2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-5952MEDIUM6.5Deep Sea Electronics DSE855 Restart Missing Authentication Denial-of-Service Vulnerability. This vulnerability allows ne...
CVE-2024-5951MEDIUM6.5Deep Sea Electronics DSE855 Factory Reset Missing Authentication Denial-of-Service Vulnerability. This vulnerability all...
CVE-2024-5949MEDIUM6.5Deep Sea Electronics DSE855 Multipart Boundary Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows ...
CVE-2024-5947MEDIUM6.5Deep Sea Electronics DSE855 Configuration Backup Missing Authentication Information Disclosure Vulnerability. This vulne...
CVE-2024-38313MEDIUM4.3In certain scenarios a malicious website could attempt to display a fake location URL bar which could mislead users as t...
CVE-2024-38312MEDIUM6.5When browsing private tabs, some data related to location history or webpage thumbnails could be persisted incorrectly w...
CVE-2024-38083MEDIUM4.3Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2024-30058MEDIUM5.4Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2024-30057MEDIUM5.4Microsoft Edge for iOS Spoofing Vulnerability
CVE-2024-36589MEDIUM4.3An issue in Annonshop.app DecentralizeJustice/anonymousLocker commit 2b2b4 to ba9fd and DecentralizeJustice/anonBackend ...
CVE-2024-36588MEDIUM6.5An issue in Annonshop.app DecentralizeJustice/ anonymousLocker commit 2b2b4 allows attackers to send messages erroneousl...
CVE-2024-38283MEDIUM5.1Sensitive customer information is stored in the device without encryption.
CVE-2024-38280MEDIUM4.6An unauthorized user is able to gain access to sensitive data, including credentials, by physically retrieving the hard ...
CVE-2024-38279MEDIUM4.6The affected product is vulnerable to an attacker modifying the bootloader by using custom arguments to bypass authentic...
CVE-2024-37280MEDIUM4.9A flaw was discovered in Elasticsearch, affecting document ingestion when an index template contains a dynamic field map...
CVE-2024-37279MEDIUM4.3A flaw was discovered in Kibana, allowing view-only users of alerting to use the run_soon API making the alerting rule r...
CVE-2024-37877MEDIUM5.5UERANSIM before 3.2.6 allows out-of-bounds read when a RLS packet is sent to gNodeB with malformed PDU length. This occu...
CVE-2024-37307MEDIUM6.5Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Starting in version 1.13.0 an...
CVE-2024-28969MEDIUM4.3Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter...
CVE-2024-28968MEDIUM5.4Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for internal...
CVE-2024-28967MEDIUM5.4Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter...
CVE-2024-28966MEDIUM5.4Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter...
CVE-2024-28965MEDIUM5.4Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter...
CVE-2024-37309MEDIUM5.3CrateDB is a distributed SQL database. A high-risk vulnerability has been identified in versions prior to 5.7.2 where th...
CVE-2024-37308MEDIUM5.4The Cooked Pro recipe plugin for WordPress is vulnerable to Persistent Cross-Site Scripting (XSS) via the `_recipe_setti...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now