2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-8278HIGH7.2A privilege escalation vulnerability was discovered in XCC that could allow a valid, authenticated XCC user with elevate...
CVE-2024-39924HIGH8.8An issue was discovered in Vaultwarden (formerly Bitwarden_RS) 1.30.3. A vulnerability has been identified in the authen...
CVE-2024-6862HIGH8.1A Cross-Site Request Forgery (CSRF) vulnerability exists in lunary-ai/lunary version 1.2.34 due to overly permissive COR...
CVE-2024-45368HIGH8.8The H2-DM1E PLC's authentication protocol appears to utilize either a custom encoding scheme or a challenge-response pro...
CVE-2024-43099HIGH8.8The session hijacking attack targets the application layer's control mechanism, which manages authenticated sessions bet...
CVE-2024-31415HIGH8.1The Eaton Foreseer software provides the feasibility for the user to configure external servers for multiple purposes su...
CVE-2024-6587HIGH7.5A Server-Side Request Forgery (SSRF) vulnerability exists in berriai/litellm version 1.38.10. This vulnerability allows ...
CVE-2024-42025HIGH7.8A Command Injection vulnerability found in a Self-Hosted UniFi Network Servers (Linux) with UniFi Network Application (V...
CVE-2024-8242HIGH8.8The MStore API – Create Native Android & iOS Apps On The Cloud plugin for WordPress is vulnerable to arbitrary file uplo...
CVE-2024-7423HIGH8.8The Stream plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.0.1....
CVE-2024-46713HIGH7.8In the Linux kernel, the following vulnerability has been resolved: perf/aux: Fix AUX buffer serialization Ole reporte...
CVE-2024-46047HIGH7.5Tenda FH451 v1.0.0.9 has a stack overflow vulnerability in the fromDhcpListClient function.
CVE-2024-45113HIGH7.5ColdFusion versions 2023.6, 2021.12 and earlier are affected by an Improper Authentication vulnerability that could resu...
CVE-2024-45109HIGH7.8Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerability that could res...
CVE-2024-45108HIGH7.8Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerability that could res...
CVE-2024-43760HIGH7.8Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write vulnerability that could res...
CVE-2024-43756HIGH7.8Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by a Heap-based Buffer Overflow vulnerability that cou...
CVE-2024-45112HIGH7.8Acrobat Reader versions 24.002.21005, 24.001.30159, 20.005.30655, 24.003.20054 and earlier are affected by a Type Confus...
CVE-2024-43758HIGH7.8Illustrator versions 28.6, 27.9.5 and earlier are affected by a Use After Free vulnerability that could result in arbitr...
CVE-2024-41869HIGH7.8Acrobat Reader versions 24.002.21005, 24.001.30159, 20.005.30655, 24.003.20054 and earlier are affected by a Use After F...
CVE-2024-41859HIGH7.8After Effects versions 23.6.6, 24.5 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2024-41857HIGH7.8Illustrator versions 28.6, 27.9.5 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability th...
CVE-2024-39384HIGH7.8Premiere Pro versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds write vulnerability that could result in...
CVE-2024-39381HIGH7.8After Effects versions 23.6.6, 24.5 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2024-39380HIGH7.8After Effects versions 23.6.6, 24.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could re...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now