2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-23365 | HIGH | 8.4 | 0.1% | Sep 2, 2024 | Memory corruption while releasing shared resources in MinkSocket listener thread. |
| CVE-2024-23364 | HIGH | 7.5 | 0.3% | Sep 2, 2024 | Transient DOS when processing the non-transmitted BSSID profile sub-elements present within the MBSSID Information Eleme... |
| CVE-2024-23362 | HIGH | 7.1 | 0.1% | Sep 2, 2024 | Cryptographic issue while parsing RSA keys in COBR format. |
| CVE-2024-23359 | HIGH | 8.2 | 0.3% | Sep 2, 2024 | Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received from network. |
| CVE-2024-23358 | HIGH | 7.5 | 0.3% | Sep 2, 2024 | Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in Modem. |
| CVE-2024-7871 | HIGH | 8.7 | 0.5% | Sep 2, 2024 | SQL Injection in online dictionary function of Easytest Online Test Platform ver.24E01 and earlier allow remote authenti... |
| CVE-2024-43776 | HIGH | 8.8 | 0.5% | Sep 2, 2024 | SQL Injection in mock exam function of Easytest Online Test Platform ver.24E01 and earlier allow remote authenticated us... |
| CVE-2024-43775 | HIGH | 8.8 | 0.5% | Sep 2, 2024 | SQL Injection in search course titles function of Easytest Online Test Platform ver.24E01 and earlier allow remote authe... |
| CVE-2024-43774 | HIGH | 8.8 | 0.5% | Sep 2, 2024 | SQL Injection in download personal learning course function of Easytest Online Test Platform ver.24E01 and earlier allow... |
| CVE-2024-41160 | HIGH | 7.8 | 0.2% | Sep 2, 2024 | in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sens... |
| CVE-2024-41157 | HIGH | 7.8 | 0.2% | Sep 2, 2024 | in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sens... |
| CVE-2024-39816 | HIGH | 7.8 | 0.2% | Sep 2, 2024 | in OpenHarmony v4.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o... |
| CVE-2024-39775 | HIGH | 7.5 | 0.4% | Sep 2, 2024 | in OpenHarmony v4.1.0 and prior versions allow a remote attacker cause information leak through out-of-bounds Read. |
| CVE-2024-38386 | HIGH | 7.8 | 0.2% | Sep 2, 2024 | in OpenHarmony v4.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o... |
| CVE-2024-20089 | HIGH | 7.5 | 0.3% | Sep 2, 2024 | In wlan, there is a possible denial of service due to incorrect error handling. This could lead to remote denial of serv... |
| CVE-2024-7717 | HIGH | 8.8 | 0.5% | Aug 31, 2024 | The WP Events Manager plugin for WordPress is vulnerable to time-based SQL Injection via the ‘order’ parameter in all ve... |
| CVE-2024-0110 | HIGH | 7.8 | 0.2% | Aug 31, 2024 | NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` where a user may cause an out-of-bound write by pass... |
| CVE-2024-44945 | HIGH | 7.8 | 0.2% | Aug 31, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink: Initialise extack before use ... |
| CVE-2024-7435 | HIGH | 8.8 | 0.7% | Aug 31, 2024 | The Attire theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.0.6 via des... |
| CVE-2024-6586 | HIGH | 7.3 | 1.8% | Aug 30, 2024 | Lightdash version 0.1024.6 allows users with the necessary permissions, such as Administrator or Editor, to create and s... |
| CVE-2024-38868 | HIGH | 8.3 | 0.8% | Aug 30, 2024 | Zohocorp ManageEngine Endpoint Central affected by Incorrect authorization vulnerability while isolating the devices.Thi... |
| CVE-2024-8344 | HIGH | 8.8 | 0.5% | Aug 30, 2024 | A vulnerability has been found in Campcodes Supplier Management System 1.0 and classified as critical. Affected by this ... |
| CVE-2024-6204 | HIGH | 8.1 | 2.0% | Aug 30, 2024 | Zohocorp ManageEngine Exchange Reporter Plus versions before 5715 are vulnerable to SQL Injection in the reports module. |
| CVE-2024-8342 | HIGH | 8.8 | 0.6% | Aug 30, 2024 | A vulnerability, which was classified as critical, has been found in SourceCodester Petshop Management System 1.0. This ... |
| CVE-2024-44916 | HIGH | 7.2 | 1.3% | Aug 30, 2024 | Vulnerability in admin_ip.php in Seacms v13.1, when action=set, allows attackers to control IP parameters that are writt... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now