2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-32927 | HIGH | 7.8 | 0.1% | Aug 19, 2024 | In sendDeviceState_1_6 of RadioExt.cpp, there is a possible use after free due to improper locking. This could lead to l... |
| CVE-2024-6348 | HIGH | 7.5 | 0.4% | Aug 19, 2024 | Predictable seed generation in the security access mechanism of UDS in the Blind Spot Protection Sensor ECU in Nissan Al... |
| CVE-2024-42633 | HIGH | 8.8 | 2.1% | Aug 19, 2024 | A Command Injection vulnerability exists in the do_upgrade_post function of the httpd binary in Linksys E1500 v1.0.06.00... |
| CVE-2024-7922 | CRITICAL | 9.8 | 18.9% | Aug 19, 2024 | A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-32... |
| CVE-2024-43399 | CRITICAL | 9.8 | 0.9% | Aug 19, 2024 | Mobile Security Framework (MobSF) is a pen-testing, malware analysis and security assessment framework capable of perfor... |
| CVE-2024-43380 | HIGH | 7.5 | 0.8% | Aug 19, 2024 | fugit contains time tools for flor and the floraison group. The fugit "natural" parser, that turns "every wednesday at 5... |
| CVE-2024-43379 | LOW | 3.1 | 0.3% | Aug 19, 2024 | TruffleHog is a secrets scanning tool. Prior to v3.81.9, this vulnerability allows a malicious actor to craft data in a ... |
| CVE-2024-43372 | — | — | — | Aug 19, 2024 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-43369. Reason: This candidate is a ... |
| CVE-2024-39306 | — | — | — | Aug 19, 2024 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-39304. Reason: This candidate is a ... |
| CVE-2024-42675 | — | — | — | Aug 19, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2024-25582 | MEDIUM | 5.4 | 0.4% | Aug 19, 2024 | Module savepoints could be abused to inject references to malicious code delivered through the same domain. Attackers co... |
| CVE-2024-6843 | MEDIUM | 6.1 | 0.4% | Aug 19, 2024 | The Chatbot with ChatGPT WordPress plugin before 2.4.5 does not sanitise and escape user inputs, which could allow unaut... |
| CVE-2024-6451 | HIGH | 7.2 | 0.8% | Aug 19, 2024 | AI Engine < 2.4.3 is susceptible to remote-code-execution (RCE) via Log Poisoning. The AI Engine WordPress plugin before... |
| CVE-2024-6330 | CRITICAL | 9.8 | 2.1% | Aug 19, 2024 | The GEO my WP WordPress plugin before 4.5.0.2 does not prevent unauthenticated attackers from including arbitrary files ... |
| CVE-2024-44083 | HIGH | 7.5 | 1.4% | Aug 19, 2024 | ida64.dll in Hex-Rays IDA Pro through 8.4 crashes when there is a section that has many jumps linked, and the final jump... |
| CVE-2024-7921 | CRITICAL | 9.8 | 0.7% | Aug 19, 2024 | A vulnerability has been found in Anhui Deshun Intelligent Technology Jieshun JieLink+ JSOTC2016 up to 20240805 and clas... |
| CVE-2024-44076 | CRITICAL | 9.8 | 0.6% | Aug 19, 2024 | In Microcks before 1.10.0, the POST /api/import and POST /api/export endpoints allow non-administrator access. |
| CVE-2024-44073 | HIGH | 7.5 | 0.6% | Aug 19, 2024 | The Miniscript (aka rust-miniscript) library before 12.2.0 for Rust allows stack consumption because it does not properl... |
| CVE-2024-44070 | HIGH | 7.5 | 0.6% | Aug 19, 2024 | An issue was discovered in FRRouting (FRR) through 10.1. bgp_attr_encap in bgpd/bgp_attr.c does not check the actual rem... |
| CVE-2024-44069 | HIGH | 7.5 | 0.5% | Aug 19, 2024 | Pi-hole before 6 allows unauthenticated admin/api.php?setTempUnit= calls to change the temperature units of the web dash... |
| CVE-2024-44067 | HIGH | 8.4 | 0.2% | Aug 19, 2024 | The T-Head XuanTie C910 CPU in the TH1520 SoC and the T-Head XuanTie C920 CPU in the SOPHON SG2042 have instructions tha... |
| CVE-2024-7920 | CRITICAL | 9.8 | 0.7% | Aug 19, 2024 | A vulnerability, which was classified as problematic, was found in Anhui Deshun Intelligent Technology Jieshun JieLink+ ... |
| CVE-2024-7919 | CRITICAL | 9.8 | 1.1% | Aug 19, 2024 | A vulnerability, which was classified as critical, has been found in Anhui Deshun Intelligent Technology Jieshun JieLink... |
| CVE-2024-7917 | HIGH | 7.2 | 0.6% | Aug 18, 2024 | A vulnerability, which was classified as critical, has been found in DouPHP 1.7 Release 20220822. Affected by this issue... |
| CVE-2024-7916 | MEDIUM | 5.4 | 0.4% | Aug 18, 2024 | A vulnerability classified as problematic was found in nafisulbari/itsourcecode Insurance Management System 1.0. Affecte... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now