2024 CVE Vulnerabilities

39,152 CVEs published in 2024.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2024-30471LOW3.7Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache StreamPipes in user self-registration. This al...
CVE-2024-6807LOW1.9A vulnerability was found in SourceCodester Student Study Center Desk Management System 1.0 and classified as problemati...
CVE-2024-21174LOW3.1Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 19.3-19.23, ...
CVE-2024-21164LOW2.5Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a...
CVE-2024-21151LOW3.3Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is a...
CVE-2024-21144LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Concurrency...
CVE-2024-21138LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE...
CVE-2024-21131LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE...
CVE-2024-21123LOW2.3Vulnerability in the Oracle Database Core component of Oracle Database Server. Supported versions that are affected are...
CVE-2024-40455LOW2.7An arbitrary file deletion vulnerability in ThinkSAAS v3.7 allows attackers to delete arbitrary files via a crafted requ...
CVE-2024-6326LOW1.8An exposure of sensitive information vulnerability exists in the Rockwell Automation FactoryTalk® System Service. A mali...
CVE-2024-6780LOW3.3Improper permission control in the mobile application (com.android.server.telecom) may lead to user information security...
CVE-2024-40632LOW3.7Linkerd is an open source, ultralight, security-first service mesh for Kubernetes. In affected versions when the applica...
CVE-2024-39919LOW3.1@jmondi/url-to-png is an open source URL to PNG utility featuring parallel rendering using Playwright for screenshots an...
CVE-2024-41007LOW3.3In the Linux kernel, the following vulnerability has been resolved: tcp: avoid too many retransmit packets If a TCP so...
CVE-2024-5470LOW2.7An issue was discovered in GitLab CE/EE affecting all versions starting from 17.0 prior to 17.0.4 and from 17.1 prior to...
CVE-2024-5257LOW2.7An issue was discovered in GitLab CE/EE affecting all versions starting from 17.0 prior to 17.0.4 and from 17.1 prior to...
CVE-2024-2880LOW2.7An issue was discovered in GitLab CE/EE affecting all versions starting from 16.5 prior to 16.11.6, starting from 17.0 p...
CVE-2024-23194LOW3.3Improper output Neutralization for Logs (CWE-117) in the Command Centre API Diagnostics Endpoint could allow an attacker...
CVE-2024-39886LOW3.7TONE store App version 3.4.2 and earlier contains an issue with unprotected primary channel. Since TONE store App commun...
CVE-2024-36452LOW3.1Cross-site request forgery vulnerability exists in ajaxterm module of Webmin versions prior to 2.003. If this vulnerabil...
CVE-2024-21832LOW3.5A potential JSON injection attack vector exists in PingFederate REST API data stores using the POST method and a JSON re...
CVE-2024-6501LOW3.1A flaw was found in NetworkManager. When a system running NetworkManager with DEBUG logs enabled and an interface eth1 c...
CVE-2024-28067LOW3.7A vulnerability in Samsung Exynos Modem 5300 allows a Man-in-the-Middle (MITM) attacker to downgrade the security mode o...
CVE-2024-37253LOW2.7Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in WpDi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now