2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-41790HIGH7.2A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41789HIGH7.2A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41788HIGH7.2A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-47261MEDIUM4.351l3nc3, a member of the AXIS OS Bug Bounty Program, has found that the VAPIX API uploadoverlayimage.cgi did not have su...
CVE-2024-13820MEDIUM5.3The Melhor Envio plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includi...
CVE-2024-46494MEDIUM5.4A cross-site scripting (XSS) vulnerability in Typecho v1.2.1 allows attackers to execute arbitrary web scripts or HTML v...
CVE-2024-38797MEDIUM4.6EDK2 contains a vulnerability in the HashPeImageByType(). A user may cause a read out of bounds when a corrupted data po...
CVE-2024-49848MEDIUM6.7Memory corruption while processing multiple IOCTL calls from HLOS to DSP.
CVE-2024-45557HIGH7.8Memory corruption can occur when TME processes addresses from TZ and MPSS requests without proper validation.
CVE-2024-45556MEDIUM6.5Cryptographic issue may arise because the access control configuration permits Linux to read key registers in TCSR.
CVE-2024-45552HIGH8.2Information disclosure may occur during a video call if a device resets due to a non-conforming RTCP packet that doesn`t...
CVE-2024-45551MEDIUM6.2Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verifi...
CVE-2024-45549HIGH7.7Information disclosure while creating MQ channels.
CVE-2024-45544MEDIUM6.6Memory corruption while processing IOCTL calls to add route entry in the HW.
CVE-2024-45543MEDIUM6.6Memory corruption while accessing MSM channel map and mixer functions.
CVE-2024-45540MEDIUM6.6Memory corruption while invoking IOCTL map buffer request from userspace.
CVE-2024-43067HIGH7.8Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shar...
CVE-2024-43066HIGH7.8Memory corruption while handling file descriptor during listener registration/de-registration.
CVE-2024-43065HIGH7.1Cryptographic issues while generating an asymmetric key pair for RKP use cases.
CVE-2024-43058HIGH7.8Memory corruption while processing IOCTL calls.
CVE-2024-43046MEDIUM5.5There may be information disclosure during memory re-allocation in TZ Secure OS.
CVE-2024-33058HIGH7.5Memory corruption while assigning memory from the source DDR memory(HLOS) to ADSP.
CVE-2024-11859HIGH8.4DLL Search Order Hijacking vulnerability potentially allowed an attacker with administrator privileges to load a malicio...
CVE-2024-11071HIGH8.8Permissive Cross-domain Policy with Untrusted Domains vulnerability in local API server of DestinyECM solution(versions ...
CVE-2024-58127CRITICAL9.1Access control vulnerability in the security verification module Impact: Successful exploitation of this vulnerability w...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now