2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-23696HIGH7.8In RGXCreateZSBufferKM of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could le...
CVE-2024-23695HIGH7.8In CacheOpPMRExec of cache_km.c, there is a possible out of bounds write due to an integer overflow. This could lead to ...
CVE-2024-39063HIGH8.8Lime Survey <= 6.5.12 is vulnerable to Cross Site Request Forgery (CSRF). The YII_CSRF_TOKEN is only checked when passed...
CVE-2024-37872HIGH8.1SQL injection vulnerability in process.php in Itsourcecode Billing System in PHP 1.0 allows remote attackers to execute ...
CVE-2024-37871HIGH8.2SQL injection vulnerability in login.php in Itsourcecode Online Discussion Forum Project in PHP with Source Code 1.0 all...
CVE-2024-34139HIGH7.8Bridge versions 14.0.4, 13.0.7, 14.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability that co...
CVE-2024-29153HIGH8.1A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Ex...
CVE-2024-20785HIGH7.8InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that c...
CVE-2024-20783HIGH7.8InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that c...
CVE-2024-20782HIGH7.8InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by an out-of-bounds write vulnerability that could r...
CVE-2024-20781HIGH7.8InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that c...
CVE-2024-40039HIGH8.8idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userGroup_deal.php?m...
CVE-2024-40037HIGH8.8idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userScore_deal.php?m...
CVE-2024-40036HIGH8.8idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userGroup_deal.php?m...
CVE-2024-40034HIGH8.8idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userLevel_deal.php?m...
CVE-2024-39684HIGH7.8Tencent RapidJSON is vulnerable to privilege escalation due to an integer overflow in the `GenericReader::ParseNumber()`...
CVE-2024-38517HIGH7.8Tencent RapidJSON is vulnerable to privilege escalation due to an integer underflow in the `GenericReader::ParseNumber()...
CVE-2024-34123HIGH7Premiere Pro versions 23.6.5, 24.4.1 and earlier are affected by an Untrusted Search Path vulnerability that could lead ...
CVE-2024-6222HIGH7In Docker Desktop before v4.29.0, an attacker who has gained access to the Docker Desktop VM through a container breakou...
CVE-2024-39698HIGH7.5electron-updater allows for automatic updates for Electron apps. The file `packages/electron-updater/src/windowsExecutab...
CVE-2024-31957HIGH7.5A vulnerability was discovered in Samsung Mobile Processors Exynos 2200 and Exynos 2400 where they lack a check for the ...
CVE-2024-27362HIGH7.5A vulnerability was discovered in Samsung Mobile Processors Exynos 1280, Exynos 2200, Exynos 1330, Exynos 1380, and Exyn...
CVE-2024-27360HIGH7.5A vulnerability was discovered in Samsung Mobile Processors Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 12...
CVE-2024-38112HIGH7.5Windows MSHTML Platform Spoofing Vulnerability
CVE-2024-38104HIGH8.8Windows Fax Service Remote Code Execution Vulnerability

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now