2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41648 | CRITICAL | 9.8 | 0.5% | Dec 6, 2024 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attac... |
| CVE-2024-41647 | CRITICAL | 9.8 | 0.7% | Dec 6, 2024 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attac... |
| CVE-2024-41646 | CRITICAL | 9.8 | 0.7% | Dec 6, 2024 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attac... |
| CVE-2024-41645 | CRITICAL | 9.8 | 0.7% | Dec 6, 2024 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attac... |
| CVE-2024-41644 | CRITICAL | 9.8 | 0.7% | Dec 6, 2024 | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attac... |
| CVE-2024-38927 | CRITICAL | 9.8 | 0.6% | Dec 6, 2024 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via... |
| CVE-2024-38926 | CRITICAL | 9.8 | 0.6% | Dec 6, 2024 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via... |
| CVE-2024-38925 | CRITICAL | 9.8 | 0.6% | Dec 6, 2024 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via... |
| CVE-2024-38924 | CRITICAL | 9.8 | 0.5% | Dec 6, 2024 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via... |
| CVE-2024-38923 | CRITICAL | 9.8 | 0.5% | Dec 6, 2024 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via... |
| CVE-2024-38922 | CRITICAL | 9.8 | 0.6% | Dec 6, 2024 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble version was discovered to contain a heap overflow in the... |
| CVE-2024-38921 | CRITICAL | 9.8 | 0.6% | Dec 6, 2024 | Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via... |
| CVE-2024-7875 | MEDIUM | 5.3 | 0.5% | Dec 6, 2024 | Tungsten Automation (Kofax) TotalAgility in versions all through 7.9.0.25.0.954 is vulnerable to a Reflected XSS attacks... |
| CVE-2024-7874 | MEDIUM | 5.3 | 0.5% | Dec 6, 2024 | Tungsten Automation (Kofax) TotalAgility in versions all through 7.9.0.25.0.954 is vulnerable to a Reflected XSS attacks... |
| CVE-2024-12326 | MEDIUM | 6.1 | 0.2% | Dec 6, 2024 | Jirafeau normally prevents browser preview for SVG files due to the possibility that manipulated SVG files could be expl... |
| CVE-2024-0139 | MEDIUM | 4.4 | 0.1% | Dec 6, 2024 | NVIDIA Base Command Manager and Bright Cluster Manager for Linux contain an insecure temporary file vulnerability. A suc... |
| CVE-2024-0130 | HIGH | 8.8 | 0.3% | Dec 6, 2024 | NVIDIA UFM Enterprise, UFM Appliance, and UFM CyberAI contain a vulnerability where an attacker can cause an improper au... |
| CVE-2024-52324 | CRITICAL | 9.8 | 0.7% | Dec 6, 2024 | Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x uses an inherently dangerous function which could allow... |
| CVE-2024-48874 | CRITICAL | 9.8 | 0.6% | Dec 6, 2024 | Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could give attackers the ability to force Ruijie's prox... |
| CVE-2024-47791 | MEDIUM | 5.3 | 0.4% | Dec 6, 2024 | Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow an attacker to subscribe to partial possibl... |
| CVE-2024-47146 | MEDIUM | 6.5 | 0.3% | Dec 6, 2024 | Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow an attacker to obtain the devices serial nu... |
| CVE-2024-46874 | CRITICAL | 9.9 | 0.4% | Dec 6, 2024 | Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow MQTT clients connecting with device credent... |
| CVE-2024-45722 | HIGH | 7.5 | 0.5% | Dec 6, 2024 | Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x uses weak credential mechanism that could allow an atta... |
| CVE-2024-52558 | MEDIUM | 6.9 | 0.6% | Dec 6, 2024 | The affected product is vulnerable to an integer underflow. An unauthenticated attacker could send a malformed HTTP requ... |
| CVE-2024-52320 | CRITICAL | 9.8 | 2.3% | Dec 6, 2024 | The affected product is vulnerable to a command injection. An unauthenticated attacker could send commands through a mal... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now