2024 CVE Vulnerabilities

39,217 CVEs published in 2024.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2024-3220LOW2.3There is a defect in the CPython standard library module “mimetypes” where on Windows the default list of known file loc...
CVE-2024-47266LOW2.7Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in share file list function...
CVE-2024-13125LOW3.5The Everest Forms WordPress plugin before 3.0.8.1 does not sanitise and escape some of its settings, which could allow ...
CVE-2024-13121LOW3.5The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content WordPress pl...
CVE-2024-34521LOW3.5A directory traversal vulnerability exists in the Mavenir SCE Application Provisioning Portal, version PORTAL-LBS-R_1_0_...
CVE-2024-39286LOW3.3Incorrect execution-assigned permissions in the Linux kernel mode driver for the Intel(R) 800 Series Ethernet Driver bef...
CVE-2024-39271LOW2.6Improper restriction of communication channel to intended endpoints in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ ...
CVE-2024-51324LOW3.8An issue in the BdApiUtil driver of Baidu Antivirus v5.2.3.116083 allows attackers to terminate arbitrary process via ex...
CVE-2024-12548LOW3.3Tungsten Automation Power PDF JP2 File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability a...
CVE-2024-52966LOW2.3An exposure of sensitive information to an unauthorized actor in Fortinet FortiAnalyzer 6.4.0 through 7.6.0 allows attac...
CVE-2024-52611LOW3.5The SolarWinds Platform is vulnerable to an information disclosure vulnerability through an error message. While the dat...
CVE-2024-56467LOW3.3IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret...
CVE-2024-55416LOW3.5DevDojo Voyager through version 1.8.0 is vulnerable to reflected XSS via /admin/compass. By manipulating an authenticate...
CVE-2024-0149LOW3.3NVIDIA GPU Display Driver for Linux contains a vulnerability which could allow an attacker unauthorized access to files....
CVE-2024-54516LOW3.3A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma ...
CVE-2024-54475LOW3.3A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia...
CVE-2024-44172LOW3.3A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia...
CVE-2024-43446LOW3.5An improper privilege management vulnerability in OTRS Generic Interface module allows change of the Ticket status even ...
CVE-2024-13116LOW3.8The Crelly Slider WordPress plugin before 1.4.7 does not sanitise and escape some of its settings, which could allow hig...
CVE-2024-35122LOW2.8IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to a file level local denial of service caused by an insufficient authority r...
CVE-2024-52328LOW2.3ECOVACS robot lawnmowers and vacuums insecurely store audio files used to indicate that the camera is on. An attacker wi...
CVE-2024-42186LOW2.8BigFix Patch Download Plug-ins are affected by an insecure protocol support. The application can allow improper handlin...
CVE-2024-42185LOW2.5BigFix Patch Download Plug-ins are affected by an insecure package which is susceptible to XML injection attacks. This ...
CVE-2024-42184LOW2.5BigFix Patch Download Plug-ins are affected by insecure support for file URI scheme. It could allow a malicious operato...
CVE-2024-42183LOW2.5BigFix Patch Download Plug-ins are affected by an arbitrary file download vulnerability. It could allow a malicious ope...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now