2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-13009 | HIGH | 7.2 | 0.4% | May 8, 2025 | In Eclipse Jetty versions 9.4.0 to 9.4.56 a buffer can be incorrectly released when confronted with a gzip error when in... |
| CVE-2024-6648 | HIGH | 7.5 | 0.6% | May 8, 2025 | Absolute Path Traversal vulnerability in AP Page Builder versions prior to 4.0.0 could allow an unauthenticated remote u... |
| CVE-2024-13793 | HIGH | 7.3 | 0.3% | May 8, 2025 | The Wolmart | Multi-Vendor Marketplace WooCommerce Theme theme for WordPress is vulnerable to arbitrary shortcode execut... |
| CVE-2024-55651 | MEDIUM | 5.4 | 0.2% | May 8, 2025 | i-Educar is free, fully online school management software. Version 2.9 of the application fails to properly validate and... |
| CVE-2024-11953 | — | — | — | May 7, 2025 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r... |
| CVE-2024-47619 | HIGH | 7.5 | 0.3% | May 7, 2025 | syslog-ng is an enhanced log daemo. Prior to version 4.8.2, `tls_wildcard_match()` matches on certificates such as `foo.... |
| CVE-2024-12120 | MEDIUM | 5.4 | 0.2% | May 7, 2025 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Count... |
| CVE-2024-12225 | CRITICAL | 9.1 | 0.3% | May 6, 2025 | A vulnerability was found in Quarkus in the quarkus-security-webauthn module. The Quarkus WebAuthn module publishes defa... |
| CVE-2024-49847 | HIGH | 7.5 | 0.2% | May 6, 2025 | Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key data IE. |
| CVE-2024-49846 | CRITICAL | 9.1 | 0.2% | May 6, 2025 | Memory corruption while decoding of OTA messages from T3448 IE. |
| CVE-2024-49845 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption during the FRS UDS generation process. |
| CVE-2024-49844 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption while triggering commands in the PlayReady Trusted application. |
| CVE-2024-49842 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions. |
| CVE-2024-49841 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling. |
| CVE-2024-49835 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption while reading secure file. |
| CVE-2024-49830 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption while processing an IOCTL call to set mixer controls. |
| CVE-2024-49829 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption can occur during context user dumps due to inadequate checks on buffer length. |
| CVE-2024-45583 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption while handling multiple IOCTL calls from userspace to operate DMA operations. |
| CVE-2024-45581 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption while sound model registration for voice activation with audio kernel driver. |
| CVE-2024-45579 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption may occur when invoking IOCTL calls from userspace to the camera kernel driver to dump request informa... |
| CVE-2024-45578 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption while acquire and update IOCTLs during IFE output resource ID validation. |
| CVE-2024-45577 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption while invoking IOCTL calls from userspace to camera kernel driver to dump request information. |
| CVE-2024-45576 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption while prociesing command buffer buffer in OPE module. |
| CVE-2024-45575 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption Camera kernel when large number of devices are attached through userspace. |
| CVE-2024-45574 | HIGH | 7.8 | 0.1% | May 6, 2025 | Memory corruption during array access in Camera kernel due to invalid index from invalid command data. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now