2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-58366 | HIGH | 8.8 | 0.3% | Jul 18, 2026 | SurrealDB before 1.1.1 contains a format string vulnerability in the rquickjs Exception::throw_type function when script... |
| CVE-2024-58365 | HIGH | 7.1 | 0.2% | Jul 18, 2026 | SurrealDB versions before 1.2.0 contain an uncaught exception vulnerability in the query executor when processing calls ... |
| CVE-2024-58364 | HIGH | 7.1 | 0.2% | Jul 18, 2026 | SurrealDB versions before 1.2.1 contain an uncaught exception handling vulnerability in span rendering when parsing quer... |
| CVE-2024-58362 | HIGH | 8.8 | 0.4% | Jul 18, 2026 | SurrealDB before 1.5.5 (and 2.0.0-beta before 2.0.0-beta.3) accepts an arbitrary object in the signin and signup operati... |
| CVE-2024-58361 | HIGH | 7.1 | 0.2% | Jul 18, 2026 | SurrealDB versions before 2.0.4 contain an uncaught exception handling vulnerability in the parser error rendering code ... |
| CVE-2024-58359 | HIGH | 7.1 | 0.3% | Jul 18, 2026 | SurrealDB versions before 2.1.0 contain a denial of service vulnerability in the sorting mechanism when using ORDER BY r... |
| CVE-2024-58357 | HIGH | 7.1 | 0.3% | Jul 18, 2026 | SurrealDB versions before 2.1.0 contain an uncaught exception vulnerability in the rand::time() function that panics whe... |
| CVE-2024-34268 | HIGH | 7.1 | 0.2% | Jul 16, 2026 | EQ-3 Eqiva CC-RT-BLE Bluetooth Smart Radiator Thermostat Firmware up to the latest version 1.46 was discovered to allow ... |
| CVE-2024-32386 | HIGH | 7.3 | 0.4% | Jul 16, 2026 | Directory traversal vulnerability in Kerlink Kerlink Wirnet iStation 868 KerOS v.4.3.3_20200803132042 allows a remote at... |
| CVE-2024-7708 | HIGH | 7.5 | 0.4% | Jul 14, 2026 | For requests that have a body, but reading the body may end up in reading 0 bytes, there is a buffer leak. This is parti... |
| CVE-2024-6228 | HIGH | 7.5 | 0.3% | Jul 6, 2026 | The Notifications for Forms & WordPress Actions WordPress plugin before 2.6 does not validate a user-supplied value befo... |
| CVE-2024-58352 | HIGH | 7.5 | 0.9% | Jul 2, 2026 | Landray OA contains an unauthenticated HQL injection vulnerability that allows unauthenticated attackers to query arbitr... |
| CVE-2024-23581 | HIGH | 7.8 | 0.1% | Jun 26, 2026 | The HCL Traveler for Microsoft Outlook libraries are being flagged as potentially malicious software or an unrecognized ... |
| CVE-2024-49269 | HIGH | 7.1 | 0.2% | Jun 17, 2026 | Unauthenticated Cross Site Scripting (XSS) in my flatonica <= 0.0.8 versions. |
| CVE-2024-32949 | HIGH | 8.3 | 0.3% | Jun 17, 2026 | Missing Authorization vulnerability in Prince Integrate Google Drive allows Exploiting Incorrectly Configured Access Con... |
| CVE-2024-32729 | HIGH | 7.5 | 0.4% | Jun 17, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in QuantumCloud Conversatio... |
| CVE-2024-39575 | HIGH | 7.4 | 0.1% | Jun 16, 2026 | update_disk_psu_baseline.sh requires password in plain text |
| CVE-2024-38487 | HIGH | 7 | 0.1% | Jun 16, 2026 | api-gateway container running with root privilege would allow an attacker to escape the container and access host system... |
| CVE-2024-24909 | HIGH | 8.8 | 0.4% | Jun 16, 2026 | Dell OpenManage Integration with Microsoft Windows Admin Center contains a Remote Code Execution vulnerability in the ga... |
| CVE-2024-22447 | HIGH | 7.8 | 0.1% | Jun 16, 2026 | Dell Peripheral Manager, versions prior to 1.7.3, contain an uncontrolled search path element vulnerability. An attacker... |
| CVE-2024-14036 | HIGH | 8.7 | 0.3% | Jun 2, 2026 | Dräger Core 1.0.5 and Dräger M540 Converter Service 1.0.9 contain a denial of service vulnerability that allows network-... |
| CVE-2024-52011 | HIGH | 8.3 | 0.5% | Jun 1, 2026 | launch-editor allows users to open files with line numbers in editor from Node.js. Prior to version 2.9.0, due to the in... |
| CVE-2024-40646 | HIGH | 8.6 | 0.4% | Jun 1, 2026 | Vertex is a management tool for PT (Private Tracker) users to manage streaming and watching videos. Versions prior to co... |
| CVE-2024-56462 | HIGH | 8.8 | 0.5% | May 27, 2026 | IBM QRadar 7.5.0 through 7.5.0 UP15 Interim Fix 002 could allow a privileged user to upload a malicious backup archive t... |
| CVE-2024-36334 | HIGH | 7 | 0.1% | May 15, 2026 | Improper verification of cryptographic signature in the Radeon RGB tool could allow a malicious file placed in the insta... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now