2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-45184 | MEDIUM | 6.2 | 0.2% | Oct 11, 2024 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with chipset Exynos 9820, 9825, 980,... |
| CVE-2024-48787 | CRITICAL | 9.1 | 0.5% | Oct 11, 2024 | An issue in Revic Optics Revic Ops (us.revic.revicops) 1.12.5 allows a remote attacker to obtain sensitive information v... |
| CVE-2024-48786 | CRITICAL | 9.1 | 0.5% | Oct 11, 2024 | An issue in SWITCHBOT INC SwitchBot (com.theswitchbot.switchbot) 5.0.4 allows a remote attacker to obtain sensitive info... |
| CVE-2024-48784 | CRITICAL | 9.8 | 0.5% | Oct 11, 2024 | An Incorrect Access Control issue in SAMPMAX com.sampmax.homemax 2.1.2.7 allows a remote attacker to obtain sensitive in... |
| CVE-2024-48778 | CRITICAL | 9.1 | 0.4% | Oct 11, 2024 | An issue in GIANT MANUFACTURING CO., LTD RideLink (tw.giant.ridelink) 2.0.7 allows a remote attacker to obtain sensitive... |
| CVE-2024-48777 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | LEDVANCE com.ledvance.smartplus.eu 2.1.10 allows a remote attacker to obtain sensitive information via the firmware upda... |
| CVE-2024-48776 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | An issue in Shelly com.home.shelly 1.0.4 allows a remote attacker to obtain sensitive information via the firmware updat... |
| CVE-2024-48775 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | An issue in Plug n Play Camera com.ezset.delaney 1.2.0 allows a remote attacker to obtain sensitive information via the ... |
| CVE-2024-48774 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | An issue in Fermax Asia Pacific Pte Ltd com.fermax.vida 2.4.6 allows a remote attacker to obtain sensitve information vi... |
| CVE-2024-48773 | HIGH | 7.5 | 0.5% | Oct 11, 2024 | An issue in WoFit v.7.2.3 allows a remote attacker to obtain sensitive information via the firmware update process |
| CVE-2024-48771 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | An issue in almando GmbH Almando Play APP (com.almando.play) 1.8.2 allows a remote attacker to obtain sensitive informat... |
| CVE-2024-48770 | HIGH | 8.2 | 0.4% | Oct 11, 2024 | An issue in Plug n Play Camera com.wisdomcity.zwave 1.1.0 allows a remote attacker to obtain sensitive information via t... |
| CVE-2024-48769 | CRITICAL | 9.1 | 0.4% | Oct 11, 2024 | An issue in BURG-WCHTER KG de.burgwachter.keyapp.app 4.5.0 allows a remote attacker to obtain sensitve information via t... |
| CVE-2024-48768 | HIGH | 7.5 | 0.5% | Oct 11, 2024 | An issue in almaodo GmbH appinventor.ai_google.almando_control 2.3.1 allows a remote attacker to obtain sensitive inform... |
| CVE-2024-47884 | LOW | 2.4 | 0.2% | Oct 11, 2024 | foxmarks is a CLI read-only interface for Firefox's bookmarks and history. A temporary file was created under the /tmp d... |
| CVE-2024-38365 | HIGH | 8.1 | 1.0% | Oct 11, 2024 | btcd is an alternative full node bitcoin implementation written in Go (golang). The btcd Bitcoin client (versions 0.10 t... |
| CVE-2024-8912 | HIGH | 7.5 | 0.2% | Oct 11, 2024 | An HTTP Request Smuggling vulnerability in Looker allowed an unauthorized attacker to capture HTTP responses destined fo... |
| CVE-2024-48041 | MEDIUM | 6.5 | 0.3% | Oct 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CreativeMindsSolut... |
| CVE-2024-48040 | MEDIUM | 6.5 | 0.5% | Oct 11, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in tainacan Tainacan ... |
| CVE-2024-48033 | CRITICAL | 9.8 | 0.6% | Oct 11, 2024 | Deserialization of Untrusted Data vulnerability in baptiste.gourdin Talkback talkback-secure-linkback-protocol allows Ob... |
| CVE-2024-48020 | HIGH | 8.5 | 0.5% | Oct 11, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in revmakx Backup and... |
| CVE-2024-47353 | MEDIUM | 6.1 | 0.2% | Oct 11, 2024 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in quomodosoft ElementsReady Addons for Elementor elem... |
| CVE-2024-47331 | CRITICAL | 9.8 | 0.6% | Oct 11, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ninja Team Multi S... |
| CVE-2024-9539 | MEDIUM | 4.3 | 0.6% | Oct 11, 2024 | An information disclosure vulnerability was identified in GitHub Enterprise Server via attacker uploaded asset URL allow... |
| CVE-2024-46532 | CRITICAL | 9.8 | 1.1% | Oct 11, 2024 | SQL Injection vulnerability in OpenHIS v.1.0 allows an attacker to execute arbitrary code via the refund function in the... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now