2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-45370HIGH7.3An authentication bypass vulnerability exists in the User profile management functionality of Socomec Easy Config System...
CVE-2024-39148HIGH8.1The service wmp-agent of KerOS prior 5.12 does not properly validate so-called ‘magic URLs’ allowing an unauthenticated ...
CVE-2024-32384HIGH7.4Kerlink gateways running KerOS prior to version 5.10 expose their web interface exclusively over HTTP, without HTTPS sup...
CVE-2024-56089HIGH7.5An issue in Technitium through v13.2.2 enables attackers to conduct a DNS cache poisoning attack and inject fake respons...
CVE-2024-14007HIGH8.7Shenzhen TVT Digital Technology Co., Ltd. NVMS-9000 firmware (used by many white-labeled DVR/NVR/IPC products) versions ...
CVE-2024-14015HIGH7.1The WordPress eCommerce Plugin WordPress plugin through 2.9.0 does not sanitise and escape a parameter before outputtin...
CVE-2024-21923HIGH7.3Incorrect default permissions in AMD StoreMI™ could allow an attacker to achieve privilege escalation potentially result...
CVE-2024-21922HIGH7.3A DLL hijacking vulnerability in AMD StoreMI™ could allow an attacker to achieve privilege escalation, potentially resul...
CVE-2024-8527HIGH8.6Open Redirect in URL parameter in Automated Logic WebCTRL and Carrier i-Vu versions 6.0, 6.5, 7.0, 8.0, 8.5, 9.0 may all...
CVE-2024-21635HIGH7.5Memos is a privacy-first, lightweight note-taking service that uses Access Tokens to authenticate application access. Wh...
CVE-2024-9126HIGH7.5Use after free in Internals in Google Chrome on iOS prior to 127.0.6533.88 allowed a remote attacker who convinced a use...
CVE-2024-7017HIGH7.5Inappropriate implementation in DevTools in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to potential...
CVE-2024-47866HIGH7.5Ceph is a distributed object, block, and file storage platform. In versions up to and including 19.2.3, using the argume...
CVE-2024-32011HIGH8.8A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application i...
CVE-2024-32010HIGH7.8A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application i...
CVE-2024-32009HIGH7.8A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application i...
CVE-2024-32008HIGH7.8A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application i...
CVE-2024-57695HIGH7.7An issue in Agnitum Outpost Security Suite 7.5.3 (3942.608.1810) and 7.6 (3984.693.1842) allows a local attacker to exec...
CVE-2024-47118HIGH7.5IBM Db2 10.5.0 through 10.5.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.3 for Linux, UNI...
CVE-2024-12125HIGH7.5A flaw was found in the 3scale Developer Portal. When creating or updating an account in the Developer Portal UI it is p...
CVE-2024-25621HIGH7.8containerd is an open-source container runtime. Versions 0.1.0 through 1.7.28, 2.0.0-beta.0 through 2.0.6, 2.1.0-beta.0 ...
CVE-2024-56426HIGH7.5An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 990, 850, 1080, 2100, 1280, 2200,...
CVE-2024-13997HIGH7.2Nagios XI versions prior to 2024R1.1.3 contain a privilege escalation vulnerability in which an authenticated administra...
CVE-2024-58273HIGH7.8Nagios Log Server versions prior to 2024R1.0.2 contain a local privilege escalation vulnerability that allows an attacke...
CVE-2024-14009HIGH7.2Nagios XI versions prior to 2024R1.0.1 contain a privilege escalation vulnerability in the System Profile component. The...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now