2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-52981HIGH7.5An issue was discovered in Elasticsearch, where a large recursion using the Well-KnownText formatted string with nested ...
CVE-2024-54024HIGH7.2An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in ...
CVE-2024-50565HIGH7.5A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in Fortinet FortiOS versio...
CVE-2024-46671HIGH7.2An Incorrect User Management vulnerability [CWE-286] in FortiWeb version 7.6.2 and below, version 7.4.6 and below, versi...
CVE-2024-26013HIGH7.5A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in Fortinet FortiOS versio...
CVE-2024-41793HIGH7.5A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41792HIGH7.5A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41790HIGH7.2A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41789HIGH7.2A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41788HIGH7.2A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-45557HIGH7.8Memory corruption can occur when TME processes addresses from TZ and MPSS requests without proper validation.
CVE-2024-45552HIGH8.2Information disclosure may occur during a video call if a device resets due to a non-conforming RTCP packet that doesn`t...
CVE-2024-45549HIGH7.7Information disclosure while creating MQ channels.
CVE-2024-43067HIGH7.8Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shar...
CVE-2024-43066HIGH7.8Memory corruption while handling file descriptor during listener registration/de-registration.
CVE-2024-43065HIGH7.1Cryptographic issues while generating an asymmetric key pair for RKP use cases.
CVE-2024-43058HIGH7.8Memory corruption while processing IOCTL calls.
CVE-2024-33058HIGH7.5Memory corruption while assigning memory from the source DDR memory(HLOS) to ADSP.
CVE-2024-11859HIGH8.4DLL Search Order Hijacking vulnerability potentially allowed an attacker with administrator privileges to load a malicio...
CVE-2024-11071HIGH8.8Permissive Cross-domain Policy with Untrusted Domains vulnerability in local API server of DestinyECM solution(versions ...
CVE-2024-58116HIGH7.5Buffer overflow vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation of this v...
CVE-2024-58115HIGH7.5Buffer overflow vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation of this v...
CVE-2024-58113HIGH7.5Vulnerability of improper resource management in the memory management module Impact: Successful exploitation of this vu...
CVE-2024-58112HIGH7.5Exception capture failure vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation...
CVE-2024-58111HIGH7.5Exception capture failure vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now