2024 CVE Vulnerabilities

39,223 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-40770HIGH7.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. A non-privilege...
CVE-2024-27879HIGH7.5The issue was addressed with improved bounds checks. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS ...
CVE-2024-27874HIGH7.5This issue was addressed through improved state management. This issue is fixed in iOS 18 and iPadOS 18. A remote attack...
CVE-2024-27795HIGH7.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. A camera extens...
CVE-2024-45416HIGH8.1The HTTPD binary in multiple ZTE routers has a local file inclusion vulnerability in session_init function. The session ...
CVE-2024-45413HIGH8.1The HTTPD binary in multiple ZTE routers has a stack-based buffer overflow vulnerability in rsa_decrypt function. This f...
CVE-2024-42798HIGH7.6An Incorrect Access Control vulnerability was found in /music/index.php?page=user_list and /music/index.php?page=edit_us...
CVE-2024-34543HIGH7.8Improper access control in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potent...
CVE-2024-34153HIGH7.8Uncontrolled search path element in Intel(R) RAID Web Console software for all versions may allow an authenticated user ...
CVE-2024-23599HIGH8.3Race condition in Seamless Firmware Updates for some Intel(R) reference platforms may allow a privileged user to potenti...
CVE-2024-21871HIGH7.5Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enabl...
CVE-2024-21829HIGH8.7Improper input validation in UEFI firmware error handler for some Intel(R) Processors may allow a privileged user to pot...
CVE-2024-21781HIGH7.2Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to enable informatio...
CVE-2024-8752HIGH7.5The Windows version of WebIQ 2.15.9 is affected by a directory traversal vulnerability that allows remote attackers to r...
CVE-2024-46937HIGH7.5An improper access control (IDOR) vulnerability in the /api-selfportal/get-info-token-properties endpoint in MFASOFT Sec...
CVE-2024-46424HIGH7.5TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the UploadCustomModule function, which ...
CVE-2024-45696HIGH8.8Certain models of D-Link wireless routers contain hidden functionality. By sending specific packets to the web service, ...
CVE-2024-39613HIGH7.8Mattermost Desktop App versions <=5.8.0 fail to specify an absolute path when searching the cmd.exe file, which allows ...
CVE-2024-8779HIGH8.8OMFLOW from The SYSCOM Group does not properly restrict access to the system settings modification functionality, allowi...
CVE-2024-8777HIGH7.5OMFLOW from The SYSCOM Group has an information leakage vulnerability, allowing unauthorized remote attackers to read ar...
CVE-2024-46943HIGH7.5An issue was discovered in OpenDaylight Authentication, Authorization and Accounting (AAA) through 0.19.3. A rogue contr...
CVE-2024-8876HIGH7.5A vulnerability, which was classified as problematic, has been found in xiaohe4966 TpMeCMS up to 1.3.3.1. Affected by th...
CVE-2024-46938HIGH7.5An issue was discovered in Sitecore Experience Platform (XP), Experience Manager (XM), and Experience Commerce (XC) 8.0 ...
CVE-2024-8869HIGH8.1A vulnerability classified as critical has been found in TOTOLINK A720R 4.1.5. Affected is the function exportOvpn. The ...
CVE-2024-8864HIGH8.8A vulnerability has been found in composiohq composio up to 0.5.6 and classified as critical. Affected by this vulnerabi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now