2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2024-25036LOW3.3IBM Cognos Controller 11.0.0 and 11.0.1 could allow an authenticated user with local access to bypass security all...
CVE-2024-49417LOW3.3Use of implicit intent for sensitive communication in Smart Touch Call prior to 1.0.0.8 allows local attackers to launch...
CVE-2024-49414LOW2.4Authentication Bypass Using an Alternate Path in Dex Mode prior to SMR Dec-2024 Release 1 allows physical attackers to t...
CVE-2024-11856LOW3.7A security vulnerability in HPE IceWall products could be exploited remotely to cause Unauthorized Data Modification.
CVE-2024-52800LOW2.3veraPDF is an open source PDF/A validation library. Executing policy checks using custom schematron files via the CLI in...
CVE-2024-53701LOW3.1Multiple FCNT Android devices provide the original security features such as "privacy mode" where arbitrary applications...
CVE-2024-46939LOW2.4The game extension engine of versions 1.2.7.0 and earlier exposes some components, and attackers can construct parameter...
CVE-2024-36464LOW2.7When exporting media types, the password is exported in the YAML in plain text. This appears to be a best practices type...
CVE-2024-42333LOW2.7The researcher is showing that it is possible to leak a small amount of Zabbix Server memory using an out of bounds read...
CVE-2024-42332LOW3.7The researcher is showing that due to the way the SNMP trap log is parsed, an attacker can craft an SNMP trap with addit...
CVE-2024-42331LOW3.3In the src/libs/zbxembed/browser.c file, the es_browser_ctor method retrieves a heap pointer from the Duktape JavaScript...
CVE-2024-42329LOW3.3The webdriver for the Browser object expects an error object to be initialized when the webdriver_session_query function...
CVE-2024-22117LOW2.2When a URL is added to the map element, it is recorded in the database with sequential IDs. Upon adding a new URL, the s...
CVE-2024-8160LOW2.7Erik de Jong, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API ftptest.cgi did not have a sufficie...
CVE-2024-10492LOW2.7A vulnerability was found in Keycloak. A user with high privileges could read sensitive information from a Vault file th...
CVE-2024-7056LOW3.5The WPForms WordPress plugin before 1.9.1.6 does not sanitise and escape some of its settings, which could allow high p...
CVE-2024-10710LOW3.5The YaDisk Files WordPress plugin through 1.2.5 does not sanitise and escape some of its settings, which could allow hig...
CVE-2024-9763LOW3.3Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerabili...
CVE-2024-9762LOW3.3Tungsten Automation Power PDF OXPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerabil...
CVE-2024-9761LOW3.3Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerabili...
CVE-2024-9760LOW3.3Tungsten Automation Power PDF PNG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerabili...
CVE-2024-9759LOW3.3Tungsten Automation Power PDF GIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerabili...
CVE-2024-9757LOW3.3Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerabili...
CVE-2024-9754LOW3.3Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerabili...
CVE-2024-9753LOW3.3Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerabili...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now