2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27377 | HIGH | 7.8 | 0.2% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I... |
| CVE-2024-27376 | HIGH | 7.8 | 0.2% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I... |
| CVE-2024-27375 | HIGH | 7.8 | 0.2% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I... |
| CVE-2024-27374 | HIGH | 7.8 | 0.2% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I... |
| CVE-2024-27373 | HIGH | 7.8 | 0.2% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I... |
| CVE-2024-27372 | HIGH | 7.8 | 0.2% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I... |
| CVE-2024-27371 | HIGH | 7.8 | 0.2% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I... |
| CVE-2024-27370 | HIGH | 7.8 | 0.2% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I... |
| CVE-2024-5037 | HIGH | 7.5 | 0.8% | Jun 5, 2024 | A flaw was found in OpenShift's Telemeter. If certain conditions are in place, an attacker can use a forged token to byp... |
| CVE-2024-4009 | HIGH | 7.8 | 0.1% | Jun 5, 2024 | Replay Attack in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to capture/re... |
| CVE-2024-4008 | HIGH | 8.8 | 0.3% | Jun 5, 2024 | FDSK Leak in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to take control vi... |
| CVE-2024-36129 | HIGH | 7.5 | 1.0% | Jun 5, 2024 | The OpenTelemetry Collector offers a vendor-agnostic implementation on how to receive, process and export telemetry data... |
| CVE-2024-35674 | HIGH | 8.8 | 0.4% | Jun 5, 2024 | Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templa... |
| CVE-2024-5629 | HIGH | 8.1 | 0.7% | Jun 5, 2024 | An out-of-bounds read in the 'bson' module of PyMongo 4.6.2 or earlier allows deserialization of malformed BSON provided... |
| CVE-2024-36837 | HIGH | 7.5 | 8.3% | Jun 5, 2024 | SQL Injection vulnerability in CRMEB v.5.2.2 allows a remote attacker to obtain sensitive information via the getProduct... |
| CVE-2024-1662 | HIGH | 7.5 | 0.4% | Jun 5, 2024 | Missing Authentication for Critical Function, Missing Authorization vulnerability in PORTY Smart Tech Technology Joint S... |
| CVE-2024-4743 | HIGH | 8.8 | 0.5% | Jun 5, 2024 | The LifterLMS – WordPress LMS Plugin for eLearning plugin for WordPress is vulnerable to SQL Injection via the orderBy a... |
| CVE-2024-1272 | HIGH | 7.5 | 0.4% | Jun 5, 2024 | Inclusion of Sensitive Information in Source Code vulnerability in TNB Mobile Solutions Cockpit Software allows Retrieve... |
| CVE-2024-23669 | HIGH | 8.8 | 0.5% | Jun 5, 2024 | An improper authorization in Fortinet FortiWebManager 7.2.0, FortiWebManager 7.0.0 through 7.0.4, FortiWebManager 6.3.0,... |
| CVE-2024-4084 | HIGH | 7.5 | 0.5% | Jun 5, 2024 | A Server-Side Request Forgery (SSRF) vulnerability exists in the latest version of mintplex-labs/anything-llm, allowing ... |
| CVE-2024-34363 | HIGH | 7.5 | 0.7% | Jun 4, 2024 | Envoy is a cloud-native, open source edge and service proxy. Due to how Envoy invoked the nlohmann JSON library, the lib... |
| CVE-2024-32976 | HIGH | 7.5 | 0.7% | Jun 4, 2024 | Envoy is a cloud-native, open source edge and service proxy. Envoyproxy with a Brotli filter can get into an endless loo... |
| CVE-2024-32975 | HIGH | 7.5 | 0.7% | Jun 4, 2024 | Envoy is a cloud-native, open source edge and service proxy. There is a crash at `QuicheDataReader::PeekVarInt62Length()... |
| CVE-2024-32974 | HIGH | 7.5 | 0.7% | Jun 4, 2024 | Envoy is a cloud-native, open source edge and service proxy. A crash was observed in `EnvoyQuicServerStream::OnInitialHe... |
| CVE-2024-23326 | HIGH | 8.2 | 0.4% | Jun 4, 2024 | Envoy is a cloud-native, open source edge and service proxy. A theoretical request smuggling vulnerability exists throug... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now