2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-10220HIGH8.1The Kubernetes kubelet component allows arbitrary command execution via specially crafted gitRepo volumes.This issue aff...
CVE-2024-52814LOW2.8Argo Helm is a collection of community maintained charts for `argoproj.github.io` projects. Prior to version 0.45.0, the...
CVE-2024-52804HIGH7.5Tornado is a Python web framework and asynchronous networking library. The algorithm used for parsing HTTP cookies in To...
CVE-2024-52802HIGH7.5RIOT is an operating system for internet of things (IoT) devices. In version 2024.04 and prior, the function `_parse_adv...
CVE-2024-52793MEDIUM5.1The Deno Standard Library provides APIs for Deno and the Web. Prior to version 1.0.11, `http/file-server`'s `serveDir` w...
CVE-2024-52723CRITICAL9.8In TOTOLINK X6000R V9.4.0cu.1041_B20240224 in the shttpd file, the Uci_Set Str function is used without strict parameter...
CVE-2024-51074MEDIUM6.7Incorrect access control in KIA Seltos vehicle instrument cluster with software and hardware v1.0 allows attackers to ar...
CVE-2024-51073MEDIUM6.7An issue in KIA Seltos vehicle instrument cluster with software and hardware v1.0 allows attackers to control or disrupt...
CVE-2024-51072MEDIUM5.3An issue in KIA Seltos vehicle instrument cluster with software and hardware v1.0 allows attackers to cause a Denial of ...
CVE-2024-50965MEDIUM5.4Cross Site Scripting vulnerability in Public Knowledge Project PKP Platform OJS/OMP/OPS- before v.3.3.0.16 allows an att...
CVE-2024-50401HIGH7.2A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver...
CVE-2024-50400HIGH7.2A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver...
CVE-2024-50399HIGH7.2A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver...
CVE-2024-50398HIGH7.2A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver...
CVE-2024-50397HIGH8.8A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver...
CVE-2024-50396HIGH8.8A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver...
CVE-2024-50395HIGH8.8An authorization bypass through user-controlled key vulnerability has been reported to affect Media Streaming add-on. If...
CVE-2024-48862CRITICAL9.8A link following vulnerability has been reported to affect QuLog Center. If exploited, the vulnerability could allow rem...
CVE-2024-48861HIGH7.8An OS command injection vulnerability has been reported to affect several product versions. If exploited, the vulnerabil...
CVE-2024-48860CRITICAL9.8An OS command injection vulnerability has been reported to affect several product versions. If exploited, the vulnerabil...
CVE-2024-38647HIGH7.5An exposure of sensitive information vulnerability has been reported to affect QNAP AI Core. If exploited, the vulnerabi...
CVE-2024-38646MEDIUM6An incorrect permission assignment for critical resource vulnerability has been reported to affect Notes Station 3. If e...
CVE-2024-38645MEDIUM6.5A server-side request forgery (SSRF) vulnerability has been reported to affect Notes Station 3. If exploited, the vulner...
CVE-2024-38644HIGH8.8An OS command injection vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could...
CVE-2024-38643CRITICAL9.8A missing authentication for critical function vulnerability has been reported to affect Notes Station 3. If exploited, ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now