2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27879 | HIGH | 7.5 | 0.8% | Sep 17, 2024 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS ... |
| CVE-2024-27876 | MEDIUM | 5.5 | 0.5% | Sep 17, 2024 | A race condition was addressed with improved locking. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS... |
| CVE-2024-27875 | MEDIUM | 5.5 | 0.2% | Sep 17, 2024 | A logic issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15. Privacy Indicators ... |
| CVE-2024-27874 | HIGH | 7.5 | 0.7% | Sep 17, 2024 | This issue was addressed through improved state management. This issue is fixed in iOS 18 and iPadOS 18. A remote attack... |
| CVE-2024-27869 | MEDIUM | 5.5 | 0.5% | Sep 17, 2024 | The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An app may ... |
| CVE-2024-27861 | MEDIUM | 5.5 | 0.2% | Sep 17, 2024 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15. An application may be ab... |
| CVE-2024-27860 | MEDIUM | 5.5 | 0.2% | Sep 17, 2024 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15. An application may be ab... |
| CVE-2024-27858 | MEDIUM | 5.5 | 0.2% | Sep 17, 2024 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. An app may be a... |
| CVE-2024-27795 | HIGH | 7.5 | 0.5% | Sep 17, 2024 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. A camera extens... |
| CVE-2024-23237 | MEDIUM | 5.5 | 0.2% | Sep 17, 2024 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15. An app may be able to ca... |
| CVE-2024-6685 | MEDIUM | 4.3 | 0.4% | Sep 16, 2024 | An issue was discovered in GitLab CE/EE affecting all versions starting from 16.7 prior to 17.1.7, 17.2 prior to 17.2.5,... |
| CVE-2024-4283 | MEDIUM | 6.1 | 0.4% | Sep 16, 2024 | An issue has been discovered in GitLab EE affecting all versions starting from 11.1 before 17.1.7, 17.2 before 17.2.5, a... |
| CVE-2024-45416 | HIGH | 8.1 | 0.6% | Sep 16, 2024 | The HTTPD binary in multiple ZTE routers has a local file inclusion vulnerability in session_init function. The session ... |
| CVE-2024-45415 | CRITICAL | 9.8 | 0.5% | Sep 16, 2024 | The HTTPD binary in multiple ZTE routers has a stack-based buffer overflow vulnerability in check_data_integrity functio... |
| CVE-2024-45414 | CRITICAL | 9.8 | 0.5% | Sep 16, 2024 | The HTTPD binary in multiple ZTE routers has a stack-based buffer overflow vulnerability in webPrivateDecrypt function. ... |
| CVE-2024-45413 | HIGH | 8.1 | 0.4% | Sep 16, 2024 | The HTTPD binary in multiple ZTE routers has a stack-based buffer overflow vulnerability in rsa_decrypt function. This f... |
| CVE-2024-8766 | MEDIUM | 6.7 | 0.1% | Sep 16, 2024 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protec... |
| CVE-2024-45800 | MEDIUM | 5 | 0.3% | Sep 16, 2024 | Snappymail is an open source web-based email client. SnappyMail uses the `cleanHtml()` function to cleanup HTML and CSS ... |
| CVE-2024-44445 | — | — | — | Sep 16, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2024-42798 | HIGH | 7.6 | 0.4% | Sep 16, 2024 | An Incorrect Access Control vulnerability was found in /music/index.php?page=user_list and /music/index.php?page=edit_us... |
| CVE-2024-42796 | MEDIUM | 5.9 | 0.2% | Sep 16, 2024 | An Incorrect Access Control vulnerability was found in /music/ajax.php?action=delete_genre in Kashipara Music Management... |
| CVE-2024-42795 | MEDIUM | 4.2 | 0.2% | Sep 16, 2024 | An Incorrect Access Control vulnerability was found in /music/view_user.php?id=3 and /music/controller.php?page=edit_use... |
| CVE-2024-42794 | MEDIUM | 4.7 | 0.3% | Sep 16, 2024 | Kashipara Music Management System v1.0 is vulnerable to Incorrect Access Control via /music/ajax.php?action=save_user. |
| CVE-2024-34016 | MEDIUM | 6.5 | 0.2% | Sep 16, 2024 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protec... |
| CVE-2024-22013 | MEDIUM | 5.3 | 0.2% | Sep 16, 2024 | U-Boot environment is read from unauthenticated partition. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now