2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-6778HIGH7.5Race in DevTools in Google Chrome prior to 126.0.6478.182 allowed an attacker who convinced a user to install a maliciou...
CVE-2024-6777MEDIUM6.5Use after free in Navigation in Google Chrome prior to 126.0.6478.182 allowed an attacker who convinced a user to instal...
CVE-2024-6776HIGH8.8Use after free in Audio in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to potentially exploit heap c...
CVE-2024-6775HIGH8.8Use after free in Media Stream in Google Chrome prior to 126.0.6478.182 allowed a remote attacker who convinced a user t...
CVE-2024-6774HIGH8.8Use after free in Screen Capture in Google Chrome prior to 126.0.6478.182 allowed a remote attacker who convinced a user...
CVE-2024-6773HIGH8.8Inappropriate implementation in V8 in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to potentially exp...
CVE-2024-6772HIGH8.8Inappropriate implementation in V8 in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to perform out of ...
CVE-2024-6395MEDIUM5.3An exposure of sensitive information vulnerability in GitHub Enterprise Server would allow an attacker to enumerate the ...
CVE-2024-6336MEDIUM5.3A Security Misconfiguration vulnerability in GitHub Enterprise Server allowed sensitive information disclosure to unauth...
CVE-2024-5817MEDIUM6.5An Incorrect Authorization vulnerability was identified in GitHub Enterprise Server that allowed read access to issue co...
CVE-2024-5816MEDIUM5.3An Incorrect Authorization vulnerability was identified in GitHub Enterprise Server that allowed a suspended GitHub App ...
CVE-2024-5815MEDIUM6.5A Cross-Site Request Forgery vulnerability in GitHub Enterprise Server allowed write operations on a victim-owned reposi...
CVE-2024-5795MEDIUM6.5A Denial of Service vulnerability was identified in GitHub Enterprise Server that allowed an attacker to cause unbounded...
CVE-2024-5566MEDIUM6.5An improper privilege management vulnerability allowed users to migrate private repositories without having appropriate ...
CVE-2024-40536MEDIUM5.3Shenzhen Libituo Technology Co., Ltd LBT-T300-T400 v3.2 were discovered to contain a stack overflow via the pin_3g_code ...
CVE-2024-40535CRITICAL9.8Shenzhen Libituo Technology Co., Ltd LBT-T300-T400 v3.2 was discovered to contain a stack overflow via the apn_name_3g p...
CVE-2024-21687HIGH8.1This High severity File Inclusion vulnerability was introduced in versions 9.0.0, 9.1.0, 9.2.0, 9.3.0, 9.4.0, 9.5.0 and ...
CVE-2024-40515CRITICAL9.8An issue in SHENZHEN TENDA TECHNOLOGY CO.,LTD Tenda AX2pro V16.03.29.48_cn allows a remote attacker to execute arbitrary...
CVE-2024-40505CRITICAL9.3Directory Traversal vulnerability in D-Link DAP-1650 Firmware v.1.03 allows a local attacker to escalate privileges via ...
CVE-2024-40456CRITICAL9.8ThinkSAAS v3.7.0 was discovered to contain a SQL injection vulnerability via the name parameter at \system\action\update...
CVE-2024-40455LOW2.7An arbitrary file deletion vulnerability in ThinkSAAS v3.7 allows attackers to delete arbitrary files via a crafted requ...
CVE-2024-21686HIGH8.7This High severity Stored XSS vulnerability was introduced in versions 7.13 of Confluence Data Center and Server. This ...
CVE-2024-6492HIGH7.4Exposure of Sensitive Information in edge browser session proxy feature in Devolutions Remote Desktop Manager 2024.2.14....
CVE-2024-40516HIGH8.8An issue in H3C Technologies Co., Limited H3C Magic RC3000 RC3000V100R009 allows a remote attacker to execute arbitrary ...
CVE-2024-40503MEDIUM6.5An issue in Tenda AX12 v.16.03.49.18_cn+ allows a remote attacker to cause a denial of service via the Routing functiona...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now