2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-20782 | HIGH | 7.8 | 0.3% | Jul 9, 2024 | InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by an out-of-bounds write vulnerability that could r... |
| CVE-2024-20781 | HIGH | 7.8 | 0.3% | Jul 9, 2024 | InDesign Desktop versions ID19.3, ID18.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that c... |
| CVE-2024-40039 | HIGH | 8.8 | 0.3% | Jul 9, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userGroup_deal.php?m... |
| CVE-2024-40037 | HIGH | 8.8 | 0.3% | Jul 9, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userScore_deal.php?m... |
| CVE-2024-40036 | HIGH | 8.8 | 0.6% | Jul 9, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userGroup_deal.php?m... |
| CVE-2024-40034 | HIGH | 8.8 | 0.3% | Jul 9, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userLevel_deal.php?m... |
| CVE-2024-39684 | HIGH | 7.8 | 0.4% | Jul 9, 2024 | Tencent RapidJSON is vulnerable to privilege escalation due to an integer overflow in the `GenericReader::ParseNumber()`... |
| CVE-2024-38517 | HIGH | 7.8 | 0.4% | Jul 9, 2024 | Tencent RapidJSON is vulnerable to privilege escalation due to an integer underflow in the `GenericReader::ParseNumber()... |
| CVE-2024-34123 | HIGH | 7 | 0.3% | Jul 9, 2024 | Premiere Pro versions 23.6.5, 24.4.1 and earlier are affected by an Untrusted Search Path vulnerability that could lead ... |
| CVE-2024-6222 | HIGH | 7 | 0.6% | Jul 9, 2024 | In Docker Desktop before v4.29.0, an attacker who has gained access to the Docker Desktop VM through a container breakou... |
| CVE-2024-39698 | HIGH | 7.5 | 0.3% | Jul 9, 2024 | electron-updater allows for automatic updates for Electron apps. The file `packages/electron-updater/src/windowsExecutab... |
| CVE-2024-31957 | HIGH | 7.5 | 0.3% | Jul 9, 2024 | A vulnerability was discovered in Samsung Mobile Processors Exynos 2200 and Exynos 2400 where they lack a check for the ... |
| CVE-2024-27362 | HIGH | 7.5 | 0.3% | Jul 9, 2024 | A vulnerability was discovered in Samsung Mobile Processors Exynos 1280, Exynos 2200, Exynos 1330, Exynos 1380, and Exyn... |
| CVE-2024-27360 | HIGH | 7.5 | 0.4% | Jul 9, 2024 | A vulnerability was discovered in Samsung Mobile Processors Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 12... |
| CVE-2024-38112 | HIGH | 7.5 | 84.3% | Jul 9, 2024 | Windows MSHTML Platform Spoofing Vulnerability |
| CVE-2024-38104 | HIGH | 8.8 | 1.8% | Jul 9, 2024 | Windows Fax Service Remote Code Execution Vulnerability |
| CVE-2024-38100 | HIGH | 7.8 | 4.5% | Jul 9, 2024 | Windows File Explorer Elevation of Privilege Vulnerability |
| CVE-2024-38095 | HIGH | 7.5 | 2.7% | Jul 9, 2024 | .NET and Visual Studio Denial of Service Vulnerability |
| CVE-2024-38094 | HIGH | 7.2 | 55.3% | Jul 9, 2024 | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2024-38092 | HIGH | 8.8 | 1.6% | Jul 9, 2024 | Azure CycleCloud Elevation of Privilege Vulnerability |
| CVE-2024-38091 | HIGH | 7.5 | 1.9% | Jul 9, 2024 | Microsoft WS-Discovery Denial of Service Vulnerability |
| CVE-2024-38088 | HIGH | 8.8 | 1.7% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-38087 | HIGH | 8.8 | 1.7% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-38085 | HIGH | 7.8 | 5.3% | Jul 9, 2024 | Windows Graphics Component Elevation of Privilege Vulnerability |
| CVE-2024-38081 | HIGH | 7.3 | 1.3% | Jul 9, 2024 | .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now