2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-31318HIGH7.8In CompanionDeviceManagerService.java, there is a possible way to pair a companion device without user acceptance due to...
CVE-2024-31317HIGH7.8In multiple functions of ZygoteProcess.java, there is a possible way to achieve code execution as any app via WRITE_SECU...
CVE-2024-31316HIGH7.8In onResult of AccountManagerService.java, there is a possible way to perform an arbitrary background activity launch du...
CVE-2024-31315HIGH7.8In multiple functions of ManagedServices.java, there is a possible way to hide an app with notification access in the De...
CVE-2024-31314MEDIUM5.5In multiple functions of ShortcutService.java, there is a possible persistent DOS due to resource exhaustion. This could...
CVE-2024-31313HIGH7.8In availableToWriteBytes of MessageQueueBase.h, there is a possible out of bounds write due to an incorrect bounds check...
CVE-2024-31312MEDIUM5.5In multiple locations, there is a possible information leak due to a missing permission check. This could lead to local ...
CVE-2024-31311HIGH7.8In increment_annotation_count of stats_event.c, there is a possible out of bounds write due to a missing bounds check. T...
CVE-2024-31310HIGH7.8In newServiceInfoLocked of AutofillManagerServiceImpl.java, there is a possible way to hide an enabled Autofill service ...
CVE-2024-27386MEDIUM6.7A vulnerability was discovered in the slsi_handle_nan_rx_event_log_ind function in Samsung Mobile Processor Exynos 1380 ...
CVE-2024-27385MEDIUM6.7A vulnerability was discovered in the slsi_handle_nan_rx_event_log_ind function in Samsung Mobile Processor Exynos 1380 ...
CVE-2024-23711HIGH7.8In DevmemXIntUnreserveRange of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in ...
CVE-2024-23698HIGH7.8In RGXFWChangeOSidPriority of rgxfwutils.c, there is a possible arbitrary code execution due to a missing bounds check. ...
CVE-2024-23697HIGH7.8In RGXCreateHWRTData_aux of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could ...
CVE-2024-23696HIGH7.8In RGXCreateZSBufferKM of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could le...
CVE-2024-23695HIGH7.8In CacheOpPMRExec of cache_km.c, there is a possible out of bounds write due to an integer overflow. This could lead to ...
CVE-2024-6501LOW3.1A flaw was found in NetworkManager. When a system running NetworkManager with DEBUG logs enabled and an interface eth1 c...
CVE-2024-40750MEDIUM5.3Linksys Velop Pro 6E 1.0.8 MX6200_1.0.8.215731 and 7 1.0.10.215314 devices send cleartext Wi-Fi passwords over the publi...
CVE-2024-39063HIGH8.8Lime Survey <= 6.5.12 is vulnerable to Cross Site Request Forgery (CSRF). The YII_CSRF_TOKEN is only checked when passed...
CVE-2024-37873CRITICAL9.8SQL injection vulnerability in view_payslip.php in Itsourcecode Payroll Management System Project In PHP With Source Cod...
CVE-2024-37872HIGH8.1SQL injection vulnerability in process.php in Itsourcecode Billing System in PHP 1.0 allows remote attackers to execute ...
CVE-2024-37871HIGH8.2SQL injection vulnerability in login.php in Itsourcecode Online Discussion Forum Project in PHP with Source Code 1.0 all...
CVE-2024-37830MEDIUM6.1An issue in Outline <= v0.76.1 allows attackers to redirect a victim user to a malicious site via intercepting and chang...
CVE-2024-34140MEDIUM5.5Bridge versions 14.0.4, 13.0.7, 14.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to ...
CVE-2024-34139HIGH7.8Bridge versions 14.0.4, 13.0.7, 14.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability that co...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now