2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-27377HIGH7.8An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-27376HIGH7.8An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-27375HIGH7.8An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-27374HIGH7.8An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-27373HIGH7.8An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-27372HIGH7.8An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-27371HIGH7.8An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-27370HIGH7.8An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-5037HIGH7.5A flaw was found in OpenShift's Telemeter. If certain conditions are in place, an attacker can use a forged token to byp...
CVE-2024-4009HIGH7.8Replay Attack in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to capture/re...
CVE-2024-4008HIGH8.8FDSK Leak in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to take control vi...
CVE-2024-36129HIGH7.5The OpenTelemetry Collector offers a vendor-agnostic implementation on how to receive, process and export telemetry data...
CVE-2024-35674HIGH8.8Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templa...
CVE-2024-5629HIGH8.1An out-of-bounds read in the 'bson' module of PyMongo 4.6.2 or earlier allows deserialization of malformed BSON provided...
CVE-2024-36837HIGH7.5SQL Injection vulnerability in CRMEB v.5.2.2 allows a remote attacker to obtain sensitive information via the getProduct...
CVE-2024-1662HIGH7.5Missing Authentication for Critical Function, Missing Authorization vulnerability in PORTY Smart Tech Technology Joint S...
CVE-2024-4743HIGH8.8The LifterLMS – WordPress LMS Plugin for eLearning plugin for WordPress is vulnerable to SQL Injection via the orderBy a...
CVE-2024-1272HIGH7.5Inclusion of Sensitive Information in Source Code vulnerability in TNB Mobile Solutions Cockpit Software allows Retrieve...
CVE-2024-23669HIGH8.8An improper authorization in Fortinet FortiWebManager 7.2.0, FortiWebManager 7.0.0 through 7.0.4, FortiWebManager 6.3.0,...
CVE-2024-4084HIGH7.5A Server-Side Request Forgery (SSRF) vulnerability exists in the latest version of mintplex-labs/anything-llm, allowing ...
CVE-2024-34363HIGH7.5Envoy is a cloud-native, open source edge and service proxy. Due to how Envoy invoked the nlohmann JSON library, the lib...
CVE-2024-32976HIGH7.5Envoy is a cloud-native, open source edge and service proxy. Envoyproxy with a Brotli filter can get into an endless loo...
CVE-2024-32975HIGH7.5Envoy is a cloud-native, open source edge and service proxy. There is a crash at `QuicheDataReader::PeekVarInt62Length()...
CVE-2024-32974HIGH7.5Envoy is a cloud-native, open source edge and service proxy. A crash was observed in `EnvoyQuicServerStream::OnInitialHe...
CVE-2024-23326HIGH8.2Envoy is a cloud-native, open source edge and service proxy. A theoretical request smuggling vulnerability exists throug...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now