2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-20913MEDIUM5.4Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Platform...
CVE-2024-20907MEDIUM6.1Vulnerability in the Oracle Web Applications Desktop Integrator product of Oracle E-Business Suite (component: File down...
CVE-2024-20903MEDIUM6.5Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 19.3-19.21 a...
CVE-2024-21984MEDIUM6.9StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8 are susceptible to a difficult to exploit Reflected ...
CVE-2024-21983MEDIUM6.5StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8 are susceptible to a Denial of Service (DoS) vulnera...
CVE-2024-24758MEDIUM4.5Undici is an HTTP/1.1 client, written from scratch for Node.js. Undici already cleared Authorization headers on cross-or...
CVE-2024-24750MEDIUM6.5Undici is an HTTP/1.1 client, written from scratch for Node.js. In affected versions calling `fetch(url)` and not consum...
CVE-2024-25627MEDIUM4.8Alf.io is a free and open source event attendance management system. An administrator on the alf.io application is able ...
CVE-2024-21987MEDIUM5.4SnapCenter versions 4.8 prior to 5.0 are susceptible to a vulnerability which could allow an authenticated SnapCenter S...
CVE-2024-0020MEDIUM5.5In onActivityResult of NotificationSoundPreference.java, there is a possible way to hear audio files belonging to a diff...
CVE-2024-0019MEDIUM5In setListening of AppOpsControllerImpl.java, there is a possible way to hide the microphone privacy indicator when rest...
CVE-2024-0017MEDIUM5.5In shouldUseNoOpLocation of CameraActivity.java, there is a possible confused deputy due to a permissions bypass. This c...
CVE-2024-0016MEDIUM5.3In multiple locations, there is a possible out of bounds read due to a missing bounds check. This could lead to paired d...
CVE-2024-22854MEDIUM6.1DOM-based HTML injection vulnerability in the main page of Darktrace Threat Visualizer version 6.1.27 (bundle version 61...
CVE-2024-0032MEDIUM6.5In multiple locations, there is a possible way to request access to directories that should be hidden due to improper in...
CVE-2024-0030MEDIUM5.5In btif_to_bta_response of btif_gatt_util.cc, there is a possible out of bounds read due to an incorrect bounds check. T...
CVE-2024-21728MEDIUM6.1An Open Redirect vulnerability was found in osTicky2 below 2.2.8. osTicky (osTicket Bridge) by SmartCalc is a Joomla 3.x...
CVE-2024-0240MEDIUM6.5A memory leak in the Silicon Labs' Bluetooth stack for EFR32 products may cause memory to be exhausted when sending noti...
CVE-2024-25373MEDIUM4.6Tenda AC10V4.0 V16.03.10.20 was discovered to contain a stack overflow via the page parameter in the sub_49B384 function...
CVE-2024-20718MEDIUM6.5Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by a Cross-Site Request Forgery (CSRF) vul...
CVE-2024-20717MEDIUM5.4Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by a stored Cross-Site Scripting (XSS) vul...
CVE-2024-20716MEDIUM4.9Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by an Uncontrolled Resource Consumption vu...
CVE-2024-20749MEDIUM5.5Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds read vulnerability that ...
CVE-2024-20748MEDIUM5.5Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds read vulnerability that ...
CVE-2024-20747MEDIUM5.5Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds read vulnerability that ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now