2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-20913 | MEDIUM | 5.4 | 0.3% | Feb 17, 2024 | Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Platform... |
| CVE-2024-20907 | MEDIUM | 6.1 | 0.3% | Feb 17, 2024 | Vulnerability in the Oracle Web Applications Desktop Integrator product of Oracle E-Business Suite (component: File down... |
| CVE-2024-20903 | MEDIUM | 6.5 | 0.4% | Feb 17, 2024 | Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 19.3-19.21 a... |
| CVE-2024-21984 | MEDIUM | 6.9 | 0.3% | Feb 16, 2024 | StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8 are susceptible to a difficult to exploit Reflected ... |
| CVE-2024-21983 | MEDIUM | 6.5 | 0.5% | Feb 16, 2024 | StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8 are susceptible to a Denial of Service (DoS) vulnera... |
| CVE-2024-24758 | MEDIUM | 4.5 | 0.8% | Feb 16, 2024 | Undici is an HTTP/1.1 client, written from scratch for Node.js. Undici already cleared Authorization headers on cross-or... |
| CVE-2024-24750 | MEDIUM | 6.5 | 0.7% | Feb 16, 2024 | Undici is an HTTP/1.1 client, written from scratch for Node.js. In affected versions calling `fetch(url)` and not consum... |
| CVE-2024-25627 | MEDIUM | 4.8 | 0.4% | Feb 16, 2024 | Alf.io is a free and open source event attendance management system. An administrator on the alf.io application is able ... |
| CVE-2024-21987 | MEDIUM | 5.4 | 0.3% | Feb 16, 2024 | SnapCenter versions 4.8 prior to 5.0 are susceptible to a vulnerability which could allow an authenticated SnapCenter S... |
| CVE-2024-0020 | MEDIUM | 5.5 | 0.1% | Feb 16, 2024 | In onActivityResult of NotificationSoundPreference.java, there is a possible way to hear audio files belonging to a diff... |
| CVE-2024-0019 | MEDIUM | 5 | 0.1% | Feb 16, 2024 | In setListening of AppOpsControllerImpl.java, there is a possible way to hide the microphone privacy indicator when rest... |
| CVE-2024-0017 | MEDIUM | 5.5 | 0.1% | Feb 16, 2024 | In shouldUseNoOpLocation of CameraActivity.java, there is a possible confused deputy due to a permissions bypass. This c... |
| CVE-2024-0016 | MEDIUM | 5.3 | 0.2% | Feb 16, 2024 | In multiple locations, there is a possible out of bounds read due to a missing bounds check. This could lead to paired d... |
| CVE-2024-22854 | MEDIUM | 6.1 | 0.4% | Feb 16, 2024 | DOM-based HTML injection vulnerability in the main page of Darktrace Threat Visualizer version 6.1.27 (bundle version 61... |
| CVE-2024-0032 | MEDIUM | 6.5 | 0.5% | Feb 16, 2024 | In multiple locations, there is a possible way to request access to directories that should be hidden due to improper in... |
| CVE-2024-0030 | MEDIUM | 5.5 | 0.4% | Feb 16, 2024 | In btif_to_bta_response of btif_gatt_util.cc, there is a possible out of bounds read due to an incorrect bounds check. T... |
| CVE-2024-21728 | MEDIUM | 6.1 | 0.3% | Feb 15, 2024 | An Open Redirect vulnerability was found in osTicky2 below 2.2.8. osTicky (osTicket Bridge) by SmartCalc is a Joomla 3.x... |
| CVE-2024-0240 | MEDIUM | 6.5 | 0.4% | Feb 15, 2024 | A memory leak in the Silicon Labs' Bluetooth stack for EFR32 products may cause memory to be exhausted when sending noti... |
| CVE-2024-25373 | MEDIUM | 4.6 | 0.4% | Feb 15, 2024 | Tenda AC10V4.0 V16.03.10.20 was discovered to contain a stack overflow via the page parameter in the sub_49B384 function... |
| CVE-2024-20718 | MEDIUM | 6.5 | 0.8% | Feb 15, 2024 | Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by a Cross-Site Request Forgery (CSRF) vul... |
| CVE-2024-20717 | MEDIUM | 5.4 | 0.4% | Feb 15, 2024 | Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by a stored Cross-Site Scripting (XSS) vul... |
| CVE-2024-20716 | MEDIUM | 4.9 | 0.9% | Feb 15, 2024 | Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by an Uncontrolled Resource Consumption vu... |
| CVE-2024-20749 | MEDIUM | 5.5 | 2.3% | Feb 15, 2024 | Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds read vulnerability that ... |
| CVE-2024-20748 | MEDIUM | 5.5 | 2.3% | Feb 15, 2024 | Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds read vulnerability that ... |
| CVE-2024-20747 | MEDIUM | 5.5 | 2.4% | Feb 15, 2024 | Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds read vulnerability that ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now