2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-23257 | LOW | 3.3 | 0.4% | Mar 8, 2024 | The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, macOS Monter... |
| CVE-2024-23255 | LOW | 2.4 | 0.7% | Mar 8, 2024 | An authentication issue was addressed with improved state management. This issue is fixed in iOS 17.4 and iPadOS 17.4, m... |
| CVE-2024-23253 | LOW | 3.3 | 0.4% | Mar 8, 2024 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.4. An app may be ... |
| CVE-2024-23245 | LOW | 3.3 | 0.4% | Mar 8, 2024 | This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Monterey 12.7.4, ... |
| CVE-2024-23242 | LOW | 3.3 | 0.2% | Mar 8, 2024 | A privacy issue was addressed by not logging contents of text fields. This issue is fixed in iOS 17.4 and iPadOS 17.4, m... |
| CVE-2024-23240 | LOW | 2.4 | 0.3% | Mar 8, 2024 | The issue was addressed with improved checks. This issue is fixed in iOS 17.4 and iPadOS 17.4. Shake-to-undo may allow a... |
| CVE-2024-23238 | LOW | 3.3 | 0.2% | Mar 8, 2024 | An access issue was addressed with improved access restrictions. This issue is fixed in macOS Sonoma 14.4. An app may be... |
| CVE-2024-23232 | LOW | 3.3 | 0.2% | Mar 8, 2024 | A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sonoma 14.4. An ap... |
| CVE-2024-23227 | LOW | 3.3 | 0.2% | Mar 8, 2024 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Monterey 12.7.4,... |
| CVE-2024-28214 | LOW | 2.7 | 0.6% | Mar 7, 2024 | nGrinder before 3.5.9 allows to set delay without limitation, which could be the cause of Denial of Service by remote at... |
| CVE-2024-27288 | LOW | 3.1 | 0.5% | Mar 6, 2024 | 1Panel is an open source Linux server operation and maintenance management panel. Prior to version 1.10.1-lts, users can... |
| CVE-2024-25616 | LOW | 3.7 | 0.3% | Mar 5, 2024 | Aruba has identified certain configurations of ArubaOS that can lead to partial disclosure of sensitive information in t... |
| CVE-2024-23256 | LOW | 3.3 | 0.3% | Mar 5, 2024 | A logic issue was addressed with improved state management. This issue is fixed in iOS 17.4 and iPadOS 17.4. A user's lo... |
| CVE-2024-23243 | LOW | 3.3 | 0.6% | Mar 5, 2024 | A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 17.4 and ... |
| CVE-2024-20840 | LOW | 2.4 | 0.2% | Mar 5, 2024 | Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02 ... |
| CVE-2024-20834 | LOW | 3.3 | 0.1% | Mar 5, 2024 | The sensitive information exposure vulnerability in WlanTest prior to SMR Mar-2024 Release 1 allows local attackers to a... |
| CVE-2024-24901 | LOW | 2.3 | 0.1% | Mar 4, 2024 | Dell PowerScale OneFS 8.2.x through 9.6.0.x contain an insufficient logging vulnerability. A local malicious user with h... |
| CVE-2024-20038 | LOW | 3.4 | 0.1% | Mar 4, 2024 | In pq, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information dis... |
| CVE-2024-2133 | LOW | 2.4 | 0.5% | Mar 3, 2024 | A vulnerability, which was classified as problematic, was found in Bdtask Isshue Multi Store eCommerce Shopping Cart Sol... |
| CVE-2024-1949 | LOW | 2.6 | 0.3% | Feb 29, 2024 | A race condition in Mattermost versions 8.1.x before 8.1.9, and 9.4.x before 9.4.2 allows an authenticated attacker to g... |
| CVE-2024-26132 | LOW | 3.3 | 0.4% | Feb 29, 2024 | Element Android is an Android Matrix Client. A third-party malicious application installed on the same phone can force E... |
| CVE-2024-1128 | LOW | 3.5 | 0.5% | Feb 29, 2024 | The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to HTML Injection in all version... |
| CVE-2024-26476 | LOW | 3.5 | 0.4% | Feb 28, 2024 | An issue in open-emr before v.7.0.2 allows a remote attacker to escalate privileges via a crafted script to the formid p... |
| CVE-2024-25351 | LOW | 3.8 | 0.4% | Feb 28, 2024 | SQL Injection vulnerability in /zms/admin/changeimage.php in PHPGurukul Zoo Management System 1.0 allows attackers to ru... |
| CVE-2024-25196 | LOW | 3.3 | 0.3% | Feb 20, 2024 | Open Robotics Robotic Operating Sytstem 2 (ROS2) and Nav2 humble versions were discovered to contain a buffer overflow v... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now