2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41990 | HIGH | 7.5 | 1.3% | Aug 7, 2024 | An issue was discovered in Django 5.0 before 5.0.8 and 4.2 before 4.2.15. The urlize() and urlizetrunc() template filter... |
| CVE-2024-41989 | HIGH | 7.5 | 1.2% | Aug 7, 2024 | An issue was discovered in Django 5.0 before 5.0.8 and 4.2 before 4.2.15. The floatformat template filter is subject to ... |
| CVE-2024-7579 | HIGH | 8.8 | 8.4% | Aug 7, 2024 | A vulnerability was found in Alien Technology ALR-F800 up to 19.10.24.00. It has been declared as critical. Affected by ... |
| CVE-2024-43199 | HIGH | 7.8 | 1.1% | Aug 7, 2024 | Nagios NDOUtils before 2.1.4 allows privilege escalation from nagios to root because certain executable files are owned ... |
| CVE-2024-43044 | HIGH | 8.8 | 28.8% | Aug 7, 2024 | Jenkins 2.470 and earlier, LTS 2.452.3 and earlier allows agent processes to read arbitrary files from the Jenkins contr... |
| CVE-2024-7265 | HIGH | 8.8 | 0.5% | Aug 7, 2024 | Incorrect User Management vulnerability in Naukowa i Akademicka Sieć Komputerowa - Państwowy Instytut Badawczy EZD RP al... |
| CVE-2024-7553 | HIGH | 7.8 | 0.3% | Aug 7, 2024 | Incorrect validation of files loaded from a local untrusted directory may allow local privilege escalation if the underl... |
| CVE-2024-5290 | HIGH | 7.8 | 0.7% | Aug 7, 2024 | An issue was discovered in Ubuntu wpa_supplicant that resulted in loading of arbitrary shared objects, which allows a lo... |
| CVE-2024-42062 | HIGH | 7.2 | 0.9% | Aug 7, 2024 | CloudStack account-users by default use username and password based authentication for API and UI access. Account-users ... |
| CVE-2024-36132 | HIGH | 7.5 | 1.2% | Aug 7, 2024 | Insufficient verification of authentication controls in EPMM prior to 12.1.0.1 allows a remote attacker to bypass authen... |
| CVE-2024-36131 | HIGH | 8.8 | 2.3% | Aug 7, 2024 | An insecure deserialization vulnerability in web component of EPMM prior to 12.1.0.1 allows an authenticated remote atta... |
| CVE-2024-34623 | HIGH | 7.8 | 0.2% | Aug 7, 2024 | Out-of-bounds write in applying connected information in Samsung Notes prior to version 4.4.21.62 allows local attackers... |
| CVE-2024-34622 | HIGH | 7.8 | 0.2% | Aug 7, 2024 | Out-of-bounds write in appending paragraph in Samsung Notes prior to version 4.4.21.62 allows local attackers to potenti... |
| CVE-2024-34620 | HIGH | 7.8 | 0.1% | Aug 7, 2024 | Improper privilege management in SumeNNService prior to SMR Aug-2024 Release 1 allows local attackers to start privilege... |
| CVE-2024-34619 | HIGH | 8.8 | 0.5% | Aug 7, 2024 | Improper input validation in librtp.so prior to SMR Aug-2024 Release 1 allows remote attackers to execute arbitrary code... |
| CVE-2024-34615 | HIGH | 7.8 | 0.1% | Aug 7, 2024 | Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to cause memory corruption. |
| CVE-2024-34614 | HIGH | 7.8 | 0.2% | Aug 7, 2024 | Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code. |
| CVE-2024-34612 | HIGH | 7.8 | 0.2% | Aug 7, 2024 | Out-of-bound write in libcodec2secmp4vdec.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary... |
| CVE-2024-7550 | HIGH | 8.8 | 0.6% | Aug 6, 2024 | Type Confusion in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2024-7536 | HIGH | 8.8 | 0.6% | Aug 6, 2024 | Use after free in WebAudio in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap... |
| CVE-2024-7535 | HIGH | 8.8 | 0.6% | Aug 6, 2024 | Inappropriate implementation in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially expl... |
| CVE-2024-7534 | HIGH | 8.8 | 0.6% | Aug 6, 2024 | Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit ... |
| CVE-2024-7533 | HIGH | 8.8 | 0.6% | Aug 6, 2024 | Use after free in Sharing in Google Chrome on iOS prior to 127.0.6533.99 allowed a remote attacker to potentially exploi... |
| CVE-2024-7532 | HIGH | 8.8 | 0.8% | Aug 6, 2024 | Out of bounds memory access in ANGLE in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially ex... |
| CVE-2024-42219 | HIGH | 7.8 | 0.3% | Aug 6, 2024 | 1Password 8 before 8.10.36 for macOS allows local attackers to exfiltrate vault items because XPC inter-process communic... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now