2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9994 | MEDIUM | 5.4 | 0.2% | Jun 7, 2025 | The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders plugin for Wo... |
| CVE-2024-9993 | MEDIUM | 5.4 | 0.2% | Jun 7, 2025 | The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders plugin for Wo... |
| CVE-2024-56805 | MEDIUM | 5.4 | 0.4% | Jun 6, 2025 | A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vu... |
| CVE-2024-50406 | MEDIUM | 5.4 | 0.2% | Jun 6, 2025 | A cross-site scripting (XSS) vulnerability has been reported to affect License Center. If exploited, the vulnerability c... |
| CVE-2024-13088 | HIGH | 7.8 | 0.2% | Jun 6, 2025 | An improper authentication vulnerability has been reported to affect QHora. If an attacker gains local network access, t... |
| CVE-2024-13087 | MEDIUM | 6.7 | 0.6% | Jun 6, 2025 | A command injection vulnerability has been reported to affect QHora. If an attacker gains local network access who have ... |
| CVE-2024-58114 | MEDIUM | 4 | 0.1% | Jun 6, 2025 | Resource allocation control failure vulnerability in the ArkUI framework Impact: Successful exploitation of this vulnera... |
| CVE-2024-46941 | MEDIUM | 4.8 | 0.1% | Jun 6, 2025 | SystemUI has an incorrect component protection setting, which allows access to specific information. |
| CVE-2024-56343 | MEDIUM | 6.5 | 0.3% | Jun 6, 2025 | IBM Verify Identity Access Digital Credentials 24.06 could allow an authenticated user to crash the service with a speci... |
| CVE-2024-56342 | MEDIUM | 5.3 | 0.3% | Jun 6, 2025 | IBM Verify Identity Access Digital Credentials 24.06 could allow a remote attacker to obtain sensitive information when ... |
| CVE-2024-22330 | CRITICAL | 9.8 | 0.3% | Jun 6, 2025 | IBM Security Verify Governance 10.0.2 does not require that users should have strong passwords by default, which makes i... |
| CVE-2024-13967 | CRITICAL | 9.4 | 0.4% | Jun 4, 2025 | This vulnerability allows the successful attacker to gain unauthorized access to a configuration web page delivered by ... |
| CVE-2024-31127 | HIGH | 7.3 | 0.1% | Jun 4, 2025 | An improper verification of a loaded library in Zscaler Client Connector on Mac < 4.2.0.241 may allow a local attacker t... |
| CVE-2024-45655 | MEDIUM | 5.5 | 0.1% | Jun 3, 2025 | IBM Application Gateway 19.12 through 24.09 could allow a local privileged user to perform unauthorized actions due to i... |
| CVE-2024-12718 | MEDIUM | 5.3 | 0.6% | Jun 3, 2025 | Allows modifying some file metadata (e.g. last modified) with filter="data" or file permissions (chmod) with filter="tar... |
| CVE-2024-54189 | HIGH | 7.8 | 0.3% | Jun 3, 2025 | A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (b... |
| CVE-2024-52561 | HIGH | 7.8 | 0.2% | Jun 3, 2025 | A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (b... |
| CVE-2024-36486 | HIGH | 7.8 | 0.3% | Jun 3, 2025 | A privilege escalation vulnerability exists in the virtual machine archive restoration functionality of Parallels Deskto... |
| CVE-2024-53026 | HIGH | 8.2 | 0.3% | Jun 3, 2025 | Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call. |
| CVE-2024-53021 | HIGH | 8.2 | 0.2% | Jun 3, 2025 | Information disclosure may occur while processing goodbye RTCP packet from network. |
| CVE-2024-53020 | HIGH | 8.2 | 0.2% | Jun 3, 2025 | Information disclosure may occur while decoding the RTP packet with invalid header extension from network. |
| CVE-2024-53019 | HIGH | 8.2 | 0.2% | Jun 3, 2025 | Information disclosure may occur while decoding the RTP packet with improper header length for number of contributing so... |
| CVE-2024-53018 | MEDIUM | 6.6 | 0.1% | Jun 3, 2025 | Memory corruption may occur while processing the OIS packet parser. |
| CVE-2024-53017 | MEDIUM | 6.6 | 0.1% | Jun 3, 2025 | Memory corruption while handling test pattern generator IOCTL command. |
| CVE-2024-53016 | MEDIUM | 6.6 | 0.1% | Jun 3, 2025 | Memory corruption while processing I2C settings in Camera driver. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now