2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41790 | HIGH | 7.2 | 0.7% | Apr 8, 2025 | A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de... |
| CVE-2024-41789 | HIGH | 7.2 | 0.7% | Apr 8, 2025 | A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de... |
| CVE-2024-41788 | HIGH | 7.2 | 0.7% | Apr 8, 2025 | A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de... |
| CVE-2024-47261 | MEDIUM | 4.3 | 0.3% | Apr 8, 2025 | 51l3nc3, a member of the AXIS OS Bug Bounty Program, has found that the VAPIX API uploadoverlayimage.cgi did not have su... |
| CVE-2024-13820 | MEDIUM | 5.3 | 0.3% | Apr 8, 2025 | The Melhor Envio plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includi... |
| CVE-2024-46494 | MEDIUM | 5.4 | 0.2% | Apr 7, 2025 | A cross-site scripting (XSS) vulnerability in Typecho v1.2.1 allows attackers to execute arbitrary web scripts or HTML v... |
| CVE-2024-38797 | MEDIUM | 4.6 | 0.2% | Apr 7, 2025 | EDK2 contains a vulnerability in the HashPeImageByType(). A user may cause a read out of bounds when a corrupted data po... |
| CVE-2024-49848 | MEDIUM | 6.7 | 0.1% | Apr 7, 2025 | Memory corruption while processing multiple IOCTL calls from HLOS to DSP. |
| CVE-2024-45557 | HIGH | 7.8 | 0.1% | Apr 7, 2025 | Memory corruption can occur when TME processes addresses from TZ and MPSS requests without proper validation. |
| CVE-2024-45556 | MEDIUM | 6.5 | 0.1% | Apr 7, 2025 | Cryptographic issue may arise because the access control configuration permits Linux to read key registers in TCSR. |
| CVE-2024-45552 | HIGH | 8.2 | 0.2% | Apr 7, 2025 | Information disclosure may occur during a video call if a device resets due to a non-conforming RTCP packet that doesn`t... |
| CVE-2024-45551 | MEDIUM | 6.2 | 0.1% | Apr 7, 2025 | Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verifi... |
| CVE-2024-45549 | HIGH | 7.7 | 0.1% | Apr 7, 2025 | Information disclosure while creating MQ channels. |
| CVE-2024-45544 | MEDIUM | 6.6 | 0.1% | Apr 7, 2025 | Memory corruption while processing IOCTL calls to add route entry in the HW. |
| CVE-2024-45543 | MEDIUM | 6.6 | 0.1% | Apr 7, 2025 | Memory corruption while accessing MSM channel map and mixer functions. |
| CVE-2024-45540 | MEDIUM | 6.6 | 0.1% | Apr 7, 2025 | Memory corruption while invoking IOCTL map buffer request from userspace. |
| CVE-2024-43067 | HIGH | 7.8 | 0.1% | Apr 7, 2025 | Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shar... |
| CVE-2024-43066 | HIGH | 7.8 | 0.1% | Apr 7, 2025 | Memory corruption while handling file descriptor during listener registration/de-registration. |
| CVE-2024-43065 | HIGH | 7.1 | 0.1% | Apr 7, 2025 | Cryptographic issues while generating an asymmetric key pair for RKP use cases. |
| CVE-2024-43058 | HIGH | 7.8 | 0.1% | Apr 7, 2025 | Memory corruption while processing IOCTL calls. |
| CVE-2024-43046 | MEDIUM | 5.5 | 0.1% | Apr 7, 2025 | There may be information disclosure during memory re-allocation in TZ Secure OS. |
| CVE-2024-33058 | HIGH | 7.5 | 0.1% | Apr 7, 2025 | Memory corruption while assigning memory from the source DDR memory(HLOS) to ADSP. |
| CVE-2024-11859 | HIGH | 8.4 | 1.8% | Apr 7, 2025 | DLL Search Order Hijacking vulnerability potentially allowed an attacker with administrator privileges to load a malicio... |
| CVE-2024-11071 | HIGH | 8.8 | 0.2% | Apr 7, 2025 | Permissive Cross-domain Policy with Untrusted Domains vulnerability in local API server of DestinyECM solution(versions ... |
| CVE-2024-58127 | CRITICAL | 9.1 | 0.2% | Apr 7, 2025 | Access control vulnerability in the security verification module Impact: Successful exploitation of this vulnerability w... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now