2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-58110HIGH7.5Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail...
CVE-2024-58109HIGH7.5Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail...
CVE-2024-58108HIGH7.5Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail...
CVE-2024-58107HIGH7.5Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail...
CVE-2024-58106HIGH7.5Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail...
CVE-2024-13776HIGH8.1The ZoomSounds - WordPress Wave Audio Player with Playlist plugin for WordPress is vulnerable to unauthorized modificati...
CVE-2024-13604HIGH7.5The KB Support – Customer Support Ticket & Helpdesk Plugin, Knowledge Base Plugin plugin for WordPress is vulnerable to ...
CVE-2024-11235HIGH8.1In PHP versions 8.3.* before 8.3.19 and 8.4.* before 8.4.5, a code sequence involving __set handler or ??=  operator and...
CVE-2024-13708HIGH7.2The Booster for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in ve...
CVE-2024-56528HIGH7.5This vulnerability affects Snowplow Collector 3.x before 3.3.0 (unless it’s set up behind a reverse proxy that establish...
CVE-2024-47215HIGH7.5An issue was discovered in Snowbridge setups sending data to Google Tag Manager Server Side. It involves attaching an in...
CVE-2024-47214HIGH7.5An issue was discovered in Iglu Server 0.13.0 and below. It is similar to CVE-2024-47212, but involves a different kind ...
CVE-2024-47213HIGH7.5An issue was discovered affecting Enrich 5.1.0 and below. It involves sending a maliciously crafted Snowplow event to th...
CVE-2024-47212HIGH7.5An issue was discovered in Iglu Server 0.13.0 and below. It involves sending very large payloads to a particular API end...
CVE-2024-45199HIGH8.8insightsoftware Hive JDBC through 2.6.13 has a remote code execution vulnerability. Attackers can inject malicious param...
CVE-2024-45198HIGH8.8insightsoftware Spark JDBC 2.6.21 has a remote code execution vulnerability. Attackers can inject malicious parameters i...
CVE-2024-4877HIGH8.8OpenVPN version 2.4.0 through 2.6.10 on Windows allows an external, lesser privileged process to create a named pipe whi...
CVE-2024-53868HIGH7.5Apache Traffic Server allows request smuggling if chunked messages are malformed.  This issue affects Apache Traffi...
CVE-2024-37917HIGH7.5Pexip Infinity before 35.0 has improper input validation that allows remote attackers to trigger a denial of service (so...
CVE-2024-36337HIGH7.9Integer overflow within AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to loss ...
CVE-2024-36336HIGH7.9Integer overflow within the AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to a...
CVE-2024-36328HIGH7.3Integer overflow within AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to loss ...
CVE-2024-56474HIGH8.8IBM TXSeries for Multiplatforms 9.1 and 11.1 is vulnerable to cross-site request forgery which could allow an attacker t...
CVE-2024-25051HIGH7.2IBM Jazz Reporting Service 7.0.2 and 7.0.3 does not invalidate session after logout which could allow an authenticated p...
CVE-2024-50597HIGH7.5An integer underflow vulnerability exists in the HTTP server PUT request functionality of STMicroelectronics X-CUBE-AZRT...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now