2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-58110 | HIGH | 7.5 | 0.2% | Apr 7, 2025 | Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail... |
| CVE-2024-58109 | HIGH | 7.5 | 0.2% | Apr 7, 2025 | Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail... |
| CVE-2024-58108 | HIGH | 7.5 | 0.2% | Apr 7, 2025 | Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail... |
| CVE-2024-58107 | HIGH | 7.5 | 0.3% | Apr 7, 2025 | Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail... |
| CVE-2024-58106 | HIGH | 7.5 | 0.2% | Apr 7, 2025 | Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail... |
| CVE-2024-13776 | HIGH | 8.1 | 0.3% | Apr 5, 2025 | The ZoomSounds - WordPress Wave Audio Player with Playlist plugin for WordPress is vulnerable to unauthorized modificati... |
| CVE-2024-13604 | HIGH | 7.5 | 0.4% | Apr 5, 2025 | The KB Support – Customer Support Ticket & Helpdesk Plugin, Knowledge Base Plugin plugin for WordPress is vulnerable to ... |
| CVE-2024-11235 | HIGH | 8.1 | 1.3% | Apr 4, 2025 | In PHP versions 8.3.* before 8.3.19 and 8.4.* before 8.4.5, a code sequence involving __set handler or ??= operator and... |
| CVE-2024-13708 | HIGH | 7.2 | 0.2% | Apr 4, 2025 | The Booster for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in ve... |
| CVE-2024-56528 | HIGH | 7.5 | 0.4% | Apr 3, 2025 | This vulnerability affects Snowplow Collector 3.x before 3.3.0 (unless it’s set up behind a reverse proxy that establish... |
| CVE-2024-47215 | HIGH | 7.5 | 0.4% | Apr 3, 2025 | An issue was discovered in Snowbridge setups sending data to Google Tag Manager Server Side. It involves attaching an in... |
| CVE-2024-47214 | HIGH | 7.5 | 0.4% | Apr 3, 2025 | An issue was discovered in Iglu Server 0.13.0 and below. It is similar to CVE-2024-47212, but involves a different kind ... |
| CVE-2024-47213 | HIGH | 7.5 | 0.4% | Apr 3, 2025 | An issue was discovered affecting Enrich 5.1.0 and below. It involves sending a maliciously crafted Snowplow event to th... |
| CVE-2024-47212 | HIGH | 7.5 | 0.4% | Apr 3, 2025 | An issue was discovered in Iglu Server 0.13.0 and below. It involves sending very large payloads to a particular API end... |
| CVE-2024-45199 | HIGH | 8.8 | 0.5% | Apr 3, 2025 | insightsoftware Hive JDBC through 2.6.13 has a remote code execution vulnerability. Attackers can inject malicious param... |
| CVE-2024-45198 | HIGH | 8.8 | 0.5% | Apr 3, 2025 | insightsoftware Spark JDBC 2.6.21 has a remote code execution vulnerability. Attackers can inject malicious parameters i... |
| CVE-2024-4877 | HIGH | 8.8 | 0.4% | Apr 3, 2025 | OpenVPN version 2.4.0 through 2.6.10 on Windows allows an external, lesser privileged process to create a named pipe whi... |
| CVE-2024-53868 | HIGH | 7.5 | 0.6% | Apr 3, 2025 | Apache Traffic Server allows request smuggling if chunked messages are malformed. This issue affects Apache Traffi... |
| CVE-2024-37917 | HIGH | 7.5 | 0.4% | Apr 2, 2025 | Pexip Infinity before 35.0 has improper input validation that allows remote attackers to trigger a denial of service (so... |
| CVE-2024-36337 | HIGH | 7.9 | 0.1% | Apr 2, 2025 | Integer overflow within AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to loss ... |
| CVE-2024-36336 | HIGH | 7.9 | 0.1% | Apr 2, 2025 | Integer overflow within the AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to a... |
| CVE-2024-36328 | HIGH | 7.3 | 0.1% | Apr 2, 2025 | Integer overflow within AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to loss ... |
| CVE-2024-56474 | HIGH | 8.8 | 0.2% | Apr 2, 2025 | IBM TXSeries for Multiplatforms 9.1 and 11.1 is vulnerable to cross-site request forgery which could allow an attacker t... |
| CVE-2024-25051 | HIGH | 7.2 | 0.3% | Apr 2, 2025 | IBM Jazz Reporting Service 7.0.2 and 7.0.3 does not invalidate session after logout which could allow an authenticated p... |
| CVE-2024-50597 | HIGH | 7.5 | 0.7% | Apr 2, 2025 | An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRT... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now