2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2024-6694LOW2.7The WP Mail SMTP plugin for WordPress is vulnerable to information exposure in all versions up to, and including, 4.0.1....
CVE-2024-38806LOW3.9Failure to properly synchronize user's permissions in UAA in Cloud Foundry Foundation v40.17.0 https://github.com/cloud...
CVE-2024-40640LOW2.9vodozemac is an open source implementation of Olm and Megolm in pure Rust. Versions before 0.7.0 of vodozemac use a non...
CVE-2024-38870LOW3.5Zohocorp ManageEngine OpManager, OpManager Plus, OpManager MSP and OpManager Enterprise Edition versions before 128104, ...
CVE-2024-30471LOW3.7Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache StreamPipes in user self-registration. This al...
CVE-2024-6807LOW3.4A vulnerability was found in SourceCodester Student Study Center Desk Management System 1.0 and classified as problemati...
CVE-2024-21174LOW3.1Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 19.3-19.23, ...
CVE-2024-21164LOW2.5Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a...
CVE-2024-21151LOW3.3Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is a...
CVE-2024-21144LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Concurrency...
CVE-2024-21138LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE...
CVE-2024-21131LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE...
CVE-2024-21123LOW2.3Vulnerability in the Oracle Database Core component of Oracle Database Server. Supported versions that are affected are...
CVE-2024-40455LOW2.7An arbitrary file deletion vulnerability in ThinkSAAS v3.7 allows attackers to delete arbitrary files via a crafted requ...
CVE-2024-6780LOW3.3Improper permission control in the mobile application (com.android.server.telecom) may lead to user information security...
CVE-2024-40632LOW3.7Linkerd is an open source, ultralight, security-first service mesh for Kubernetes. In affected versions when the applica...
CVE-2024-39919LOW3.1@jmondi/url-to-png is an open source URL to PNG utility featuring parallel rendering using Playwright for screenshots an...
CVE-2024-41007LOW3.3In the Linux kernel, the following vulnerability has been resolved: tcp: avoid too many retransmit packets If a TCP so...
CVE-2024-5470LOW2.7An issue was discovered in GitLab CE/EE affecting all versions starting from 17.0 prior to 17.0.4 and from 17.1 prior to...
CVE-2024-5257LOW2.7An issue was discovered in GitLab CE/EE affecting all versions starting from 17.0 prior to 17.0.4 and from 17.1 prior to...
CVE-2024-2880LOW2.7An issue was discovered in GitLab CE/EE affecting all versions starting from 16.5 prior to 16.11.6, starting from 17.0 p...
CVE-2024-23194LOW3.3Improper output Neutralization for Logs (CWE-117) in the Command Centre API Diagnostics Endpoint could allow an attacker...
CVE-2024-39886LOW3.7TONE store App version 3.4.2 and earlier contains an issue with unprotected primary channel. Since TONE store App commun...
CVE-2024-36452LOW3.1Cross-site request forgery vulnerability exists in ajaxterm module of Webmin versions prior to 2.003. If this vulnerabil...
CVE-2024-22018LOW2.9A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the --allow-fs...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now