2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-58126CRITICAL9.1Access control vulnerability in the security verification module Impact: Successful exploitation of this vulnerability w...
CVE-2024-58125CRITICAL9.1Access control vulnerability in the security verification module Impact: Successful exploitation of this vulnerability w...
CVE-2024-58124CRITICAL9.1Access control vulnerability in the security verification module Impact: Successful exploitation of this vulnerability w...
CVE-2024-58116HIGH7.5Buffer overflow vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation of this v...
CVE-2024-58115HIGH7.5Buffer overflow vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation of this v...
CVE-2024-58113HIGH7.5Vulnerability of improper resource management in the memory management module Impact: Successful exploitation of this vu...
CVE-2024-58112HIGH7.5Exception capture failure vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation...
CVE-2024-58111HIGH7.5Exception capture failure vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation...
CVE-2024-58110HIGH7.5Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail...
CVE-2024-58109HIGH7.5Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail...
CVE-2024-58108HIGH7.5Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail...
CVE-2024-58107HIGH7.5Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail...
CVE-2024-58106HIGH7.5Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect avail...
CVE-2024-58133MEDIUM4In chainmaker-go (aka ChainMaker) before 2.4.0, when making frequent updates to a node's configuration file and restarti...
CVE-2024-58132MEDIUM4In chainmaker-go (aka ChainMaker) before 2.3.6, multiple updates to a single node's configuration can cause other normal...
CVE-2024-58131LOW3.7FISCO BCOS 3.11.0 has an issue with synchronization of the transaction pool that can, for example, be observed when a ma...
CVE-2024-56370MEDIUM6.5Net::Xero 0.044 and earlier for Perl uses the rand() function as the default source of entropy, which is not cryptograph...
CVE-2024-52322MEDIUM5.5WebService::Xero 0.11 and earlier for Perl uses the rand() function as the default source of entropy, which is not crypt...
CVE-2024-58036MEDIUM5.5Net::Dropbox::API 1.9 and earlier for Perl uses the rand() function as the default source of entropy, which is not crypt...
CVE-2024-57868MEDIUM5.5Web::API 2.8 and earlier for Perl uses the rand() function as the default source of entropy, which is not cryptographica...
CVE-2024-57835MEDIUM5.5Amon2::Auth::Site::LINE uses the String::Random module to generate nonce values.  String::Random defaults to Perl's bui...
CVE-2024-13776HIGH8.1The ZoomSounds - WordPress Wave Audio Player with Playlist plugin for WordPress is vulnerable to unauthorized modificati...
CVE-2024-13604HIGH7.5The KB Support – Customer Support Ticket & Helpdesk Plugin, Knowledge Base Plugin plugin for WordPress is vulnerable to ...
CVE-2024-11235HIGH8.1In PHP versions 8.3.* before 8.3.19 and 8.4.* before 8.4.5, a code sequence involving __set handler or ??=  operator and...
CVE-2024-51800CRITICAL9.8Incorrect Privilege Assignment vulnerability in Favethemes Homey allows Privilege Escalation.This issue affects Homey: f...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now