2024 CVE Vulnerabilities

39,217 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-14034CRITICAL9.8Hirschmann HiEOS devices versions prior to 01.1.00 contain an authentication bypass vulnerability in the HTTP(S) managem...
CVE-2024-44303HIGH7.5The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.1. A malicious application may be ...
CVE-2024-44286HIGH7.5This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.1. An attacker with ...
CVE-2024-44250HIGH8.2A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.1. An app may be...
CVE-2024-44219HIGH7.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.1. A malicious a...
CVE-2024-40858HIGH7.1A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.1. An app may be...
CVE-2024-40849HIGH7.5A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.1. An app may be able...
CVE-2024-43028CRITICAL9.8A command injection vulnerability in the component /jmreport/show of jeecg boot v3.0.0 to v3.5.3 allows attackers to exe...
CVE-2024-40489CRITICAL9.8There is an injection vulnerability in jeecg boot versions 3.0.0 to 3.5.3 due to lax character filtering, which allows a...
CVE-2024-53828MEDIUM5.3Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain a vulnerability where an attacker sending a large v...
CVE-2024-58342MEDIUM6.1XenForo before 2.2.17 and 2.3.1 allows open redirect via a specially crafted URL. The getDynamicRedirect() function does...
CVE-2024-14031HIGH8.1Sereal::Encoder versions from 4.000 through 4.009_002 for Perl embeds a vulnerable version of the Zstandard library. Se...
CVE-2024-14030HIGH8.1Sereal::Decoder versions from 4.000 through 4.009_002 for Perl embeds a vulnerable version of the Zstandard library. Se...
CVE-2024-11604HIGH7.3Insertion of Sensitive Information into Log File vulnerability in the SCIM Driver module in OpenText IDM Driver and Exte...
CVE-2024-14028MEDIUM6.5Use after free vulnerability in Softing smartLink HW-DP or smartLink HW-PN webserver allows HTTP DoS. This issue affects...
CVE-2024-58341HIGH8.2OpenCart Core 4.0.2.3 contains a SQL injection vulnerability that allows unauthenticated attackers to manipulate databas...
CVE-2024-51348HIGH8.8A stack-based buffer overflow vulnerability in the P2P API service in BS Producten Petcam with firmware 33.1.0.0818 allo...
CVE-2024-51347HIGH7.2A buffer overflow vulnerability in the dgiot binary in LSC Smart Indoor IP Camera V7.6.32. The flaw exists in the handli...
CVE-2024-51346HIGH7.7An issue in Eufy Homebase 2 version 3.3.4.1h allows a local attacker to obtain sensitive information via the cryptograph...
CVE-2024-46879MEDIUM5.4A Reflected Cross-Site Scripting (XSS) vulnerability exists in the POST request data zipPath of tiki-admin_system.php in...
CVE-2024-46878MEDIUM5.4A Cross-Site Scripting (XSS) vulnerability exists in the page parameter of tiki-editpage.php in Tiki version 26.3 and ea...
CVE-2024-51226MEDIUM6.1A stored cross-site scripting (XSS) vulnerability in the component /admin/search-vehicle.php of Phpgurukul Vehicle Recor...
CVE-2024-51225MEDIUM4.8A stored cross-site scripting (XSS) vulnerability in the component /admin/add-brand.php of Phpgurukul Vehicle Record Man...
CVE-2024-51224MEDIUM4.8Multiple cross-site scripting (XSS) vulnerabilities in the component /admin/edit-vehicle.php of Phpgurukul Vehicle Recor...
CVE-2024-51223MEDIUM4.8A stored cross-site scripting (XSS) vulnerability in the component /admin/profile.php of Phpgurukul Vehicle Record Manag...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now