2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-12786HIGH8.5A vulnerability, which was classified as critical, was found in X1a0He Adobe Downloader up to 1.3.1 on macOS. Affected i...
CVE-2024-12785HIGH8.8A vulnerability was found in itsourcecode Vehicle Management System 1.0. It has been declared as critical. Affected by t...
CVE-2024-12782HIGH7.3A vulnerability has been found in Fujifilm Business Innovation Apeos C3070, Apeos C5570 and Apeos C6580 up to 24.8.28 an...
CVE-2024-12569HIGH7.8Disclosure of sensitive information in a Milestone XProtect Device Pack driver’s log file for third-party cameras, allow...
CVE-2024-4230HIGH7.8External Control of File Name or Path vulnerability in Edgecross Basic Software for Windows versions 1.00 and later and ...
CVE-2024-4229HIGH7.8Incorrect Default Permissions vulnerability in Edgecross Basic Software for Windows versions 1.00 and later and Edgecros...
CVE-2024-11740HIGH7.3The The Download Manager plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and ...
CVE-2024-51532HIGH7.1Dell PowerStore contains an Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerabi...
CVE-2024-35141HIGH7.8IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate their privileges due to exe...
CVE-2024-56319HIGH7.5In Matter (aka connectedhomeip or Project CHIP) through 1.4.0.0 before e3277eb, unlimited user label appends in a userla...
CVE-2024-56318HIGH7.5In raw\TCP.cpp in Matter (aka connectedhomeip or Project CHIP) through 1.4.0.0 before 27ca6ec, there is a NULL pointer d...
CVE-2024-56317HIGH7.5In Matter (aka connectedhomeip or Project CHIP) through 1.4.0.0, the WriteAcl function deletes all existing ACL entries ...
CVE-2024-56116HIGH8.8A Cross-Site Request Forgery vulnerability in Amiro.CMS before 7.8.4 allows remote attackers to create an administrator ...
CVE-2024-55506HIGH8.8An IDOR vulnerability in CodeAstro's Complaint Management System v1.0 (version with 0 updates) enables an attacker to ex...
CVE-2024-53580HIGH7.5iperf v3.17.1 was discovered to contain a segmentation violation via the iperf_exchange_parameters() function.
CVE-2024-41159HIGH7.1A library injection vulnerability exists in Microsoft OneNote 16.83 for macOS. A specially crafted library can leverage ...
CVE-2024-55505HIGH8.8An issue in CodeAstro Complaint Management System v.1.0 allows a remote attacker to escalate privileges via the mess-vie...
CVE-2024-12695HIGH8.8Out of bounds write in V8 in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to execute arbitrary code i...
CVE-2024-12694HIGH8.8Use after free in Compositing in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit ...
CVE-2024-12693HIGH8.8Out of bounds memory access in V8 in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to execute arbitrar...
CVE-2024-12692HIGH8.8Type Confusion in V8 in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit heap corr...
CVE-2024-12686HIGH7.2A vulnerability has been discovered in Privileged Remote Access (PRA) and Remote Support (RS) which can allow an attacke...
CVE-2024-53271HIGH7.1Envoy is a cloud-native high-performance edge/middle/service proxy. In affected versions envoy does not properly handle...
CVE-2024-53270HIGH7.5Envoy is a cloud-native high-performance edge/middle/service proxy. In affected versions `sendOverloadError` is going to...
CVE-2024-53269HIGH7.5Envoy is a cloud-native high-performance edge/middle/service proxy. When additional address are not ip addresses, then t...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now