2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-34474HIGH7.8Clario through 2024-04-11 for Desktop has weak permissions for %PROGRAMDATA%\Clario and tries to load DLLs from there as...
CVE-2024-4497HIGH8.8A vulnerability was found in Tenda i21 1.0.0.14(4656). It has been declared as critical. This vulnerability affects the ...
CVE-2024-4496HIGH8.8A vulnerability was found in Tenda i21 1.0.0.14(4656). It has been classified as critical. This affects the function for...
CVE-2024-4495HIGH8.8A vulnerability was found in Tenda i21 1.0.0.14(4656) and classified as critical. Affected by this issue is the function...
CVE-2024-4494HIGH8.8A vulnerability has been found in Tenda i21 1.0.0.14(4656) and classified as critical. Affected by this vulnerability is...
CVE-2024-4493HIGH8.8A vulnerability, which was classified as critical, was found in Tenda i21 1.0.0.14(4656). Affected is the function formS...
CVE-2024-34489HIGH7.5OFPHello in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via length=0.
CVE-2024-34488HIGH7.5OFPMultipartReply in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via ...
CVE-2024-34487HIGH7.5OFPFlowStats in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via inst....
CVE-2024-34486HIGH7.5OFPPacketQueue in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via OFP...
CVE-2024-34483HIGH7.5OFPGroupDescStats in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via ...
CVE-2024-4492HIGH8.8A vulnerability, which was classified as critical, has been found in Tenda i21 1.0.0.14(4656). This issue affects the fu...
CVE-2024-34478HIGH7.5btcd before 0.24.0 does not correctly implement the consensus rules outlined in BIP 68 and BIP 112, making it susceptibl...
CVE-2024-4491HIGH8.8A vulnerability classified as critical was found in Tenda i21 1.0.0.14(4656). This vulnerability affects the function fo...
CVE-2024-34475HIGH7.5Open5GS before 2.7.1 is vulnerable to a reachable assertion that can cause an AMF crash via NAS messages from a UE: gmm_...
CVE-2024-34469HIGH7.1Rukovoditel before 3.5.3 allows XSS via user_photo to index.php?module=users/registration&action=save.
CVE-2024-3240HIGH8.8The ConvertPlug plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.5.25 ...
CVE-2024-34455HIGH7.5Buildroot before 0b2967e lacks the sticky bit for the /dev/shm directory. A fix was released in 2024.02.2.
CVE-2024-34066HIGH8.4Pterodactyl wings is the server control plane for Pterodactyl Panel. If the Wings token is leaked either by viewing the ...
CVE-2024-27453HIGH8.6In Extreme XOS through 22.6.1.4, a read-only user can escalate privileges to root via a crafted HTTP POST request to the...
CVE-2024-28519HIGH7.8A kernel handle leak issue in ProcObsrvesx.sys 4.0.0.49 in MicroWorld Technologies Inc eScan Antivirus could allow privi...
CVE-2024-34447HIGH7.5An issue was discovered in the Bouncy Castle Crypto Package For Java before BC TLS Java 1.0.19 (ships with BC Java 1.78,...
CVE-2024-33398HIGH7.5There is a ClusterRole in piraeus-operator v2.5.0 and earlier which has been granted list secrets permission, which allo...
CVE-2024-34446HIGH7.5Mullvad VPN through 2024.1 on Android does not set a DNS server in the blocking state (after a hard failure to create a ...
CVE-2024-33844HIGH7.5The 'control' in Parrot ANAFI USA firmware 1.10.4 does not check the MAV_MISSION_TYPE(0, 1, 2, 255), which allows attack...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now