2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-12010HIGH7.2A post-authentication command injection vulnerability in the ”zyUtilMailSend” function of the Zyxel AX7501-B1 firmware v...
CVE-2024-12009HIGH7.2A post-authentication command injection vulnerability in the "ZyEE" function of the Zyxel EX5601-T1 firmware version V5....
CVE-2024-11253HIGH7.2A post-authentication command injection vulnerability in the "DNSServer” parameter of the diagnostic function in the Zyx...
CVE-2024-49823MEDIUM6.5IBM Common Cryptographic Architecture 7.0.0 through 7.5.51 could allow an authenticated user to cause a denial of servic...
CVE-2024-41760LOW3.7IBM Common Cryptographic Architecture 7.0.0 through 7.5.51 could allow an attacker to obtain sensitive information due...
CVE-2024-22340MEDIUM6.5IBM Common Cryptographic Architecture 7.0.0 through 7.5.51 could allow a remote attacker to obtain sensitive informa...
CVE-2024-56192HIGH7.8In wl_notify_gscan_event of wl_cfgscan.c, there is a possible out of bounds write due to a missing bounds check. This co...
CVE-2024-56191HIGH8.4In dhd_process_full_gscan_result of dhd_pno.c, there is a possible EoP due to an integer overflow. This could lead to lo...
CVE-2024-56188MEDIUM5.1there is a possible way to crash the modem due to a missing null check. This could lead to remote denial of service with...
CVE-2024-56187MEDIUM6.6In ppcfw_deny_sec_dram_access of ppcfw.c, there is a possible arbitrary read from TEE memory due to a logic error in the...
CVE-2024-56186MEDIUM5.1In closeChannel of secureelementimpl.cpp, there is a possible out of bounds read due to an incorrect bounds check. This ...
CVE-2024-56185MEDIUM5.1In ProtocolUnsolOnSSAdapter::GetServiceClass() of protocolcalladapter.cpp, there is a possible out-of-bounds read due to...
CVE-2024-56184MEDIUM5.1In static long dev_send of tipc_dev_ql, there is a possible out of bounds read due to an incorrect bounds check. This co...
CVE-2024-54560MEDIUM5.5A logic issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18...
CVE-2024-54558LOW2.8A clickjacking issue was addressed with improved out-of-process view handling. This issue is fixed in iOS 18 and iPadOS ...
CVE-2024-54546HIGH7.5The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15. An app may be able to ca...
CVE-2024-54473MEDIUM5.5This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15. An a...
CVE-2024-54469MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, macOS Sonom...
CVE-2024-54467MEDIUM6.5A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18, iOS 18 and iPa...
CVE-2024-54463MEDIUM5.5This issue was addressed with improved entitlements. This issue is fixed in macOS Sequoia 15. An app may be able to acce...
CVE-2024-44227HIGH7.5The issue was addressed with improved memory handling. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An...
CVE-2024-44192MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in Safari 18, iOS 18 and iPadOS 18, macOS Sequoia 15, ...
CVE-2024-44179LOW2.4This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 17.7 and iPadOS 1...
CVE-2024-55199MEDIUM5.4A Stored Cross Site Scripting (XSS) vulnerability in Celk Sistemas Celk Saude v.3.1.252.1 allows a remote attacker to st...
CVE-2024-53307MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability in the /mw/ endpoint of Evisions MAPS v6.10.2.267 allows attackers ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now