2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37002 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted MODEL file, when parsed in ASMkern229A.dllthrough Autodesk applications, can be used to uninitiali... |
| CVE-2024-37001 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted 3DM file, when parsed in opennurbs.dll through Autodesk applications, can be used to cause a Heap-... |
| CVE-2024-37000 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted X_B file, when parsed in pskernel.DLL through Autodesk applications, can lead to a memory corrupti... |
| CVE-2024-23149 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted SLDDRW file, when parsed in ODXSW_DLL.dll through Autodesk applications, can force an Out-of-Bound... |
| CVE-2024-23148 | HIGH | 7.8 | 0.3% | Jun 25, 2024 | A maliciously crafted CATPRODUCT file, when parsed in CC5Dll.dll through Autodesk applications, can lead to a memory cor... |
| CVE-2024-23147 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted CATPART, X_B and STEP, when parsed in ASMKERN228A.dll and ASMKERN229A.dll through Autodesk applica... |
| CVE-2024-23146 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted X_B and X_T file, when parsed in pskernel.DLL through through Autodesk AutoCAD, may force an Out-o... |
| CVE-2024-23145 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted PRT file, when parsed in opennurbs.dll through Autodesk applications, can force an Out-of-Bound Re... |
| CVE-2024-23144 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted CATPART file, when parsed in CC5Dll.dll and ASMBASE228A.dll through Autodesk AutoCAD, may force an... |
| CVE-2024-23143 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted 3DM, MODEL and X_B file, when parsed in ASMkern229A.dll and ASMBASE229A.dll through Autodesk appli... |
| CVE-2024-23142 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted CATPART, STP, and MODEL file, when parsed in atf_dwg_consumer.dll, rose_x64_vc15.dll and libodxdll... |
| CVE-2024-23141 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted MODEL file, when parsed in libodxdll through Autodesk applications, can cause a double free. This ... |
| CVE-2024-23140 | HIGH | 7.8 | 0.4% | Jun 25, 2024 | A maliciously crafted 3DM and MODEL file, when parsed in opennurbs.dll and atf_api.dll through Autodesk applications, ca... |
| CVE-2024-36683 | HIGH | 7.3 | 1.0% | Jun 24, 2024 | SQL injection vulnerability in the module "Products Alert" (productsalert) before 1.7.4 from Smart Modules for PrestaSho... |
| CVE-2024-34992 | HIGH | 8.8 | 0.4% | Jun 24, 2024 | SQL Injection vulnerability in the module "Help Desk - Customer Support Management System" (helpdesk) up to version 2.4.... |
| CVE-2024-6293 | HIGH | 8.8 | 0.5% | Jun 24, 2024 | Use after free in Dawn in Google Chrome prior to 126.0.6478.126 allowed a remote attacker to potentially exploit heap co... |
| CVE-2024-6292 | HIGH | 8.8 | 0.5% | Jun 24, 2024 | Use after free in Dawn in Google Chrome prior to 126.0.6478.126 allowed a remote attacker to potentially exploit heap co... |
| CVE-2024-6291 | HIGH | 8.8 | 0.5% | Jun 24, 2024 | Use after free in Swiftshader in Google Chrome prior to 126.0.6478.126 allowed a remote attacker to potentially exploit ... |
| CVE-2024-6290 | HIGH | 8.8 | 0.5% | Jun 24, 2024 | Use after free in Dawn in Google Chrome prior to 126.0.6478.126 allowed a remote attacker to potentially exploit heap co... |
| CVE-2024-36682 | HIGH | 7.5 | 0.4% | Jun 24, 2024 | In the module "Theme settings" (pk_themesettings) <= 1.8.8 from Promokit.eu for PrestaShop, a guest can download all ema... |
| CVE-2024-34991 | HIGH | 7.5 | 0.4% | Jun 24, 2024 | In the module "Axepta" (axepta) before 1.3.4 from Quadra Informatique for PrestaShop, a guest can download partial credi... |
| CVE-2024-37677 | HIGH | 7.5 | 0.5% | Jun 24, 2024 | An issue in Shenzhen Weitillage Industrial Co., Ltd the access management specialist V6.62.51215 allows a remote attacke... |
| CVE-2024-38373 | HIGH | 8.1 | 0.6% | Jun 24, 2024 | FreeRTOS-Plus-TCP is a lightweight TCP/IP stack for FreeRTOS. FreeRTOS-Plus-TCP versions 4.0.0 through 4.1.0 contain a b... |
| CVE-2024-6287 | HIGH | 7.8 | 0.2% | Jun 24, 2024 | Incorrect Calculation vulnerability in Renesas arm-trusted-firmware allows Local Execution of Code. When checking whet... |
| CVE-2024-33687 | HIGH | 7.5 | 0.2% | Jun 24, 2024 | Insufficient verification of data authenticity issue exists in NJ Series CPU Unit all versions and NX Series CPU Unit al... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now