2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-56408MEDIUM5.4PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1....
CVE-2024-56324HIGH7.1GoCD is a continuous deliver server. GoCD versions prior to 24.4.0 can allow GoCD "group admins" to abuse ability to edi...
CVE-2024-56322HIGH7.2GoCD is a continuous deliver server. GoCD versions 16.7.0 through 24.4.0 (inclusive) can allow GoCD admins to abuse a hi...
CVE-2024-56321LOW3.8GoCD is a continuous deliver server. GoCD versions 18.9.0 through 24.4.0 (inclusive) can allow GoCD admins to abuse the ...
CVE-2024-56320HIGH8.8GoCD is a continuous deliver server. GoCD versions prior to 24.5.0 are vulnerable to admin privilege escalation due to i...
CVE-2024-55507CRITICAL9.8An issue in CodeAstro Complaint Management System v.1.0 allows a remote attacker to escalate privileges via the delete_e...
CVE-2024-5591MEDIUM4.3IBM Jazz Foundation 7.0.2, 7.0.3, and 7.1.0 could allow a remote attacker to obtain sensitive information when a detaile...
CVE-2024-55078CRITICAL9.8An arbitrary file upload vulnerability in the component /adminUser/updateImg of WukongCRM-11.0-JAVA v11.3.3 allows attac...
CVE-2024-48814HIGH7.5SQL Injection vulnerability in Silverpeas 6.4.1 allows a remote attacker to obtain sensitive information via the ViewTyp...
CVE-2024-41780MEDIUM4.6IBM Jazz Foundation 7.0.2, 7.0.3, and 7.1.0 could could allow a physical user to obtain sensitive information due to n...
CVE-2024-9140CRITICAL9.8Moxa’s cellular routers, secure routers, and network security appliances are affected by a critical vulnerability, CVE-2...
CVE-2024-9138HIGH8.6Moxa’s cellular routers, secure routers, and network security appliances are affected by a high-severity vulnerability, ...
CVE-2024-12132MEDIUM4.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-53842CRITICAL9.8In cc_SendCcImsInfoIndMsg of cc_MmConManagement.c, there is a possible out of bounds write due to a missing bounds check...
CVE-2024-53841HIGH7.8In startListeningForDeviceStateChanges, there is a possible Permission Bypass due to a confused deputy. This could lead ...
CVE-2024-53840HIGH7.8there is a possible biometric bypass due to an unusual root cause. This could lead to local escalation of privilege with...
CVE-2024-53839MEDIUM5.5In GetCellInfoList() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. Th...
CVE-2024-53838HIGH7.8In Exynos_parsing_user_data_registered_itu_t_t35 of VendorVideoAPI.cpp, there is a possible out of bounds write due to a...
CVE-2024-53837HIGH7.8In prepare_response of lwis_periodic_io.c, there is a possible out of bounds write due to an integer overflow. This coul...
CVE-2024-53836MEDIUM6.7In wbrc_bt_dev_write of wb_regon_coordinator.c, there is a possible out of bounds write due to a buffer overflow. This c...
CVE-2024-53835HIGH7.8there is a possible biometric bypass due to an unusual root cause. This could lead to local escalation of privilege with...
CVE-2024-53834HIGH7.5In sms_DisplayHexDumpOfPrivacyBuffer of sms_Utilities.c, there is a possible out of bounds read due to an incorrect boun...
CVE-2024-53833HIGH7.8In prepare_response_locked of lwis_transaction.c, there is a possible out of bounds write due to improper input validat...
CVE-2024-47032HIGH7.8In construct_transaction_from_cmd of lwis_ioctl.c, there is a possible out of bounds write due to a heap buffer overflow...
CVE-2024-11624HIGH7.8there is a possible to add apps to bypass VPN due to Undeclared Permission . This could lead to local escalation of priv...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now