2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-23842 | HIGH | 7.5 | 0.5% | Jan 23, 2024 | Improper Input Validation in Hitron Systems DVR LGUVR-16H 1.02~4.02 allows an attacker to cause network attack in case o... |
| CVE-2024-22772 | HIGH | 7.5 | 0.5% | Jan 23, 2024 | Improper Input Validation in Hitron Systems DVR LGUVR-8H 1.02~4.02 allows an attacker to cause network attack in case of... |
| CVE-2024-22771 | HIGH | 7.5 | 0.5% | Jan 23, 2024 | Improper Input Validation in Hitron Systems DVR LGUVR-4H 1.02~4.02 allows an attacker to cause network attack in case of... |
| CVE-2024-22770 | HIGH | 7.5 | 0.5% | Jan 23, 2024 | Improper Input Validation in Hitron Systems DVR HVR-16781 1.03~4.02 allows an attacker to cause network attack in case o... |
| CVE-2024-22769 | HIGH | 7.5 | 0.5% | Jan 23, 2024 | Improper Input Validation in Hitron Systems DVR HVR-8781 1.03~4.02 allows an attacker to cause network attack in case of... |
| CVE-2024-22768 | HIGH | 7.5 | 0.6% | Jan 23, 2024 | Improper Input Validation in Hitron Systems DVR HVR-4781 1.03~4.02 allows an attacker to cause network attack in case of... |
| CVE-2024-23222 | HIGH | 8.8 | 10.6% | Jan 23, 2024 | A type confusion issue was addressed with improved checks. This issue is fixed in Safari 17.3, iOS 15.8.7 and iPadOS 15.... |
| CVE-2024-23214 | HIGH | 8.8 | 1.0% | Jan 23, 2024 | Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 16.7.5 and iP... |
| CVE-2024-23213 | HIGH | 8.8 | 1.5% | Jan 23, 2024 | The issue was addressed with improved memory handling. This issue is fixed in Safari 17.3, iOS 16.7.5 and iPadOS 16.7.5,... |
| CVE-2024-23212 | HIGH | 7.8 | 0.4% | Jan 23, 2024 | The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.5 and iPadOS 16.7.5, iOS 17.3 and... |
| CVE-2024-23209 | HIGH | 8.8 | 0.9% | Jan 23, 2024 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.3. Processing web content ... |
| CVE-2024-23208 | HIGH | 7.8 | 1.4% | Jan 23, 2024 | The issue was addressed with improved memory handling. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.... |
| CVE-2024-23204 | HIGH | 7.5 | 1.8% | Jan 23, 2024 | The issue was addressed with additional permissions checks. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.... |
| CVE-2024-23203 | HIGH | 7.5 | 0.9% | Jan 23, 2024 | The issue was addressed with additional permissions checks. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.... |
| CVE-2024-23342 | HIGH | 7.4 | 1.0% | Jan 23, 2024 | The `ecdsa` PyPI package is a pure Python implementation of ECC (Elliptic Curve Cryptography) with support for ECDSA (El... |
| CVE-2024-23678 | HIGH | 8.8 | 0.2% | Jan 22, 2024 | In Splunk Enterprise for Windows versions below 9.0.8 and 9.1.3, Splunk Enterprise does not correctly sanitize path inpu... |
| CVE-2024-0605 | HIGH | 7.5 | 0.4% | Jan 22, 2024 | Using a javascript: URI with a setTimeout race condition, an attacker can execute unauthorized scripts on top origin sit... |
| CVE-2024-22895 | HIGH | 8.8 | 0.8% | Jan 22, 2024 | DedeCMS 5.7.112 has a File Upload vulnerability via uploads/dede/module_upload.php. |
| CVE-2024-22233 | HIGH | 7.5 | 1.0% | Jan 22, 2024 | In Spring Framework versions 6.0.15 and 6.1.2, it is possible for a user to provide specially crafted HTTP requests that... |
| CVE-2024-0775 | HIGH | 7.1 | 0.2% | Jan 22, 2024 | A use-after-free flaw was found in the __ext4_remount in fs/ext4/super.c in ext4 in the Linux kernel. This flaw allows a... |
| CVE-2024-23768 | HIGH | 8.8 | 0.6% | Jan 22, 2024 | Dremio before 24.3.1 allows path traversal. An authenticated user who has no privileges on certain folders (and the file... |
| CVE-2024-23750 | HIGH | 8.8 | 1.0% | Jan 22, 2024 | MetaGPT through 0.6.4 allows the QaEngineer role to execute arbitrary code because RunCode.run_script() passes shell met... |
| CVE-2024-23744 | HIGH | 7.5 | 0.7% | Jan 21, 2024 | An issue was discovered in Mbed TLS 3.5.1. There is persistent handshake denial if a client sends a TLS 1.3 ClientHello ... |
| CVE-2024-0770 | HIGH | 7.1 | 0.3% | Jan 21, 2024 | A vulnerability, which was classified as critical, was found in European Chemicals Agency IUCLID 7.10.3 on Windows. Affe... |
| CVE-2024-23732 | HIGH | 7.5 | 0.8% | Jan 21, 2024 | The JSON loader in Embedchain before 0.1.57 allows a ReDoS (regular expression denial of service) via a long string to j... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now