2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-54024HIGH7.2An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in ...
CVE-2024-52962MEDIUM5.3An Improper Output Neutralization for Logs vulnerability [CWE-117] in FortiAnalyzer version 7.6.1 and below, version 7.4...
CVE-2024-50565HIGH7.5A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in Fortinet FortiOS versio...
CVE-2024-46671HIGH7.2An Incorrect User Management vulnerability [CWE-286] in FortiWeb version 7.6.2 and below, version 7.4.6 and below, versi...
CVE-2024-32122MEDIUM4.4A storing passwords in a recoverable format in Fortinet FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiOS 7...
CVE-2024-26013HIGH7.5A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in Fortinet FortiOS versio...
CVE-2024-54092CRITICAL9.8A vulnerability has been identified in Industrial Edge Device Kit - arm64 V1.17 (All versions), Industrial Edge Device K...
CVE-2024-41796MEDIUM6.9A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41795MEDIUM6.9A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41794CRITICAL9.8A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). Affected devices contain hardcod...
CVE-2024-41793HIGH7.5A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41792HIGH7.5A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41791MEDIUM6.5A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41790HIGH7.2A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41789HIGH7.2A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-41788HIGH7.2A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected de...
CVE-2024-47261MEDIUM4.351l3nc3, a member of the AXIS OS Bug Bounty Program, has found that the VAPIX API uploadoverlayimage.cgi did not have su...
CVE-2024-13820MEDIUM5.3The Melhor Envio plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includi...
CVE-2024-46494MEDIUM5.4A cross-site scripting (XSS) vulnerability in Typecho v1.2.1 allows attackers to execute arbitrary web scripts or HTML v...
CVE-2024-38797MEDIUM4.6EDK2 contains a vulnerability in the HashPeImageByType(). A user may cause a read out of bounds when a corrupted data po...
CVE-2024-49848MEDIUM6.7Memory corruption while processing multiple IOCTL calls from HLOS to DSP.
CVE-2024-45557HIGH7.8Memory corruption can occur when TME processes addresses from TZ and MPSS requests without proper validation.
CVE-2024-45556MEDIUM6.5Cryptographic issue may arise because the access control configuration permits Linux to read key registers in TCSR.
CVE-2024-45552HIGH8.2Information disclosure may occur during a video call if a device resets due to a non-conforming RTCP packet that doesn`t...
CVE-2024-45551MEDIUM6.2Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verifi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now