2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-51179HIGH7.5An issue in Open 5GS v.2.7.1 allows a remote attacker to cause a denial of service via the Network Function Virtualizati...
CVE-2024-48075MEDIUM5.3A Heap buffer overflow in the server-site handshake implementation in Real Time Logic SharkSSL from 09/09/24 and earlier...
CVE-2024-11168MEDIUM6.3The urllib.parse.urlsplit() and urlparse() functions improperly validated bracketed hosts (`[]`), allowing hosts that we...
CVE-2024-51094HIGH8An issue in Snipe-IT v.7.0.13 build 15514 allows a low-privileged attacker to modify their profile name and inject a mal...
CVE-2024-51093HIGH8.7Stored Cross-Site Scripting (XSS) vulnerability in Snipe-IT - v7.0.13 allows an attacker to upload a malicious XML file ...
CVE-2024-49512MEDIUM5.5InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could le...
CVE-2024-49511MEDIUM5.5InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could le...
CVE-2024-49510MEDIUM5.5InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could le...
CVE-2024-49509HIGH7.8InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that c...
CVE-2024-49508HIGH7.8InDesign Desktop versions ID18.5.2, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that c...
CVE-2024-49507HIGH7.8InDesign Desktop versions ID18.5.2, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that c...
CVE-2024-11117MEDIUM4.3Inappropriate implementation in FileSystem in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass f...
CVE-2024-11116MEDIUM4.3Inappropriate implementation in Blink in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced a ...
CVE-2024-11115HIGH8.8Insufficient policy enforcement in Navigation in Google Chrome on iOS prior to 131.0.6778.69 allowed a remote attacker t...
CVE-2024-11114HIGH8.3Inappropriate implementation in Views in Google Chrome on Windows prior to 131.0.6778.69 allowed a remote attacker who h...
CVE-2024-11113HIGH8.8Use after free in Accessibility in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who had compromised th...
CVE-2024-11112HIGH8.8Use after free in Media in Google Chrome on Windows prior to 131.0.6778.69 allowed a remote attacker to potentially expl...
CVE-2024-11111MEDIUM4.3Inappropriate implementation in Autofill in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced...
CVE-2024-11110MEDIUM6.5Inappropriate implementation in Extensions in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass s...
CVE-2024-52301HIGH7.5Laravel is a web application framework. When the register_argc_argv php directive is set to on , and users call any URL ...
CVE-2024-49525HIGH7.8Substance3D - Painter versions 10.1.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could ...
CVE-2024-49520HIGH7.8Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result...
CVE-2024-49519HIGH7.8Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result...
CVE-2024-49518HIGH7.8Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result...
CVE-2024-49517HIGH7.8Substance3D - Painter versions 10.1.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now