2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-45340HIGH8.8Credentials provided via the new GOAUTH feature were not being properly segmented by domain, allowing a malicious server...
CVE-2024-45339HIGH7.1When logs are written to a widely-writable directory (the default), an unprivileged attacker may predict a privileged pr...
CVE-2024-57549HIGH7.5CMSimple 5.16 allows the user to read cms source code through manipulation of the file name in the file parameter of a G...
CVE-2024-57547HIGH7.5Insecure Permissions vulnerability in CMSimple v.5.16 allows a remote attacker to obtain sensitive information via a cra...
CVE-2024-57546HIGH7.5An issue in CMSimple v.5.16 allows a remote attacker to obtain sensitive information via a crafted script to the validat...
CVE-2024-57373HIGH8.1Cross Site Request Forgery (CSRF) vulnerability in LifestyleStore v1.0 allows a remote attacker to execute unauthorized ...
CVE-2024-56316HIGH7.5In AXESS ACS (Auto Configuration Server) through 5.2.0, unsanitized user input in the TR069 API allows remote unauthenti...
CVE-2024-54557HIGH7.5A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, ...
CVE-2024-54543HIGH8.8The issue was addressed with improved memory handling. This issue is fixed in Safari 18.2, iOS 18.2 and iPadOS 18.2, iPa...
CVE-2024-54537HIGH8.2This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14....
CVE-2024-54522HIGH7.8The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2...
CVE-2024-54517HIGH7.8The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2...
CVE-2024-54509HIGH7.8An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.2, ma...
CVE-2024-54499HIGH8.8A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 18.2 and iPadOS 18.2, m...
CVE-2024-54468HIGH8.2The issue was addressed with improved checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macOS Sequ...
CVE-2024-12740HIGH7.8Vision related software from NI used a third-party library for image processing that exposes several vulnerabilities. T...
CVE-2024-57276HIGH7.3In Electronic Arts Dragon Age Origins 1.05, the DAUpdaterSVC service contains an unquoted service path vulnerability. Th...
CVE-2024-54146HIGH8.8Cacti is an open source performance and fault management framework. Cacti has a SQL injection vulnerability in the templ...
CVE-2024-54145HIGH8.8Cacti is an open source performance and fault management framework. Cacti has a SQL injection vulnerability in the get_d...
CVE-2024-48420HIGH8.8Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to Buffer Overflow via /goform/getWifiBasic.
CVE-2024-48419HIGH8.8Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 suffers from Command Injection issues in /bin/goahead. Specificall...
CVE-2024-48418HIGH8.8In Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06, the request /goform/fromSetDDNS does not properly handle speci...
CVE-2024-48416HIGH8.8Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to Buffer Overflow via /goform/fromSetLanDhcpsClient...
CVE-2024-27256HIGH7.5IBM MQ Container 3.0.0, 3.0.1, 3.1.0 through 3.1.3 CD, 2.0.0 LTS through 2.0.22 LTS and 2.4.0 through 2.4.8, 2.3.0 throu...
CVE-2024-38325HIGH7.5IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI could allow a remote attacker to obtain sensi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now