2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-46914Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and...
CVE-2024-46483CRITICAL9.8Xlight FTP Server <3.9.4.3 has an integer overflow vulnerability in the packet parsing logic of the SFTP server, which c...
CVE-2024-46482HIGH8.2An arbitrary file upload vulnerability in the Ticket Generation function of Ladybird Web Solution Faveo-Helpdesk v2.0.3 ...
CVE-2024-44812CRITICAL9.8SQL Injection vulnerability in Online Complaint Site v.1.0 allows a remote attacker to escalate privileges via the usern...
CVE-2024-44331HIGH7.5Incorrect Access Control in GStreamer RTSP server 1.25.0 in gst-rtsp-server/rtsp-media.c allows remote attackers to caus...
CVE-2024-43812HIGH8.6Kieback & Peter's DDC4000 series has an insufficiently protected credentials vulnerability, which may allow an unauthent...
CVE-2024-43698CRITICAL9.8Kieback & Peter's DDC4000 series uses weak credentials, which may allow an unauthenticated attacker to get full admin ri...
CVE-2024-42643HIGH7.5Integer Overflow in fast_ping.c in SmartDNS Release46 allows remote attackers to cause a Denial of Service via misaligne...
CVE-2024-41717CRITICAL9.8Kieback & Peter's DDC4000 series is vulnerable to a path traversal vulnerability, which may allow an unauthenticated att...
CVE-2024-40494CRITICAL9.8Buffer Overflow in coap_msg.c in FreeCoAP allows remote attackers to execute arbitrary code or cause a denial of service...
CVE-2024-40493CRITICAL9.8Null Pointer Dereference in `coap_client_exchange_blockwise2` function in Keith Cullen FreeCoAP 1.0 allows remote attack...
CVE-2024-31029HIGH8.2An issue in the server_handle_regular function of the test_coap_server.c file within the FreeCoAP project allows remote ...
CVE-2024-26519CRITICAL9An issue in Casa Systems NTC-221 version 2.0.99.0 and before allows a remote attacker to execute arbitrary code via a cr...
CVE-2024-10231HIGH8.8Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corru...
CVE-2024-10230HIGH8.8Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corru...
CVE-2024-10229HIGH8.1Inappropriate implementation in Extensions in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to bypass s...
CVE-2024-48919CRITICAL9.2Cursor is a code editor built for programming with AI. Prior to Sep 27, 2024, if a user generated a terminal command via...
CVE-2024-45526MEDIUM5.3An issue was discovered in OPC Foundation OPCFoundation/UA-.NETStandard through 1.5.374.78. A remote attacker can send r...
CVE-2024-48904CRITICAL9.8An command injection vulnerability in Trend Micro Cloud Edge could allow a remote attacker to execute arbitrary code on ...
CVE-2024-48903HIGH7.8An improper access control vulnerability in Trend Micro Deep Security Agent 20 could allow a local attacker to escalate ...
CVE-2024-46903MEDIUM6.5A vulnerability in Trend Micro Deep Discovery Inspector (DDI) versions 5.8 and above could allow an attacker to disclose...
CVE-2024-46902CRITICAL9.1A vulnerability in Trend Micro Deep Discovery Inspector (DDI) versions 5.8 and above could allow an attacker to disclose...
CVE-2024-45335MEDIUM5.5Trend Micro Antivirus One, version 3.10.4 and below contains a vulnerability that could allow an attacker to use a speci...
CVE-2024-45334HIGH7.8Trend Micro Antivirus One versions 3.10.4 and below (Consumer) is vulnerable to an Arbitrary Configuration Update that c...
CVE-2024-41183HIGH7.8Trend Micro VPN, version 5.8.1012 and below is vulnerable to an arbitrary file overwrite under specific conditions that ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now