2024 CVE Vulnerabilities

39,223 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-43460HIGH8.8Improper authorization in Dynamics 365 Business Central resulted in a vulnerability that allows an authenticated attacke...
CVE-2024-8945HIGH8.8A vulnerability has been found in CodeCanyon RISE Ultimate Project Manager 3.7.0 and classified as critical. This vulner...
CVE-2024-42503HIGH7.2Authenticated command execution vulnerability exist in the ArubaOS command line interface (CLI). Successful exploitatio...
CVE-2024-42502HIGH7.2Authenticated command injection vulnerability exists in the ArubaOS command line interface. Successful exploitation of t...
CVE-2024-42501HIGH7.2An authenticated Path Traversal vulnerabilities exists in the ArubaOS. Successful exploitation of this vulnerability all...
CVE-2024-8768HIGH7.5A flaw was found in the vLLM library. A completions API request with an empty prompt will crash the vLLM API server, res...
CVE-2024-7788HIGH7.8Improper Digital Signature Invalidation  vulnerability in Zip Repair Mode of The Document Foundation LibreOffice allows ...
CVE-2024-47049HIGH8.2The czim/file-handling package before 1.5.0 and 2.x before 2.3.0 (used with PHP Composer) does not properly validate URL...
CVE-2024-47047HIGH7.5An issue was discovered in the powermail extension through 12.4.0 for TYPO3. It fails to validate the mail parameter of ...
CVE-2024-22303HIGH8.8Incorrect Privilege Assignment vulnerability in favethemes Houzez allows Privilege Escalation.This issue affects Houzez:...
CVE-2024-21743HIGH8.8Privilege Escalation vulnerability in favethemes Houzez Login Register houzez-login-register.This issue affects Houzez L...
CVE-2024-46362HIGH8.8FrogCMS V0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/plugin/file_mana...
CVE-2024-46085HIGH8.8FrogCMS V0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/plugin/file_mana...
CVE-2024-5998HIGH7.8A vulnerability in the FAISS.deserialize_from_bytes function of langchain-ai/langchain allows for pickle deserialization...
CVE-2024-8110HIGH7.5Denial of Service (DoS) vulnerability has been found in Dual-redundant Platform for Computer. If a computer on which the...
CVE-2024-44189HIGH7.5The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15. A logic issue existed where a pro...
CVE-2024-44165HIGH7.5A logic issue was addressed with improved checks. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18,...
CVE-2024-44164HIGH7.1This issue was addressed with improved checks. This issue is fixed in iOS 17.7 and iPadOS 17.7, macOS Sequoia 15, macOS ...
CVE-2024-44162HIGH7.8This issue was addressed by enabling hardened runtime. This issue is fixed in Xcode 16. A malicious application may gain...
CVE-2024-44152HIGH7.5A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia...
CVE-2024-44149HIGH7.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. An app may be a...
CVE-2024-44132HIGH8.8This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15. An app may be able...
CVE-2024-40861HIGH7.8The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15. An app may be able to gain root p...
CVE-2024-40856HIGH7.5An integrity issue was addressed with Beacon Protection. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, ...
CVE-2024-40848HIGH7.5A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in macOS Sequoia 15, macO...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now