2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-52924HIGH7.5An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, ...
CVE-2024-52923HIGH7.5An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, ...
CVE-2024-58083HIGH7.8In the Linux kernel, the following vulnerability has been resolved: KVM: Explicitly verify target vCPU is online in kvm...
CVE-2024-51476HIGH7.5IBM Concert Software 1.0.5 uses an inadequate account lockout setting that could allow a remote attacker to brute force ...
CVE-2024-12742HIGH8.4A deserialization of untrusted data vulnerability exists in NI G Web Development Software that may result in arbitrary c...
CVE-2024-58072HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: remove unused check_buddy_priv Comm...
CVE-2024-58069HIGH7.8In the Linux kernel, the following vulnerability has been resolved: rtc: pcf85063: fix potential OOB write in PCF85063 ...
CVE-2024-58060HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bpf: Reject struct_ops registration that uses modul...
CVE-2024-58055HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_tcm: Don't free command immediately ...
CVE-2024-58054HIGH7.1In the Linux kernel, the following vulnerability has been resolved: staging: media: max96712: fix kernel oops when remo...
CVE-2024-42844HIGH8.1A SQL Injection vulnerability has been identified in EPICOR Prophet 21 (P21) up to 23.2.5232. This vulnerability allows ...
CVE-2024-12146HIGH7.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Finder Fire Safety...
CVE-2024-13893HIGH7.5Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, migh...
CVE-2024-13892HIGH7.7Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, are ...
CVE-2024-7872HIGH7.6Insertion of Sensitive Information Into Sent Data vulnerability in ExtremePACS Extreme XDS allows Retrieve Embedded Sens...
CVE-2024-57174HIGH8.1A misconfiguration in Alphion ASEE-1443 Firmware v0.4.H.00.02.15 defines a previously unregistered domain name as the de...
CVE-2024-51144HIGH8.8Cross Site Request Forgery (CSRF) vulnerability exists in the 'pvmsg.php?action=add_message', pvmsg.php?action=confirm_d...
CVE-2024-31525HIGH7.2Peppermint Ticket Management 0.4.6 is vulnerable to Incorrect Access Control. A regular registered user is able to eleva...
CVE-2024-53458HIGH7.5Sysax Multi Server 6.99 is vulnerable to a denial of service (DoS) condition when processing specially crafted SSH packe...
CVE-2024-11216HIGH7.6Authorization Bypass Through User-Controlled Key, Exposure of Private Personal Information to an Unauthorized Actor vuln...
CVE-2024-13471HIGH7.5The DesignThemes Core Features plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabi...
CVE-2024-13232HIGH8.8The WordPress Awesome Import & Export Plugin - Import & Export WordPress Data plugin for WordPress is vulnerable arbitra...
CVE-2024-0114HIGH8.1NVIDIA Hopper HGX for 8-GPU contains a vulnerability in the HGX Management Controller (HMC) that may allow a malicious a...
CVE-2024-10930HIGH7.8An Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to perform DLL hijacking an...
CVE-2024-9149HIGH8.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Wind Media E-Comme...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now