2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-42397 | MEDIUM | 5.3 | 0.3% | Aug 6, 2024 | Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Certificate Management daemon accessed ... |
| CVE-2024-42396 | MEDIUM | 5.3 | 0.3% | Aug 6, 2024 | Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Certificate Management daemon accessed ... |
| CVE-2024-42395 | CRITICAL | 9.8 | 0.4% | Aug 6, 2024 | There is a vulnerability in the AP Certificate Management Service which could allow a threat actor to execute an unauthe... |
| CVE-2024-42394 | CRITICAL | 9.8 | 0.6% | Aug 6, 2024 | There are vulnerabilities in the Soft AP Daemon Service which could allow a threat actor to execute an unauthenticated R... |
| CVE-2024-42393 | CRITICAL | 9.8 | 0.6% | Aug 6, 2024 | There are vulnerabilities in the Soft AP Daemon Service which could allow a threat actor to execute an unauthenticated R... |
| CVE-2024-28740 | CRITICAL | 9.6 | 0.7% | Aug 6, 2024 | Cross Site Scripting vulnerability in Koha ILS 23.05 and before allows a remote attacker to execute arbitrary code via t... |
| CVE-2024-28739 | HIGH | 7.2 | 17.7% | Aug 6, 2024 | An issue in Koha ILS 23.05 and before allows a remote attacker to execute arbitrary code via a crafted script to the for... |
| CVE-2024-42347 | MEDIUM | 6.5 | 0.4% | Aug 6, 2024 | matrix-react-sdk is a react-based SDK for inserting a Matrix chat/voip client into a web page. A malicious homeserver c... |
| CVE-2024-41677 | MEDIUM | 6.1 | 0.5% | Aug 6, 2024 | Qwik is a performance focused javascript framework. A potential mutation XSS vulnerability exists in Qwik for versions u... |
| CVE-2024-7502 | HIGH | 7.8 | 0.4% | Aug 6, 2024 | A crafted DPA file could force Delta Electronics DIAScreen to overflow a stack-based buffer, which could allow an attack... |
| CVE-2024-42358 | MEDIUM | 5.5 | 0.3% | Aug 6, 2024 | PDFio is a simple C library for reading and writing PDF files. There is a denial of service (DOS) vulnerability in the T... |
| CVE-2024-39229 | MEDIUM | 5.3 | 0.2% | Aug 6, 2024 | An issue in GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT... |
| CVE-2024-39227 | CRITICAL | 9.8 | 1.2% | Aug 6, 2024 | GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/... |
| CVE-2024-7564 | MEDIUM | 6.5 | 1.2% | Aug 6, 2024 | Logsign Unified SecOps Platform Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remo... |
| CVE-2024-7005 | MEDIUM | 4.3 | 0.4% | Aug 6, 2024 | Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 127.0.6533.72 allowed a remote att... |
| CVE-2024-7004 | MEDIUM | 4.3 | 0.4% | Aug 6, 2024 | Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 127.0.6533.72 allowed a remote att... |
| CVE-2024-7003 | MEDIUM | 4.3 | 0.4% | Aug 6, 2024 | Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a ... |
| CVE-2024-7001 | MEDIUM | 4.3 | 0.4% | Aug 6, 2024 | Inappropriate implementation in HTML in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a u... |
| CVE-2024-7000 | HIGH | 8.8 | 0.5% | Aug 6, 2024 | Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage i... |
| CVE-2024-6999 | MEDIUM | 4.3 | 0.4% | Aug 6, 2024 | Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a ... |
| CVE-2024-6998 | HIGH | 8.8 | 0.5% | Aug 6, 2024 | Use after free in User Education in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user ... |
| CVE-2024-6997 | HIGH | 8.8 | 0.5% | Aug 6, 2024 | Use after free in Tabs in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage ... |
| CVE-2024-6996 | LOW | 3.1 | 0.4% | Aug 6, 2024 | Race in Frames in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in speci... |
| CVE-2024-6995 | MEDIUM | 4.7 | 0.5% | Aug 6, 2024 | Inappropriate implementation in Fullscreen in Google Chrome on Android prior to 127.0.6533.72 allowed a remote attacker ... |
| CVE-2024-6994 | HIGH | 8.8 | 0.5% | Aug 6, 2024 | Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.72 allowed a remote attacker to potentially exploit ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now