2024 CVE Vulnerabilities

No CVEs published in 2024.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2024-5307LOW3.3Kofax Power PDF AcroForm Annotation Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows r...
CVE-2024-2213LOW3.3An issue was discovered in zenml-io/zenml versions up to and including 0.55.4. Due to improper authentication mechanisms...
CVE-2024-2032LOW3.1A race condition vulnerability exists in zenml-io/zenml versions up to and including 0.55.3, which allows for the creati...
CVE-2024-20885LOW3.3Improper component protection vulnerability in Samsung Dialer prior to SMR May-2024 Release 1 allows local attackers to ...
CVE-2024-31684LOW3.5Incorrect access control in the fingerprint authentication mechanism of Bitdefender Mobile Security v4.11.3-gms allows a...
CVE-2024-35196LOW2Sentry is a developer-first error tracking and performance monitoring platform. Sentry's Slack integration incorrectly r...
CVE-2024-36119LOW1.8Statamic is a, Laravel + Git powered CMS designed for building websites. In affected versions users registering via the ...
CVE-2024-4330LOW3.3A path traversal vulnerability was identified in the parisneo/lollms-webui repository, specifically within version 9.6. ...
CVE-2024-34715LOW3.3Fides is an open-source privacy engineering platform. The Fides webserver requires a connection to a hosted PostgreSQL d...
CVE-2024-35311LOW3.3Yubico YubiKey 5 Series before 5.7.0, Security Key Series before 5.7.0, YubiKey Bio Series before 5.6.4, and YubiKey 5 F...
CVE-2024-35403LOW2.7TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a stack overflow via the desc parameter in the function...
CVE-2024-32944LOW3.3Path traversal vulnerability exists in UTAU versions prior to v0.4.19. If a user of the product installs a crafted UTAU ...
CVE-2024-27314LOW2.4Zoho ManageEngine ServiceDesk Plus versions below 14730, ServiceDesk Plus MSP below 14720 and SupportCenter Plus below 1...
CVE-2024-35232LOW3.7github.com/huandu/facebook is a Go package that fully supports the Facebook Graph API with file upload, batch request an...
CVE-2024-32969LOW2.7vantage6 is an open-source infrastructure for privacy preserving analysis. Collaboration administrators can add extra or...
CVE-2024-3920LOW3.5The Flattr WordPress plugin through 1.2.2 does not sanitise and escape some of its settings, which could allow high priv...
CVE-2024-2220LOW3.5The Button contact VR WordPress plugin through 4.7 does not sanitise and escape some of its settings, which could allow ...
CVE-2024-34274LOW3.9OpenBD 20210306203917-6cbe797 is vulnerable to Deserialization of Untrusted Data. The cookies bdglobals and bdclient_spo...
CVE-2024-35935LOW3.3In the Linux kernel, the following vulnerability has been resolved: btrfs: send: handle path ref underflow in header it...
CVE-2024-32708LOW3.7Authentication Bypass by Spoofing vulnerability in helderk Maintenance Mode allows Functionality Bypass.This issue affec...
CVE-2024-4214LOW2.7Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS vulnerability in Bill Minozzi Car Dealer al...
CVE-2024-30480LOW3.7Authentication Bypass by Spoofing vulnerability in Pippin Williamson CGC Maintenance Mode allows Functionality Bypass.Th...
CVE-2024-22139LOW3.7Authentication Bypass by Spoofing vulnerability in Filipe Seabra WordPress Manutenção allows Functionality Bypass.This i...
CVE-2024-22384LOW2.8Out-of-bounds read for some Intel(R) Trace Analyzer and Collector software before version 2022.0.0 published Nov 2023 ma...
CVE-2024-31226LOW2.9Sunshine is a self-hosted game stream host for Moonlight. Users who ran Sunshine versions 0.17.0 through 0.22.2 as a ser...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now