2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-45370 | HIGH | 7.3 | 0.2% | Dec 1, 2025 | An authentication bypass vulnerability exists in the User profile management functionality of Socomec Easy Config System... |
| CVE-2024-39148 | HIGH | 8.1 | 0.5% | Dec 1, 2025 | The service wmp-agent of KerOS prior 5.12 does not properly validate so-called ‘magic URLs’ allowing an unauthenticated ... |
| CVE-2024-32384 | HIGH | 7.4 | 0.1% | Dec 1, 2025 | Kerlink gateways running KerOS prior to version 5.10 expose their web interface exclusively over HTTP, without HTTPS sup... |
| CVE-2024-56089 | HIGH | 7.5 | 0.3% | Dec 1, 2025 | An issue in Technitium through v13.2.2 enables attackers to conduct a DNS cache poisoning attack and inject fake respons... |
| CVE-2024-14007 | HIGH | 8.7 | 0.9% | Nov 24, 2025 | Shenzhen TVT Digital Technology Co., Ltd. NVMS-9000 firmware (used by many white-labeled DVR/NVR/IPC products) versions ... |
| CVE-2024-14015 | HIGH | 7.1 | 0.4% | Nov 24, 2025 | The WordPress eCommerce Plugin WordPress plugin through 2.9.0 does not sanitise and escape a parameter before outputtin... |
| CVE-2024-21923 | HIGH | 7.3 | 0.1% | Nov 23, 2025 | Incorrect default permissions in AMD StoreMI™ could allow an attacker to achieve privilege escalation potentially result... |
| CVE-2024-21922 | HIGH | 7.3 | 0.1% | Nov 23, 2025 | A DLL hijacking vulnerability in AMD StoreMI™ could allow an attacker to achieve privilege escalation, potentially resul... |
| CVE-2024-8527 | HIGH | 8.6 | 0.1% | Nov 19, 2025 | Open Redirect in URL parameter in Automated Logic WebCTRL and Carrier i-Vu versions 6.0, 6.5, 7.0, 8.0, 8.5, 9.0 may all... |
| CVE-2024-21635 | HIGH | 7.5 | 0.3% | Nov 14, 2025 | Memos is a privacy-first, lightweight note-taking service that uses Access Tokens to authenticate application access. Wh... |
| CVE-2024-9126 | HIGH | 7.5 | 0.2% | Nov 14, 2025 | Use after free in Internals in Google Chrome on iOS prior to 127.0.6533.88 allowed a remote attacker who convinced a use... |
| CVE-2024-7017 | HIGH | 7.5 | 0.2% | Nov 14, 2025 | Inappropriate implementation in DevTools in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to potential... |
| CVE-2024-47866 | HIGH | 7.5 | 0.4% | Nov 12, 2025 | Ceph is a distributed object, block, and file storage platform. In versions up to and including 19.2.3, using the argume... |
| CVE-2024-32011 | HIGH | 8.8 | 0.4% | Nov 11, 2025 | A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application i... |
| CVE-2024-32010 | HIGH | 7.8 | 0.1% | Nov 11, 2025 | A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application i... |
| CVE-2024-32009 | HIGH | 7.8 | 0.1% | Nov 11, 2025 | A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application i... |
| CVE-2024-32008 | HIGH | 7.8 | 0.1% | Nov 11, 2025 | A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application i... |
| CVE-2024-57695 | HIGH | 7.7 | 0.2% | Nov 11, 2025 | An issue in Agnitum Outpost Security Suite 7.5.3 (3942.608.1810) and 7.6 (3984.693.1842) allows a local attacker to exec... |
| CVE-2024-47118 | HIGH | 7.5 | 0.3% | Nov 7, 2025 | IBM Db2 10.5.0 through 10.5.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.3 for Linux, UNI... |
| CVE-2024-12125 | HIGH | 7.5 | 0.2% | Nov 6, 2025 | A flaw was found in the 3scale Developer Portal. When creating or updating an account in the Developer Portal UI it is p... |
| CVE-2024-25621 | HIGH | 7.8 | 0.1% | Nov 6, 2025 | containerd is an open-source container runtime. Versions 0.1.0 through 1.7.28, 2.0.0-beta.0 through 2.0.6, 2.1.0-beta.0 ... |
| CVE-2024-56426 | HIGH | 7.5 | 0.3% | Nov 4, 2025 | An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 990, 850, 1080, 2100, 1280, 2200,... |
| CVE-2024-13997 | HIGH | 7.2 | 1.1% | Nov 3, 2025 | Nagios XI versions prior to 2024R1.1.3 contain a privilege escalation vulnerability in which an authenticated administra... |
| CVE-2024-58273 | HIGH | 7.8 | 0.3% | Oct 30, 2025 | Nagios Log Server versions prior to 2024R1.0.2 contain a local privilege escalation vulnerability that allows an attacke... |
| CVE-2024-14009 | HIGH | 7.2 | 1.2% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.0.1 contain a privilege escalation vulnerability in the System Profile component. The... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now