2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-45340 | HIGH | 8.8 | 0.7% | Jan 28, 2025 | Credentials provided via the new GOAUTH feature were not being properly segmented by domain, allowing a malicious server... |
| CVE-2024-45339 | HIGH | 7.1 | 0.3% | Jan 28, 2025 | When logs are written to a widely-writable directory (the default), an unprivileged attacker may predict a privileged pr... |
| CVE-2024-57549 | HIGH | 7.5 | 0.6% | Jan 27, 2025 | CMSimple 5.16 allows the user to read cms source code through manipulation of the file name in the file parameter of a G... |
| CVE-2024-57547 | HIGH | 7.5 | 0.5% | Jan 27, 2025 | Insecure Permissions vulnerability in CMSimple v.5.16 allows a remote attacker to obtain sensitive information via a cra... |
| CVE-2024-57546 | HIGH | 7.5 | 0.6% | Jan 27, 2025 | An issue in CMSimple v.5.16 allows a remote attacker to obtain sensitive information via a crafted script to the validat... |
| CVE-2024-57373 | HIGH | 8.1 | 0.4% | Jan 27, 2025 | Cross Site Request Forgery (CSRF) vulnerability in LifestyleStore v1.0 allows a remote attacker to execute unauthorized ... |
| CVE-2024-56316 | HIGH | 7.5 | 0.5% | Jan 27, 2025 | In AXESS ACS (Auto Configuration Server) through 5.2.0, unsanitized user input in the TR069 API allows remote unauthenti... |
| CVE-2024-54557 | HIGH | 7.5 | 0.5% | Jan 27, 2025 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, ... |
| CVE-2024-54543 | HIGH | 8.8 | 0.8% | Jan 27, 2025 | The issue was addressed with improved memory handling. This issue is fixed in Safari 18.2, iOS 18.2 and iPadOS 18.2, iPa... |
| CVE-2024-54537 | HIGH | 8.2 | 0.2% | Jan 27, 2025 | This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.... |
| CVE-2024-54522 | HIGH | 7.8 | 0.2% | Jan 27, 2025 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2... |
| CVE-2024-54517 | HIGH | 7.8 | 0.2% | Jan 27, 2025 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2... |
| CVE-2024-54509 | HIGH | 7.8 | 0.3% | Jan 27, 2025 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.2, ma... |
| CVE-2024-54499 | HIGH | 8.8 | 0.6% | Jan 27, 2025 | A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 18.2 and iPadOS 18.2, m... |
| CVE-2024-54468 | HIGH | 8.2 | 0.2% | Jan 27, 2025 | The issue was addressed with improved checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macOS Sequ... |
| CVE-2024-12740 | HIGH | 7.8 | 0.2% | Jan 27, 2025 | Vision related software from NI used a third-party library for image processing that exposes several vulnerabilities. T... |
| CVE-2024-57276 | HIGH | 7.3 | 0.2% | Jan 27, 2025 | In Electronic Arts Dragon Age Origins 1.05, the DAUpdaterSVC service contains an unquoted service path vulnerability. Th... |
| CVE-2024-54146 | HIGH | 8.8 | 38.6% | Jan 27, 2025 | Cacti is an open source performance and fault management framework. Cacti has a SQL injection vulnerability in the templ... |
| CVE-2024-54145 | HIGH | 8.8 | 0.7% | Jan 27, 2025 | Cacti is an open source performance and fault management framework. Cacti has a SQL injection vulnerability in the get_d... |
| CVE-2024-48420 | HIGH | 8.8 | 0.5% | Jan 27, 2025 | Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to Buffer Overflow via /goform/getWifiBasic. |
| CVE-2024-48419 | HIGH | 8.8 | 2.1% | Jan 27, 2025 | Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 suffers from Command Injection issues in /bin/goahead. Specificall... |
| CVE-2024-48418 | HIGH | 8.8 | 0.3% | Jan 27, 2025 | In Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06, the request /goform/fromSetDDNS does not properly handle speci... |
| CVE-2024-48416 | HIGH | 8.8 | 0.5% | Jan 27, 2025 | Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to Buffer Overflow via /goform/fromSetLanDhcpsClient... |
| CVE-2024-27256 | HIGH | 7.5 | 0.2% | Jan 27, 2025 | IBM MQ Container 3.0.0, 3.0.1, 3.1.0 through 3.1.3 CD, 2.0.0 LTS through 2.0.22 LTS and 2.4.0 through 2.4.8, 2.3.0 throu... |
| CVE-2024-38325 | HIGH | 7.5 | 0.2% | Jan 27, 2025 | IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI could allow a remote attacker to obtain sensi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now