2024 CVE Vulnerabilities

39,239 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-8219CRITICAL9.8A vulnerability was found in code-projects Responsive Hotel Site 1.0. It has been classified as critical. Affected is an...
CVE-2024-8218CRITICAL9.8A vulnerability was found in code-projects Online Quiz Site 1.0 and classified as critical. This issue affects some unkn...
CVE-2024-8217CRITICAL9.8A vulnerability has been found in SourceCodester E-Commerce Website 1.0 and classified as critical. This vulnerability a...
CVE-2024-8216MEDIUM5.4A vulnerability, which was classified as critical, has been found in nafisulbari/itsourcecode Insurance Management Syste...
CVE-2024-45049HIGH7.5Hydra is a Continuous Integration service for Nix based projects. It is possible to trigger evaluations in Hydra without...
CVE-2024-45038HIGH7.5Meshtastic device firmware is a firmware for meshtastic devices to run an open source, off-grid, decentralized, mesh net...
CVE-2024-8214CRITICAL9.8A vulnerability classified as critical was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DN...
CVE-2024-8213CRITICAL9.8A vulnerability classified as critical has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320L...
CVE-2024-8212CRITICAL9.8A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-32...
CVE-2024-8211CRITICAL9.8A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-32...
CVE-2024-8210CRITICAL9.8A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-32...
CVE-2024-5991HIGH7.5In function MatchDomainName(), input param str is treated as a NULL terminated string despite being user provided and un...
CVE-2024-5814MEDIUM5.3A malicious TLS1.2 server can force a TLS1.3 client with downgrade capability to use a ciphersuite that it did not agree...
CVE-2024-5288MEDIUM5.9An issue was discovered in wolfSSL before 5.7.0. A safe-error attack via Rowhammer, namely FAULT+PROBE, leads to ECDSA k...
CVE-2024-45037MEDIUM6.4The AWS Cloud Development Kit (CDK) is an open-source framework for defining cloud infrastructure using code. Customers ...
CVE-2024-1544MEDIUM4.9Generating the ECDSA nonce k samples a random number r and then truncates this randomness with a modular reduction mod ...
CVE-2024-8209MEDIUM6.1A vulnerability was found in nafisulbari/itsourcecode Insurance Management System 1.0 and classified as problematic. Aff...
CVE-2024-8208MEDIUM6.1A vulnerability has been found in nafisulbari/itsourcecode Insurance Management System 1.0 and classified as problematic...
CVE-2024-7720CRITICAL9.8HP Security Manager is potentially vulnerable to Remote Code Execution as a result of code vulnerability within the prod...
CVE-2024-43783HIGH7.5The Apollo Router Core is a configurable, high-performance graph router written in Rust to run a federated supergraph th...
CVE-2024-43414HIGH7.5Apollo Federation is an architecture for declaratively composing APIs into a unified graph. Each team can own their slic...
CVE-2024-42851HIGH7.8Buffer Overflow vulnerability in open source exiftags v.1.01 allows a local attacker to execute arbitrary code via the p...
CVE-2024-36068CRITICAL9.8An incorrect access control vulnerability in Rubrik CDM versions prior to 9.1.2-p1, 9.0.3-p6 and 8.1.3-p12, allows an at...
CVE-2024-43788MEDIUM6.1Webpack is a module bundler. Its main purpose is to bundle JavaScript files for usage in a browser, yet it is also capab...
CVE-2024-8200MEDIUM4.3The Reviews Feed – Add Testimonials and Customer Reviews From Google Reviews, Yelp, TripAdvisor, and More plugin for Wor...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now