2024 CVE Vulnerabilities
39,217 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-14034 | CRITICAL | 9.8 | 0.5% | Apr 2, 2026 | Hirschmann HiEOS devices versions prior to 01.1.00 contain an authentication bypass vulnerability in the HTTP(S) managem... |
| CVE-2024-44303 | HIGH | 7.5 | 0.3% | Apr 2, 2026 | The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.1. A malicious application may be ... |
| CVE-2024-44286 | HIGH | 7.5 | 0.3% | Apr 2, 2026 | This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.1. An attacker with ... |
| CVE-2024-44250 | HIGH | 8.2 | 0.2% | Apr 2, 2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.1. An app may be... |
| CVE-2024-44219 | HIGH | 7.5 | 0.3% | Apr 2, 2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.1. A malicious a... |
| CVE-2024-40858 | HIGH | 7.1 | 0.2% | Apr 2, 2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.1. An app may be... |
| CVE-2024-40849 | HIGH | 7.5 | 0.2% | Apr 2, 2026 | A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.1. An app may be able... |
| CVE-2024-43028 | CRITICAL | 9.8 | 1.5% | Apr 1, 2026 | A command injection vulnerability in the component /jmreport/show of jeecg boot v3.0.0 to v3.5.3 allows attackers to exe... |
| CVE-2024-40489 | CRITICAL | 9.8 | 0.5% | Apr 1, 2026 | There is an injection vulnerability in jeecg boot versions 3.0.0 to 3.5.3 due to lax character filtering, which allows a... |
| CVE-2024-53828 | MEDIUM | 5.3 | 0.4% | Apr 1, 2026 | Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain a vulnerability where an attacker sending a large v... |
| CVE-2024-58342 | MEDIUM | 6.1 | 0.1% | Apr 1, 2026 | XenForo before 2.2.17 and 2.3.1 allows open redirect via a specially crafted URL. The getDynamicRedirect() function does... |
| CVE-2024-14031 | HIGH | 8.1 | 0.4% | Mar 31, 2026 | Sereal::Encoder versions from 4.000 through 4.009_002 for Perl embeds a vulnerable version of the Zstandard library. Se... |
| CVE-2024-14030 | HIGH | 8.1 | 0.4% | Mar 31, 2026 | Sereal::Decoder versions from 4.000 through 4.009_002 for Perl embeds a vulnerable version of the Zstandard library. Se... |
| CVE-2024-11604 | HIGH | 7.3 | 0.1% | Mar 27, 2026 | Insertion of Sensitive Information into Log File vulnerability in the SCIM Driver module in OpenText IDM Driver and Exte... |
| CVE-2024-14028 | MEDIUM | 6.5 | 0.2% | Mar 27, 2026 | Use after free vulnerability in Softing smartLink HW-DP or smartLink HW-PN webserver allows HTTP DoS. This issue affects... |
| CVE-2024-58341 | HIGH | 8.2 | 0.3% | Mar 25, 2026 | OpenCart Core 4.0.2.3 contains a SQL injection vulnerability that allows unauthenticated attackers to manipulate databas... |
| CVE-2024-51348 | HIGH | 8.8 | 0.4% | Mar 25, 2026 | A stack-based buffer overflow vulnerability in the P2P API service in BS Producten Petcam with firmware 33.1.0.0818 allo... |
| CVE-2024-51347 | HIGH | 7.2 | 0.3% | Mar 25, 2026 | A buffer overflow vulnerability in the dgiot binary in LSC Smart Indoor IP Camera V7.6.32. The flaw exists in the handli... |
| CVE-2024-51346 | HIGH | 7.7 | 0.1% | Mar 25, 2026 | An issue in Eufy Homebase 2 version 3.3.4.1h allows a local attacker to obtain sensitive information via the cryptograph... |
| CVE-2024-46879 | MEDIUM | 5.4 | 0.2% | Mar 23, 2026 | A Reflected Cross-Site Scripting (XSS) vulnerability exists in the POST request data zipPath of tiki-admin_system.php in... |
| CVE-2024-46878 | MEDIUM | 5.4 | 0.2% | Mar 23, 2026 | A Cross-Site Scripting (XSS) vulnerability exists in the page parameter of tiki-editpage.php in Tiki version 26.3 and ea... |
| CVE-2024-51226 | MEDIUM | 6.1 | 0.2% | Mar 23, 2026 | A stored cross-site scripting (XSS) vulnerability in the component /admin/search-vehicle.php of Phpgurukul Vehicle Recor... |
| CVE-2024-51225 | MEDIUM | 4.8 | 0.2% | Mar 23, 2026 | A stored cross-site scripting (XSS) vulnerability in the component /admin/add-brand.php of Phpgurukul Vehicle Record Man... |
| CVE-2024-51224 | MEDIUM | 4.8 | 0.2% | Mar 23, 2026 | Multiple cross-site scripting (XSS) vulnerabilities in the component /admin/edit-vehicle.php of Phpgurukul Vehicle Recor... |
| CVE-2024-51223 | MEDIUM | 4.8 | 0.2% | Mar 23, 2026 | A stored cross-site scripting (XSS) vulnerability in the component /admin/profile.php of Phpgurukul Vehicle Record Manag... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now