2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-56408 | MEDIUM | 5.4 | 0.4% | Jan 3, 2025 | PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1.... |
| CVE-2024-56324 | HIGH | 7.1 | 0.8% | Jan 3, 2025 | GoCD is a continuous deliver server. GoCD versions prior to 24.4.0 can allow GoCD "group admins" to abuse ability to edi... |
| CVE-2024-56322 | HIGH | 7.2 | 0.7% | Jan 3, 2025 | GoCD is a continuous deliver server. GoCD versions 16.7.0 through 24.4.0 (inclusive) can allow GoCD admins to abuse a hi... |
| CVE-2024-56321 | LOW | 3.8 | 0.5% | Jan 3, 2025 | GoCD is a continuous deliver server. GoCD versions 18.9.0 through 24.4.0 (inclusive) can allow GoCD admins to abuse the ... |
| CVE-2024-56320 | HIGH | 8.8 | 0.7% | Jan 3, 2025 | GoCD is a continuous deliver server. GoCD versions prior to 24.5.0 are vulnerable to admin privilege escalation due to i... |
| CVE-2024-55507 | CRITICAL | 9.8 | 0.6% | Jan 3, 2025 | An issue in CodeAstro Complaint Management System v.1.0 allows a remote attacker to escalate privileges via the delete_e... |
| CVE-2024-5591 | MEDIUM | 4.3 | 0.3% | Jan 3, 2025 | IBM Jazz Foundation 7.0.2, 7.0.3, and 7.1.0 could allow a remote attacker to obtain sensitive information when a detaile... |
| CVE-2024-55078 | CRITICAL | 9.8 | 0.7% | Jan 3, 2025 | An arbitrary file upload vulnerability in the component /adminUser/updateImg of WukongCRM-11.0-JAVA v11.3.3 allows attac... |
| CVE-2024-48814 | HIGH | 7.5 | 0.5% | Jan 3, 2025 | SQL Injection vulnerability in Silverpeas 6.4.1 allows a remote attacker to obtain sensitive information via the ViewTyp... |
| CVE-2024-41780 | MEDIUM | 4.6 | 0.2% | Jan 3, 2025 | IBM Jazz Foundation 7.0.2, 7.0.3, and 7.1.0 could could allow a physical user to obtain sensitive information due to n... |
| CVE-2024-9140 | CRITICAL | 9.8 | 1.8% | Jan 3, 2025 | Moxa’s cellular routers, secure routers, and network security appliances are affected by a critical vulnerability, CVE-2... |
| CVE-2024-9138 | HIGH | 8.6 | 1.1% | Jan 3, 2025 | Moxa’s cellular routers, secure routers, and network security appliances are affected by a high-severity vulnerability, ... |
| CVE-2024-12132 | MEDIUM | 4.3 | 0.4% | Jan 3, 2025 | The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to... |
| CVE-2024-53842 | CRITICAL | 9.8 | 0.3% | Jan 3, 2025 | In cc_SendCcImsInfoIndMsg of cc_MmConManagement.c, there is a possible out of bounds write due to a missing bounds check... |
| CVE-2024-53841 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | In startListeningForDeviceStateChanges, there is a possible Permission Bypass due to a confused deputy. This could lead ... |
| CVE-2024-53840 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | there is a possible biometric bypass due to an unusual root cause. This could lead to local escalation of privilege with... |
| CVE-2024-53839 | MEDIUM | 5.5 | 0.1% | Jan 3, 2025 | In GetCellInfoList() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. Th... |
| CVE-2024-53838 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | In Exynos_parsing_user_data_registered_itu_t_t35 of VendorVideoAPI.cpp, there is a possible out of bounds write due to a... |
| CVE-2024-53837 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | In prepare_response of lwis_periodic_io.c, there is a possible out of bounds write due to an integer overflow. This coul... |
| CVE-2024-53836 | MEDIUM | 6.7 | 0.1% | Jan 3, 2025 | In wbrc_bt_dev_write of wb_regon_coordinator.c, there is a possible out of bounds write due to a buffer overflow. This c... |
| CVE-2024-53835 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | there is a possible biometric bypass due to an unusual root cause. This could lead to local escalation of privilege with... |
| CVE-2024-53834 | HIGH | 7.5 | 0.3% | Jan 3, 2025 | In sms_DisplayHexDumpOfPrivacyBuffer of sms_Utilities.c, there is a possible out of bounds read due to an incorrect boun... |
| CVE-2024-53833 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | In prepare_response_locked of lwis_transaction.c, there is a possible out of bounds write due to improper input validat... |
| CVE-2024-47032 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | In construct_transaction_from_cmd of lwis_ioctl.c, there is a possible out of bounds write due to a heap buffer overflow... |
| CVE-2024-11624 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | there is a possible to add apps to bypass VPN due to Undeclared Permission . This could lead to local escalation of priv... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now