2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27801 | HIGH | 7.8 | 0.4% | Jun 10, 2024 | The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 1... |
| CVE-2024-37393 | HIGH | 7.5 | 3.3% | Jun 10, 2024 | Multiple LDAP injections vulnerabilities exist in SecurEnvoy MFA before 9.4.514 due to improper validation of user-suppl... |
| CVE-2024-36416 | HIGH | 7.5 | 2.0% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6... |
| CVE-2024-36415 | HIGH | 8.8 | 0.9% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6... |
| CVE-2024-36411 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. In versions prior to 7.14.4 and ... |
| CVE-2024-23299 | HIGH | 8.6 | 0.2% | Jun 10, 2024 | The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ven... |
| CVE-2024-22279 | HIGH | 7.5 | 0.4% | Jun 10, 2024 | Improper handling of requests in Routing Release > v0.273.0 and <= v0.297.0 allows an unauthenticated attacker to degrad... |
| CVE-2024-36410 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. In versions prior to 7.14.4 and ... |
| CVE-2024-36409 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. In versions prior to 7.14.4 and ... |
| CVE-2024-5102 | HIGH | 7 | 0.2% | Jun 10, 2024 | A sym-linked file accessed via the repair function in Avast Antivirus <24.2 on Windows may allow user to elevate privile... |
| CVE-2024-36408 | HIGH | 8.8 | 0.5% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. In versions prior to 7.14.4 and ... |
| CVE-2024-35745 | HIGH | 7.5 | 0.6% | Jun 10, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Gabriel Somoza / Joseph ... |
| CVE-2024-37051 | HIGH | 7.5 | 3.8% | Jun 10, 2024 | GitHub access token could be exposed to third-party sites in JetBrains IDEs after version 2023.1 and less than: IntelliJ... |
| CVE-2024-35650 | HIGH | 7.2 | 0.6% | Jun 10, 2024 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2024-34800 | HIGH | 7.6 | 0.3% | Jun 10, 2024 | Missing Authorization vulnerability in Crafthemes Crafthemes Demo Import crafthemes-demo-import allows Exploiting Incorr... |
| CVE-2024-34761 | HIGH | 8.5 | 0.4% | Jun 10, 2024 | Vulnerability discovered by executing a planned security audit. Improper Control of Generation of Code ('Code Injection... |
| CVE-2024-34332 | HIGH | 7.8 | 0.2% | Jun 10, 2024 | An issue in SiSoftware SANDRA v31.66 (SANDRA.sys 15.18.1.1) and before allows an attacker to escalate privileges via a c... |
| CVE-2024-26507 | HIGH | 7.8 | 0.2% | Jun 10, 2024 | An issue in FinalWire AIRDA Extreme, AIDA64 Engineer, AIDA64 Business, AIDA64 Network Audit v.7.00.6700 and before allow... |
| CVE-2024-4403 | HIGH | 8.8 | 0.2% | Jun 10, 2024 | A Cross-Site Request Forgery (CSRF) vulnerability exists in the restart_program function of the parisneo/lollms-webui v9... |
| CVE-2024-36972 | HIGH | 7.8 | 0.7% | Jun 10, 2024 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Update unix_sk(sk)->oob_skb under sk_recei... |
| CVE-2024-36528 | HIGH | 8.8 | 0.8% | Jun 10, 2024 | nukeviet v.4.5 and before and nukeviet-egov v.1.2.02 and before have a Deserialization vulnerability which results in co... |
| CVE-2024-5785 | HIGH | 8 | 0.9% | Jun 10, 2024 | Command injection vulnerability in Comtrend router WLD71-T1_v2.0.201820, affecting the GRG-4280us version. This vulnerab... |
| CVE-2024-36405 | HIGH | 7.5 | 0.5% | Jun 10, 2024 | liboqs is a C-language cryptographic library that provides implementations of post-quantum cryptography algorithms. A co... |
| CVE-2024-28833 | HIGH | 7.5 | 0.4% | Jun 10, 2024 | Improper restriction of excessive authentication attempts with two factor authentication methods in Checkmk 2.3 before 2... |
| CVE-2024-36971 | HIGH | 7.8 | 2.7% | Jun 10, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: fix __dst_negative_advice() race __dst_negati... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now