2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-36983 | HIGH | 8.8 | 1.0% | Jul 1, 2024 | In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109 and 9... |
| CVE-2024-36982 | HIGH | 7.5 | 0.5% | Jul 1, 2024 | In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109 and 9... |
| CVE-2024-21586 | HIGH | 7.5 | 0.5% | Jul 1, 2024 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N... |
| CVE-2024-36421 | HIGH | 7.5 | 8.5% | Jul 1, 2024 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, A ... |
| CVE-2024-36420 | HIGH | 7.5 | 1.8% | Jul 1, 2024 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, th... |
| CVE-2024-23380 | HIGH | 7.8 | 0.2% | Jul 1, 2024 | Memory corruption while handling user packets during VBO bind operation. |
| CVE-2024-23373 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released. |
| CVE-2024-23372 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption while invoking IOCTL call for GPU memory allocation and size param is greater than expected size. |
| CVE-2024-23368 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption when allocating and accessing an entry in an SMEM partition. |
| CVE-2024-21482 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of th... |
| CVE-2024-21469 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption when an invoke call and a TEE call are bound for the same trusted application. |
| CVE-2024-21466 | HIGH | 7.5 | 0.2% | Jul 1, 2024 | Information disclosure while parsing sub-IE length during new IE generation. |
| CVE-2024-21465 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption while processing key blob passed by the user. |
| CVE-2024-21461 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption while performing finish HMAC operation when context is freed by keymaster. |
| CVE-2024-21458 | HIGH | 7.5 | 0.2% | Jul 1, 2024 | Information disclosure while handling SA query action frame. |
| CVE-2024-21457 | HIGH | 7.5 | 0.2% | Jul 1, 2024 | INformation disclosure while handling Multi-link IE in beacon frame. |
| CVE-2024-24749 | HIGH | 7.5 | 0.8% | Jul 1, 2024 | GeoServer is an open source server that allows users to share and edit geospatial data. Prior to versions 2.23.5 and 2.2... |
| CVE-2024-6424 | HIGH | 8.2 | 0.5% | Jul 1, 2024 | External server-side request vulnerability in MESbook 20221021.03 version, which could allow a remote, unauthenticated a... |
| CVE-2024-6387 | HIGH | 8.1 | 99.5% | Jul 1, 2024 | A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lea... |
| CVE-2024-4007 | HIGH | 8.8 | 1.5% | Jul 1, 2024 | Default credential in install package in ABB ASPECT; NEXUS Series; MATRIX Series version 3.07 allows attacker to login t... |
| CVE-2024-39016 | HIGH | 8.1 | 0.6% | Jul 1, 2024 | che3vinci c3/utils-1 1.0.131 was discovered to contain a prototype pollution via the function assign. This vulnerability... |
| CVE-2024-39003 | HIGH | 7.3 | 0.5% | Jul 1, 2024 | amoyjs amoy common v1.0.10 was discovered to contain a prototype pollution via the function setValue. This vulnerability... |
| CVE-2024-38994 | HIGH | 7.3 | 0.5% | Jul 1, 2024 | amoyjs amoy common v1.0.10 was discovered to contain a prototype pollution via the function extend. This vulnerability a... |
| CVE-2024-38992 | HIGH | 8.8 | 0.8% | Jul 1, 2024 | airvertco frappejs v0.0.11 was discovered to contain a prototype pollution via the function registerView. This vulnerabi... |
| CVE-2024-38991 | HIGH | 8.8 | 0.8% | Jul 1, 2024 | akbr patch-into v1.0.1 was discovered to contain a prototype pollution via the function patchInto. This vulnerability al... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now