2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-43764 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | In onPrimaryClipChanged of ClipboardListener.java, there is a possible way to partially bypass lock screen. This could l... |
| CVE-2024-43762 | HIGH | 7.8 | 0.2% | Jan 3, 2025 | In multiple locations, there is a possible way to avoid unbinding of a service from the system due to a logic error in t... |
| CVE-2024-43097 | HIGH | 7.8 | 0.3% | Jan 3, 2025 | In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds write due to an integer overflow. This could lead ... |
| CVE-2024-43077 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | In DevmemValidateFlags of devicemem_server.c , there is a possible out of bounds write due to memory corruption. This co... |
| CVE-2024-56199 | HIGH | 7.6 | 0.4% | Jan 2, 2025 | phpMyFAQ is an open source FAQ web application. Starting no later than version 3.2.10 and prior to version 4.0.2, an att... |
| CVE-2024-9950 | HIGH | 7.8 | 0.3% | Jan 2, 2025 | A vulnerability in Forescout SecureConnector v11.3.07.0109 on Windows allows unauthenticated user to modify compliance... |
| CVE-2024-55543 | HIGH | 7.8 | 0.2% | Jan 2, 2025 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protec... |
| CVE-2024-55540 | HIGH | 7.8 | 0.2% | Jan 2, 2025 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protec... |
| CVE-2024-56137 | HIGH | 7.2 | 0.8% | Jan 2, 2025 | MaxKB, which stands for Max Knowledge Base, is an open source knowledge base question-answering system based on a large ... |
| CVE-2024-13111 | HIGH | 8.1 | 0.8% | Jan 2, 2025 | A vulnerability classified as critical was found in Beijing Yunfan Internet Technology Yunfan Learning Examination Syste... |
| CVE-2024-13110 | HIGH | 7.5 | 0.6% | Jan 2, 2025 | A vulnerability classified as problematic has been found in Beijing Yunfan Internet Technology Yunfan Learning Examinati... |
| CVE-2024-56014 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Markyis Cool Olivi... |
| CVE-2024-39623 | HIGH | 8.8 | 0.3% | Jan 2, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in CridioStudio ListingPro listingpro allows Authentication Bypass.This ... |
| CVE-2024-56267 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in html5maps Interact... |
| CVE-2024-56266 | HIGH | 8.8 | 0.3% | Jan 2, 2025 | Missing Authorization vulnerability in sonaar MP3 Audio Player for Music, Radio & Podcast by Sonaar mp3-music-player-by-... |
| CVE-2024-56250 | HIGH | 7.6 | 0.4% | Jan 2, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Greg Ross Just Wri... |
| CVE-2024-56247 | HIGH | 7.2 | 0.5% | Jan 2, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AF themes WP Post ... |
| CVE-2024-56026 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Greg – SiteOrigin ... |
| CVE-2024-56025 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in adworkmedia AdWork... |
| CVE-2024-56024 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DuoGeek Custom Das... |
| CVE-2024-56023 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PerfectSolution WP... |
| CVE-2024-56022 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WordPress Monsters... |
| CVE-2024-56018 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BU Web Team BU Sec... |
| CVE-2024-37937 | HIGH | 8.8 | 0.2% | Jan 2, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in raratheme Rara Business rara-business allows Cross Site Request Forge... |
| CVE-2024-37508 | HIGH | 8.8 | 0.2% | Jan 2, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in raratheme Construction Landing Page construction-landing-page allows ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now