2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-8957HIGH7.2PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an OS command injection issue. The camera does not su...
CVE-2024-8909MEDIUM4.3Inappropriate implementation in UI in Google Chrome on iOS prior to 129.0.6668.58 allowed a remote attacker to perform U...
CVE-2024-8908MEDIUM4.3Inappropriate implementation in Autofill in Google Chrome prior to 129.0.6668.58 allowed a remote attacker to perform UI...
CVE-2024-8907MEDIUM6.1Insufficient data validation in Omnibox in Google Chrome on Android prior to 129.0.6668.58 allowed a remote attacker who...
CVE-2024-8906MEDIUM4.3Incorrect security UI in Downloads in Google Chrome prior to 129.0.6668.58 allowed a remote attacker who convinced a use...
CVE-2024-8905HIGH8.8Inappropriate implementation in V8 in Google Chrome prior to 129.0.6668.58 allowed a remote attacker to potentially expl...
CVE-2024-8904HIGH8.8Type Confusion in V8 in Google Chrome prior to 129.0.6668.58 allowed a remote attacker to potentially exploit heap corru...
CVE-2024-46976MEDIUM5.4Backstage is an open framework for building developer portals. An attacker with control of the contents of the TechDocs ...
CVE-2024-45816MEDIUM6.5Backstage is an open framework for building developer portals. When using the AWS S3 or GCS storage provider for TechDoc...
CVE-2024-45815MEDIUM6.5Backstage is an open framework for building developer portals. A malicious actor with authenticated access to a Backstag...
CVE-2024-8956CRITICAL9.1PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an insufficient authentication issue. The camera does...
CVE-2024-8951MEDIUM6.1A vulnerability classified as problematic was found in SourceCodester Resort Reservation System 1.0. Affected by this vu...
CVE-2024-45812MEDIUM6.4Vite a frontend build tooling framework for javascript. Affected versions of vite were discovered to contain a DOM Clobb...
CVE-2024-45811MEDIUM4.8Vite a frontend build tooling framework for javascript. In affected versions the contents of arbitrary files can be retu...
CVE-2024-45606MEDIUM4.3Sentry is a developer-first error tracking and performance monitoring platform. An authenticated user can mute alert rul...
CVE-2024-45605MEDIUM4.3Sentry is a developer-first error tracking and performance monitoring platform. An authenticated user delete the user is...
CVE-2024-45604MEDIUM4.3Contao is an Open Source CMS. In affected versions authenticated users in the back end can list files outside the docume...
CVE-2024-45398HIGH8.8Contao is an Open Source CMS. In affected versions a back end user with access to the file manager can upload malicious ...
CVE-2024-8949HIGH8.8A vulnerability classified as critical has been found in SourceCodester Online Eyewear Shop 1.0. This affects an unknown...
CVE-2024-8948HIGH7.5A vulnerability was found in MicroPython 1.23.0. It has been rated as critical. Affected by this issue is the function m...
CVE-2024-8947HIGH8.1A vulnerability was found in MicroPython 1.22.2. It has been declared as critical. Affected by this vulnerability is an ...
CVE-2024-8946HIGH7.5A vulnerability was found in MicroPython 1.23.0. It has been classified as critical. Affected is the function mp_vfs_umo...
CVE-2024-8900HIGH7.5An attacker could write data to the user's clipboard, bypassing the user prompt, during a certain sequence of navigation...
CVE-2024-8660MEDIUM4.8Concrete CMS versions 9.0.0 through 9.3.3 are affected by a stored XSS vulnerability in the "Top Navigator Bar" block. S...
CVE-2024-45803MEDIUM6.1Wire UI is a library of components and resources to empower Laravel and Livewire application development. A potential Cr...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now