2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-21479HIGH7.5Transient DOS during music playback of ALAC content.
CVE-2024-21467HIGH7.5Information disclosure while handling beacon probe frame during scan entry generation in client side.
CVE-2024-21459HIGH7.5Information disclosure while handling beacon or probe response frame in STA.
CVE-2024-7409HIGH7.5A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS) attack via improper synchro...
CVE-2024-7396HIGH7.1Missing encryption of sensitive data in Korenix JetPort 5601v3 allows Eavesdropping.This issue affects JetPort 5601v3: t...
CVE-2024-7383HIGH7.4A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to co...
CVE-2024-6472HIGH7.8Certificate Validation user interface in LibreOffice allows potential vulnerability. Signed macros are scripts that ...
CVE-2024-4607HIGH7.8Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Ge...
CVE-2024-2937HIGH7.8Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Ge...
CVE-2024-36448HIGH7.3** UNSUPPORTED WHEN ASSIGNED ** Server-Side Request Forgery (SSRF) vulnerability in Apache IoTDB Workbench. This issue ...
CVE-2024-2232HIGH8.1The lacks CSRF checks allowing a user to invite any user to any group (including private groups)
CVE-2024-6117HIGH8.8A Unrestricted upload of file with dangerous type vulnerability in meeting management function in Hamastar MeetingHub Pa...
CVE-2024-41720HIGH8Incorrect permission assignment for critical resource issue exists in ZWX-2000CSW2-HN firmware versions prior to Ver.0.3...
CVE-2024-39838HIGH8.8ZWX-2000CSW2-HN firmware versions prior to Ver.0.3.15 uses hard-coded credentials, which may allow a network-adjacent at...
CVE-2024-39713HIGH8.6A Server-Side Request Forgery (SSRF) affects Rocket.Chat's Twilio webhook endpoint before version 6.10.1.
CVE-2024-7460HIGH8.8A vulnerability was found in OSWAPP Warehouse Inventory System 1.0/2.0. It has been declared as problematic. Affected by...
CVE-2024-7459HIGH8.8A vulnerability was found in OSWAPP Warehouse Inventory System 1.0/2.0. It has been classified as problematic. Affected ...
CVE-2024-7452HIGH8.7A vulnerability was found in itsourcecode Placement Management System 1.0. It has been classified as critical. This affe...
CVE-2024-7451HIGH8.7A vulnerability was found in itsourcecode Placement Management System 1.0 and classified as critical. Affected by this i...
CVE-2024-7450HIGH8.7A vulnerability has been found in itsourcecode Placement Management System 1.0 and classified as critical. Affected by t...
CVE-2024-7446HIGH7.2A vulnerability, which was classified as critical, was found in itsourcecode Ticket Reservation System 1.0. This affects...
CVE-2024-7445HIGH7.2A vulnerability, which was classified as critical, has been found in itsourcecode Ticket Reservation System 1.0. Affecte...
CVE-2024-7436HIGH8.8A vulnerability, which was classified as critical, has been found in D-Link DI-8100 16.07. This issue affects the functi...
CVE-2024-7031HIGH8.8The File Manager Pro – Filester plugin for WordPress is vulnerable to unauthorized modification of data due to a missing...
CVE-2024-7291HIGH7.2The JetFormBuilder plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 3.3....

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now