2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-29417HIGH8.4Insecure Permissions vulnerability in e-trust Horacius 1.0, 1.1, and 1.2 allows a local attacker to escalate privileges ...
CVE-2024-1067HIGH7.4Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Ge...
CVE-2024-33787HIGH8.2Hengan Weighing Management Information Query Platform 2019-2021 53.25 was discovered to contain a SQL injection vulnerab...
CVE-2024-4461HIGH7.8Unquoted path or search item vulnerability in SugarSync versions prior to 4.1.3 for Windows. This misconfiguration could...
CVE-2024-34073HIGH7.8sagemaker-python-sdk is a library for training and deploying machine learning models on Amazon SageMaker. In affected ve...
CVE-2024-34072HIGH7.8sagemaker-python-sdk is a library for training and deploying machine learning models on Amazon SageMaker. The sagemaker....
CVE-2024-33921HIGH8.8Broken Access Control vulnerability in ReviewX.This issue affects ReviewX: from n/a through 1.6.21.
CVE-2024-33924HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Realtyna Realtyna ...
CVE-2024-32810HIGH7.6Missing Authorization vulnerability in ShortPixel ShortPixel Critical CSS.This issue affects ShortPixel Critical CSS: fr...
CVE-2024-33946HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPify s.R.O. WPify...
CVE-2024-34402HIGH8.6An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long ke...
CVE-2024-34033HIGH8.8 Delta Electronics DIAEnergie has insufficient input validation which makes it possible to perform a path traversal atta...
CVE-2024-34032HIGH8.8 Delta Electronics DIAEnergie is vulnerable to an SQL injection vulnerability that exists in the GetDIACloudList endpoin...
CVE-2024-34031HIGH8.8 Delta Electronics DIAEnergie is vulnerable to an SQL injection vulnerability that exists in the script Handler_CFG.ashx...
CVE-2024-30306HIGH7.8Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds read vulnerability when ...
CVE-2024-30305HIGH7.8Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could...
CVE-2024-30304HIGH7.8Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could...
CVE-2024-30303HIGH7.8Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could...
CVE-2024-30301HIGH7.8Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could...
CVE-2024-25047HIGH8.6IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.2 is vulnerable to injection attacks in application l...
CVE-2024-4140HIGH7.5An excessive memory use issue (CWE-770) exists in Email-MIME, before version 1.954, which can cause denial of service wh...
CVE-2024-34394HIGH8.1libxmljs2 is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking the namesp...
CVE-2024-34393HIGH8.1libxmljs2 is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking a function...
CVE-2024-33396HIGH8.4An issue in karmada-io karmada v1.9.0 and before allows a local attacker to execute arbitrary code via a crafted command...
CVE-2024-4215HIGH8.8pgAdmin <= 8.5 is affected by a multi-factor authentication bypass vulnerability. This vulnerability allows an attacker ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now