link MR200 V4 Firmware version 210201 was discovered to contain a null-pointer-dereference in the web administration ... |
| CVE-2024-10662 | HIGH | 8.8 | 1.2% | Nov 1, 2024 | A vulnerability was found in Tenda AC15 15.03.05.19 and classified as critical. This issue affects the function formSetD... |
| CVE-2024-10661 | HIGH | 8.8 | 1.1% | Nov 1, 2024 | A vulnerability has been found in Tenda AC15 15.03.05.19 and classified as critical. This vulnerability affects the func... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now