2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-8164HIGH8.8A vulnerability was determined in Chengdu Everbrite Network Technology BeikeShop up to 1.5.5. This affects the function ...
CVE-2024-8163HIGH8.1A vulnerability was found in Chengdu Everbrite Network Technology BeikeShop up to 1.5.5. Affected by this issue is the f...
CVE-2024-44942HIGH7.8In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on F2FS_INLINE_DATA fl...
CVE-2024-44941HIGH7.8In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to cover read extent cache access with lo...
CVE-2024-44940HIGH7.8In the Linux kernel, the following vulnerability has been resolved: fou: remove warn in gue_gro_receive on unsupported ...
CVE-2024-41879HIGH7.8Acrobat Reader versions 127.0.2651.105 and earlier are affected by an out-of-bounds write vulnerability that could resul...
CVE-2024-44934HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: bridge: mcast: wait for previous gc cycles whe...
CVE-2024-44932HIGH7.8In the Linux kernel, the following vulnerability has been resolved: idpf: fix UAFs when destroying the queues The seco...
CVE-2024-43900HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: xc2028: avoid use-after-free in load_firmwar...
CVE-2024-43888HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm: list_lru: fix UAF for memory cgroup The mem_cg...
CVE-2024-43444HIGH8.2Passwords of agents and customers are displayed in plain text in the OTRS admin log module if certain configurations reg...
CVE-2024-45241HIGH7.5A traversal vulnerability in GeneralDocs.aspx in CentralSquare CryWolf (False Alarm Management) through 2024-08-09 allow...
CVE-2024-41996HIGH7.5Validating the order of the public keys in the Diffie-Hellman Key Agreement Protocol, when an approved safe prime is use...
CVE-2024-8147HIGH8.8A vulnerability was found in code-projects Pharmacy Management System 1.0 and classified as critical. This issue affects...
CVE-2024-45240HIGH7.4The TikTok (aka com.zhiliaoapp.musically) application before 34.5.5 for Android allows the takeover of Lynxview JavaScri...
CVE-2024-45239HIGH7.5An issue was discovered in Fort before 1.6.3. A malicious RPKI repository that descends from a (trusted) Trust Anchor ca...
CVE-2024-45238HIGH7.5An issue was discovered in Fort before 1.6.3. A malicious RPKI repository that descends from a (trusted) Trust Anchor ca...
CVE-2024-45236HIGH7.5An issue was discovered in Fort before 1.6.3. A malicious RPKI repository that descends from a (trusted) Trust Anchor ca...
CVE-2024-45235HIGH7.5An issue was discovered in Fort before 1.6.3. A malicious RPKI repository that descends from a (trusted) Trust Anchor ca...
CVE-2024-45234HIGH7.5An issue was discovered in Fort before 1.6.3. A malicious RPKI repository that descends from a (trusted) Trust Anchor ca...
CVE-2024-7656HIGH8.8The Image Hotspot by DevVN plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and includi...
CVE-2024-7351HIGH7.2The Simple Job Board plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2....
CVE-2024-7568HIGH8.1The Favicon Generator plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,...
CVE-2024-45187HIGH8.8Guest users in the Mage AI framework that remain logged in after their accounts are deleted, are mistakenly given high p...
CVE-2024-42845HIGH8An eval Injection vulnerability in the component invesalius/reader/dicom.py of InVesalius 3.1.99991 through 3.1.99998 al...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now