2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-10220 | HIGH | 8.1 | 3.0% | Nov 22, 2024 | The Kubernetes kubelet component allows arbitrary command execution via specially crafted gitRepo volumes.This issue aff... |
| CVE-2024-52814 | LOW | 2.8 | 0.2% | Nov 22, 2024 | Argo Helm is a collection of community maintained charts for `argoproj.github.io` projects. Prior to version 0.45.0, the... |
| CVE-2024-52804 | HIGH | 7.5 | 1.1% | Nov 22, 2024 | Tornado is a Python web framework and asynchronous networking library. The algorithm used for parsing HTTP cookies in To... |
| CVE-2024-52802 | HIGH | 7.5 | 0.7% | Nov 22, 2024 | RIOT is an operating system for internet of things (IoT) devices. In version 2024.04 and prior, the function `_parse_adv... |
| CVE-2024-52793 | MEDIUM | 5.1 | 0.6% | Nov 22, 2024 | The Deno Standard Library provides APIs for Deno and the Web. Prior to version 1.0.11, `http/file-server`'s `serveDir` w... |
| CVE-2024-52723 | CRITICAL | 9.8 | 1.0% | Nov 22, 2024 | In TOTOLINK X6000R V9.4.0cu.1041_B20240224 in the shttpd file, the Uci_Set Str function is used without strict parameter... |
| CVE-2024-51074 | MEDIUM | 6.7 | 0.3% | Nov 22, 2024 | Incorrect access control in KIA Seltos vehicle instrument cluster with software and hardware v1.0 allows attackers to ar... |
| CVE-2024-51073 | MEDIUM | 6.7 | 0.3% | Nov 22, 2024 | An issue in KIA Seltos vehicle instrument cluster with software and hardware v1.0 allows attackers to control or disrupt... |
| CVE-2024-51072 | MEDIUM | 5.3 | 0.2% | Nov 22, 2024 | An issue in KIA Seltos vehicle instrument cluster with software and hardware v1.0 allows attackers to cause a Denial of ... |
| CVE-2024-50965 | MEDIUM | 5.4 | 0.3% | Nov 22, 2024 | Cross Site Scripting vulnerability in Public Knowledge Project PKP Platform OJS/OMP/OPS- before v.3.3.0.16 allows an att... |
| CVE-2024-50401 | HIGH | 7.2 | 0.6% | Nov 22, 2024 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-50400 | HIGH | 7.2 | 0.6% | Nov 22, 2024 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-50399 | HIGH | 7.2 | 0.6% | Nov 22, 2024 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-50398 | HIGH | 7.2 | 0.6% | Nov 22, 2024 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-50397 | HIGH | 8.8 | 0.7% | Nov 22, 2024 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-50396 | HIGH | 8.8 | 0.6% | Nov 22, 2024 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-50395 | HIGH | 8.8 | 1.3% | Nov 22, 2024 | An authorization bypass through user-controlled key vulnerability has been reported to affect Media Streaming add-on. If... |
| CVE-2024-48862 | CRITICAL | 9.8 | 0.9% | Nov 22, 2024 | A link following vulnerability has been reported to affect QuLog Center. If exploited, the vulnerability could allow rem... |
| CVE-2024-48861 | HIGH | 7.8 | 0.8% | Nov 22, 2024 | An OS command injection vulnerability has been reported to affect several product versions. If exploited, the vulnerabil... |
| CVE-2024-48860 | CRITICAL | 9.8 | 1.5% | Nov 22, 2024 | An OS command injection vulnerability has been reported to affect several product versions. If exploited, the vulnerabil... |
| CVE-2024-38647 | HIGH | 7.5 | 0.6% | Nov 22, 2024 | An exposure of sensitive information vulnerability has been reported to affect QNAP AI Core. If exploited, the vulnerabi... |
| CVE-2024-38646 | MEDIUM | 6 | 0.2% | Nov 22, 2024 | An incorrect permission assignment for critical resource vulnerability has been reported to affect Notes Station 3. If e... |
| CVE-2024-38645 | MEDIUM | 6.5 | 0.6% | Nov 22, 2024 | A server-side request forgery (SSRF) vulnerability has been reported to affect Notes Station 3. If exploited, the vulner... |
| CVE-2024-38644 | HIGH | 8.8 | 1.6% | Nov 22, 2024 | An OS command injection vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could... |
| CVE-2024-38643 | CRITICAL | 9.8 | 0.9% | Nov 22, 2024 | A missing authentication for critical function vulnerability has been reported to affect Notes Station 3. If exploited, ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now