2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-56446 | HIGH | 7.5 | 0.2% | Jan 8, 2025 | Vulnerability of variables not being initialized in the notification module Impact: Successful exploitation of this vuln... |
| CVE-2024-56445 | MEDIUM | 5.3 | 0.3% | Jan 8, 2025 | Instruction authentication bypass vulnerability in the Findnetwork module Impact: Successful exploitation of this vulner... |
| CVE-2024-56444 | HIGH | 7.5 | 0.3% | Jan 8, 2025 | Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability... |
| CVE-2024-56443 | HIGH | 7.5 | 0.2% | Jan 8, 2025 | Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability... |
| CVE-2024-56442 | HIGH | 7.5 | 0.2% | Jan 8, 2025 | Vulnerability of native APIs not being implemented in the NFC service module Impact: Successful exploitation of this vul... |
| CVE-2024-56441 | MEDIUM | 5.9 | 0.1% | Jan 8, 2025 | Race condition vulnerability in the Bastet module Impact: Successful exploitation of this vulnerability may affect servi... |
| CVE-2024-56440 | HIGH | 7.5 | 0.2% | Jan 8, 2025 | Permission control vulnerability in the Connectivity module Impact: Successful exploitation of this vulnerability may ca... |
| CVE-2024-56439 | HIGH | 7.5 | 0.1% | Jan 8, 2025 | Access control vulnerability in the identity authentication module Impact: Successful exploitation of this vulnerability... |
| CVE-2024-56438 | HIGH | 7.5 | 0.2% | Jan 8, 2025 | Vulnerability of improper memory address protection in the HUKS module Impact: Successful exploitation of this vulnerabi... |
| CVE-2024-56437 | HIGH | 7.5 | 0.2% | Jan 8, 2025 | Vulnerability of input parameters not being verified in the widget framework module Impact: Successful exploitation of t... |
| CVE-2024-54120 | MEDIUM | 5.9 | 0.1% | Jan 8, 2025 | Race condition vulnerability in the distributed notification module Impact: Successful exploitation of this vulnerabilit... |
| CVE-2024-47934 | MEDIUM | 6.9 | 0.4% | Jan 8, 2025 | Improper Input Validation vulnerability in Management Program in TXOne Networks Portable Inspector and Portable Inspecto... |
| CVE-2024-47239 | MEDIUM | 6.5 | 0.4% | Jan 8, 2025 | Dell PowerScale OneFS versions 8.2.2.x through 9.9.0.0 contain an uncontrolled resource consumption vulnerability. A rem... |
| CVE-2024-56436 | HIGH | 7.5 | 0.2% | Jan 8, 2025 | Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability... |
| CVE-2024-56435 | HIGH | 7.5 | 0.2% | Jan 8, 2025 | Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability... |
| CVE-2024-56434 | HIGH | 7.5 | 0.1% | Jan 8, 2025 | UAF vulnerability in the device node access module Impact: Successful exploitation of this vulnerability may cause servi... |
| CVE-2024-55356 | — | — | — | Jan 8, 2025 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2024-55355 | — | — | — | Jan 8, 2025 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2024-50603 | CRITICAL | 9.8 | 98.5% | Jan 8, 2025 | An issue was discovered in Aviatrix Controller before 7.1.4191 and 7.2.x before 7.2.4996. Due to the improper neutraliza... |
| CVE-2024-40679 | MEDIUM | 5.5 | 0.2% | Jan 8, 2025 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to an information disclosure vulner... |
| CVE-2024-10541 | — | — | — | Jan 7, 2025 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. This is not ... |
| CVE-2024-55218 | MEDIUM | 6.1 | 0.7% | Jan 7, 2025 | IceWarp Server 10.2.1 is vulnerable to Cross Site Scripting (XSS) via the meta parameter. |
| CVE-2024-54819 | CRITICAL | 9.1 | 18.2% | Jan 7, 2025 | I, Librarian before and including 5.11.1 is vulnerable to Server-Side Request Forgery (SSRF) due to improper input valid... |
| CVE-2024-53522 | HIGH | 7.5 | 0.8% | Jan 7, 2025 | Bangkok Medical Software HOSxP XE v4.64.11.3 was discovered to contain a hardcoded IDEA Key-IV pair in the HOSxPXE4.exe ... |
| CVE-2024-35532 | CRITICAL | 9.1 | 0.5% | Jan 7, 2025 | An XML External Entity (XXE) injection vulnerability in Intersec Geosafe-ea 2022.12, 2022.13, and 2022.14 allows attacke... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now