2024 CVE Vulnerabilities
39,217 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-54013 | HIGH | 8.8 | 0.2% | Apr 28, 2026 | Penetration Testing engineers at Amazon have identified a security flaw related to request handling in the web server co... |
| CVE-2024-8010 | HIGH | 7.5 | 0.3% | Apr 16, 2026 | The component accepts XML input through the publisher without disabling external entity resolution. This allows maliciou... |
| CVE-2024-53412 | HIGH | 8.4 | 0.6% | Apr 15, 2026 | Command injection in the connect function in NietThijmen ShoppingCart 0.0.2 allows an attacker to execute arbitrary shel... |
| CVE-2024-33618 | HIGH | 7.5 | 0.5% | Apr 15, 2026 | Uncontrolled Resource Consumption in Bosch VMS Central Server in Bosch VMS 12.0.1 allows attackers to consume excessiv... |
| CVE-2024-1490 | HIGH | 7.2 | 0.7% | Apr 9, 2026 | An authenticated remote attacker with high privileges can exploit the OpenVPN configuration via the web-based management... |
| CVE-2024-14032 | HIGH | 8.5 | 0.2% | Apr 6, 2026 | Twitch Studio version 0.114.8 and prior contain a privilege escalation vulnerability in its privileged helper tool that ... |
| CVE-2024-14033 | HIGH | 8.7 | 0.4% | Apr 2, 2026 | Hirschmann EagleSDV firmware prior to 05.4.02 contains a denial-of-service vulnerability in TLS session establishment. A... |
| CVE-2024-44303 | HIGH | 7.5 | 0.3% | Apr 2, 2026 | The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.1. A malicious application may be ... |
| CVE-2024-44286 | HIGH | 7.5 | 0.3% | Apr 2, 2026 | This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.1. An attacker with ... |
| CVE-2024-44250 | HIGH | 8.2 | 0.2% | Apr 2, 2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.1. An app may be... |
| CVE-2024-44219 | HIGH | 7.5 | 0.3% | Apr 2, 2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.1. A malicious a... |
| CVE-2024-40858 | HIGH | 7.1 | 0.2% | Apr 2, 2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.1. An app may be... |
| CVE-2024-40849 | HIGH | 7.5 | 0.2% | Apr 2, 2026 | A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.1. An app may be able... |
| CVE-2024-14031 | HIGH | 8.1 | 0.4% | Mar 31, 2026 | Sereal::Encoder versions from 4.000 through 4.009_002 for Perl embeds a vulnerable version of the Zstandard library. Se... |
| CVE-2024-14030 | HIGH | 8.1 | 0.4% | Mar 31, 2026 | Sereal::Decoder versions from 4.000 through 4.009_002 for Perl embeds a vulnerable version of the Zstandard library. Se... |
| CVE-2024-11604 | HIGH | 7.3 | 0.1% | Mar 27, 2026 | Insertion of Sensitive Information into Log File vulnerability in the SCIM Driver module in OpenText IDM Driver and Exte... |
| CVE-2024-58341 | HIGH | 8.2 | 0.3% | Mar 25, 2026 | OpenCart Core 4.0.2.3 contains a SQL injection vulnerability that allows unauthenticated attackers to manipulate databas... |
| CVE-2024-51348 | HIGH | 8.8 | 0.4% | Mar 25, 2026 | A stack-based buffer overflow vulnerability in the P2P API service in BS Producten Petcam with firmware 33.1.0.0818 allo... |
| CVE-2024-51347 | HIGH | 7.2 | 0.3% | Mar 25, 2026 | A buffer overflow vulnerability in the dgiot binary in LSC Smart Indoor IP Camera V7.6.32. The flaw exists in the handli... |
| CVE-2024-51346 | HIGH | 7.7 | 0.1% | Mar 25, 2026 | An issue in Eufy Homebase 2 version 3.3.4.1h allows a local attacker to obtain sensitive information via the cryptograph... |
| CVE-2024-32537 | HIGH | 7.1 | 0.1% | Mar 20, 2026 | Cross-Site request forgery (CSRF) vulnerability in joshuae1974 Flash Video Player allows Cross Site Request Forgery.This... |
| CVE-2024-14026 | HIGH | 7.8 | 0.6% | Mar 11, 2026 | A command injection vulnerability has been reported to affect several QNAP operating system versions. If an attacker gai... |
| CVE-2024-55027 | HIGH | 7.5 | 0.2% | Mar 3, 2026 | Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to stroe credentials in plaintext in the component uac_... |
| CVE-2024-55022 | HIGH | 8.8 | 1.3% | Mar 3, 2026 | Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to contain an authenticated command injection vulnerabi... |
| CVE-2024-55021 | HIGH | 7.5 | 0.3% | Mar 3, 2026 | Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to contain a hardcoded password in the FTP protocol. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now