2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-50705 | HIGH | 7.1 | 0.2% | Mar 4, 2025 | Unauthenticated reflected cross-site scripting (XSS) vulnerability in Uniguest Tripleplay before 24.2.1 allows remote at... |
| CVE-2024-48248 | HIGH | 8.6 | 94.0% | Mar 4, 2025 | NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /... |
| CVE-2024-47259 | HIGH | 7.1 | 0.5% | Mar 4, 2025 | Girishunawane, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API dynamicoverlay.cgi did not have a ... |
| CVE-2024-51962 | HIGH | 8.7 | 0.5% | Mar 3, 2025 | A SQL injection vulnerability in ArcGIS Server allows an EDIT operation to modify column properties in a manner that cou... |
| CVE-2024-51961 | HIGH | 7.5 | 0.4% | Mar 3, 2025 | There is a local file inclusion vulnerability in ArcGIS Server 11.3 and below that may allow a remote, unauthenticated a... |
| CVE-2024-51954 | HIGH | 8.5 | 0.3% | Mar 3, 2025 | There is an improper access control issue in ArcGIS Server versions 11.3 and below on Windows and Linux which, under uni... |
| CVE-2024-53388 | HIGH | 8.8 | 0.6% | Mar 3, 2025 | A DOM Clobbering vulnerability in mavo v0.3.2 allows attackers to execute arbitrary code via supplying a crafted HTML el... |
| CVE-2024-53387 | HIGH | 8.8 | 0.6% | Mar 3, 2025 | A DOM Clobbering vulnerability in umeditor v1.2.3 allows attackers to execute arbitrary code via supplying a crafted HTM... |
| CVE-2024-45782 | HIGH | 7.8 | 0.2% | Mar 3, 2025 | A flaw was found in the HFS filesystem. When reading an HFS volume's name at grub_fs_mount(), the HFS filesystem driver ... |
| CVE-2024-41771 | HIGH | 7.5 | 0.4% | Mar 3, 2025 | IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote attacker to download tempo... |
| CVE-2024-41770 | HIGH | 7.5 | 0.4% | Mar 3, 2025 | IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote attacker to download tempo... |
| CVE-2024-8261 | HIGH | 7.5 | 0.4% | Mar 3, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Proliz Software OBS allows Exploiting Incorrectly Conf... |
| CVE-2024-53034 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption occurs during an Escape call if an invalid Kernel Mode CPU event and sync object handle are passed wit... |
| CVE-2024-53033 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption while doing Escape call when user provides valid kernel address in the place of valid user buffer addr... |
| CVE-2024-53032 | HIGH | 7 | 0.1% | Mar 3, 2025 | Memory corruption may occur in keyboard virtual device due to guest VM interaction. |
| CVE-2024-53031 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption while reading a type value from a buffer controlled by the Guest Virtual Machine. |
| CVE-2024-53030 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption while processing input message passed from FE driver. |
| CVE-2024-53029 | HIGH | 8.8 | 0.1% | Mar 3, 2025 | Memory corruption while reading a value from a buffer controlled by the Guest Virtual Machine. |
| CVE-2024-53028 | HIGH | 7 | 0.1% | Mar 3, 2025 | Memory corruption may occur while processing message from frontend during allocation. |
| CVE-2024-53027 | HIGH | 7.5 | 0.3% | Mar 3, 2025 | Transient DOS may occur while processing the country IE. |
| CVE-2024-53024 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption in display driver while detaching a device. |
| CVE-2024-53023 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption may occur while accessing a variable during extended back to back tests. |
| CVE-2024-53022 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption may occur during communication between primary and guest VM. |
| CVE-2024-53014 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption may occur while validating ports and channels in Audio driver. |
| CVE-2024-53012 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption may occur due to improper input validation in clock device. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now