2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-56139 | MEDIUM | 6.9 | 0.4% | Dec 17, 2024 | pdftools is a high level tools to convert PDF files to ePUB formats. In versions up to and including 0.5.0 maliciously c... |
| CVE-2024-51479 | HIGH | 7.5 | 3.9% | Dec 17, 2024 | Next.js is a React framework for building full-stack web applications. In affected versions if a Next.js application is ... |
| CVE-2024-55496 | CRITICAL | 9.1 | 0.6% | Dec 17, 2024 | A vulnerability has been found in the 1000projects Bookstore Management System PHP MySQL Project 1.0. This issue affects... |
| CVE-2024-54662 | CRITICAL | 9.1 | 0.5% | Dec 17, 2024 | Dante 1.4.0 through 1.4.3 (fixed in 1.4.4) has incorrect access control for some sockd.conf configurations involving soc... |
| CVE-2024-49820 | LOW | 3.7 | 0.2% | Dec 17, 2024 | IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 could allow a remote attacker to obtain sensiti... |
| CVE-2024-49819 | HIGH | 7.5 | 0.3% | Dec 17, 2024 | IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 could allow a remote attacker to obtain sensiti... |
| CVE-2024-49818 | MEDIUM | 4.3 | 0.5% | Dec 17, 2024 | IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 could allow a remote attacker to obtain sensi... |
| CVE-2024-49817 | MEDIUM | 4.4 | 0.2% | Dec 17, 2024 | IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 stores user credentials in configuration files ... |
| CVE-2024-49816 | MEDIUM | 4.4 | 0.3% | Dec 17, 2024 | IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 stores potentially sensitive information in log... |
| CVE-2024-42194 | LOW | 3.1 | 0.3% | Dec 17, 2024 | An improper handling of insufficient permissions or privileges affects HCL BigFix Inventory. An attacker having access ... |
| CVE-2024-53144 | MEDIUM | 5.5 | 0.3% | Dec 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Align BR/EDR JUST_WORKS parin... |
| CVE-2024-12671 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12670 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vul... |
| CVE-2024-12669 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vul... |
| CVE-2024-12200 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12199 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12198 | HIGH | 7.8 | 0.5% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12197 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12194 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A... |
| CVE-2024-12193 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12192 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWF file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability.... |
| CVE-2024-12191 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12179 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vul... |
| CVE-2024-12178 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A... |
| CVE-2024-11422 | HIGH | 7.8 | 0.4% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Write vulnerability... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now