2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-39071 | CRITICAL | 9.8 | 0.8% | Jul 9, 2024 | Fujian Kelixun <=7.6.6.4391 is vulnerable to SQL Injection in send_event.php. |
| CVE-2024-39031 | MEDIUM | 5.4 | 0.8% | Jul 9, 2024 | In Silverpeas Core <= 6.3.5, in Mes Agendas, a user can create new events and add them to their calendar. Additionally, ... |
| CVE-2024-38959 | MEDIUM | 6.1 | 0.7% | Jul 9, 2024 | Cross Site Scripting vulnerability in Creativeitem Academy LMS Learning Management System v.6.8.1 allows a remote attack... |
| CVE-2024-37865 | MEDIUM | 5.9 | 0.7% | Jul 9, 2024 | An issue in S3Browser v.11.4.5 and v.10.9.9 and fixed in v.11.5.7 allows a remote attacker to obtain sensitive informati... |
| CVE-2024-37829 | HIGH | 8.8 | 0.7% | Jul 9, 2024 | An issue in Outline <= v0.76.1 allows attackers to execute a session hijacking attack via user interaction with a crafte... |
| CVE-2024-34726 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In PVRSRV_MMap of pvr_bridge_k.c, there is a possible arbitrary code execution due to a logic error in the code. This co... |
| CVE-2024-34725 | HIGH | 7 | 0.1% | Jul 9, 2024 | In DevmemIntUnexportCtx of devicemem_server.c, there is a possible arbitrary code execution due to a race condition. Thi... |
| CVE-2024-34724 | HIGH | 7 | 0.1% | Jul 9, 2024 | In _UnrefAndMaybeDestroy of pmr.c, there is a possible arbitrary code execution due to a race condition. This could lead... |
| CVE-2024-34723 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In onTransact of ParcelableListBinder.java , there is a possible way to steal mAllowlistToken to launch an app from back... |
| CVE-2024-34722 | HIGH | 8.8 | 0.3% | Jul 9, 2024 | In smp_proc_rand of smp_act.cc, there is a possible authentication bypass during legacy BLE pairing due to incorrect imp... |
| CVE-2024-34721 | MEDIUM | 5.5 | 0.1% | Jul 9, 2024 | In ensureFileColumns of MediaProvider.java, there is a possible disclosure of files owned by another user due to imprope... |
| CVE-2024-34720 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In com_android_internal_os_ZygoteCommandBuffer_nativeForkRepeatedly of com_android_internal_os_ZygoteCommandBuffer.cpp, ... |
| CVE-2024-31339 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In multiple functions of StatsService.cpp, there is a possible memory corruption due to a use after free. This could lea... |
| CVE-2024-31335 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in th... |
| CVE-2024-31334 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In DevmemIntFreeDefBackingPage of devicemem_server.c, there is a possible arbitrary code execution due to a logic error ... |
| CVE-2024-31332 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In multiple locations, there is a possible way to bypass a restriction on adding new Wi-Fi connections due to a missing ... |
| CVE-2024-31331 | HIGH | 7.3 | 0.1% | Jul 9, 2024 | In setMimeGroup of PackageManagerService.java, there is a possible way to hide the service from Settings due to a logic ... |
| CVE-2024-31327 | HIGH | 7 | 0.1% | Jul 9, 2024 | In multiple functions of MessageQueueBase.h, there is a possible out of bounds write due to a race condition. This could... |
| CVE-2024-31326 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In multiple locations, there is a possible way in which policy migration code will never be executed due to a logic erro... |
| CVE-2024-31325 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In multiple locations, there is a possible way to reveal images across users data due to a logic error in the code. This... |
| CVE-2024-31324 | HIGH | 7.3 | 0.1% | Jul 9, 2024 | In hide of WindowState.java, there is a possible way to bypass tapjacking/overlay protection by launching the activity i... |
| CVE-2024-31323 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In onCreate of multiple files, there is a possible way to trick the user into granting health permissions due to tapjack... |
| CVE-2024-31322 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In updateServicesLocked of AccessibilityManagerService.java, there is a possible way for an app to be hidden from the Se... |
| CVE-2024-31320 | HIGH | 7.8 | 0.3% | Jul 9, 2024 | In setSkipPrompt of AssociationRequest.java , there is a possible way to establish a companion device association withou... |
| CVE-2024-31319 | HIGH | 7.8 | 0.2% | Jul 9, 2024 | In updateNotificationChannelFromPrivilegedListener of NotificationManagerService.java, there is a possible cross-user da... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now