2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-42397MEDIUM5.3Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Certificate Management daemon accessed ...
CVE-2024-42396MEDIUM5.3Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Certificate Management daemon accessed ...
CVE-2024-42395CRITICAL9.8There is a vulnerability in the AP Certificate Management Service which could allow a threat actor to execute an unauthe...
CVE-2024-42394CRITICAL9.8There are vulnerabilities in the Soft AP Daemon Service which could allow a threat actor to execute an unauthenticated R...
CVE-2024-42393CRITICAL9.8There are vulnerabilities in the Soft AP Daemon Service which could allow a threat actor to execute an unauthenticated R...
CVE-2024-28740CRITICAL9.6Cross Site Scripting vulnerability in Koha ILS 23.05 and before allows a remote attacker to execute arbitrary code via t...
CVE-2024-28739HIGH7.2An issue in Koha ILS 23.05 and before allows a remote attacker to execute arbitrary code via a crafted script to the for...
CVE-2024-42347MEDIUM6.5matrix-react-sdk is a react-based SDK for inserting a Matrix chat/voip client into a web page. A malicious homeserver c...
CVE-2024-41677MEDIUM6.1Qwik is a performance focused javascript framework. A potential mutation XSS vulnerability exists in Qwik for versions u...
CVE-2024-7502HIGH7.8A crafted DPA file could force Delta Electronics DIAScreen to overflow a stack-based buffer, which could allow an attack...
CVE-2024-42358MEDIUM5.5PDFio is a simple C library for reading and writing PDF files. There is a denial of service (DOS) vulnerability in the T...
CVE-2024-39229MEDIUM5.3An issue in GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT...
CVE-2024-39227CRITICAL9.8GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/...
CVE-2024-7564MEDIUM6.5Logsign Unified SecOps Platform Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remo...
CVE-2024-7005MEDIUM4.3Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 127.0.6533.72 allowed a remote att...
CVE-2024-7004MEDIUM4.3Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 127.0.6533.72 allowed a remote att...
CVE-2024-7003MEDIUM4.3Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a ...
CVE-2024-7001MEDIUM4.3Inappropriate implementation in HTML in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a u...
CVE-2024-7000HIGH8.8Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage i...
CVE-2024-6999MEDIUM4.3Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a ...
CVE-2024-6998HIGH8.8Use after free in User Education in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user ...
CVE-2024-6997HIGH8.8Use after free in Tabs in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage ...
CVE-2024-6996LOW3.1Race in Frames in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in speci...
CVE-2024-6995MEDIUM4.7Inappropriate implementation in Fullscreen in Google Chrome on Android prior to 127.0.6533.72 allowed a remote attacker ...
CVE-2024-6994HIGH8.8Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.72 allowed a remote attacker to potentially exploit ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now