2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-36982 | HIGH | 7.5 | 0.5% | Jul 1, 2024 | In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109 and 9... |
| CVE-2024-21586 | HIGH | 7.5 | 0.5% | Jul 1, 2024 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N... |
| CVE-2024-20399 | MEDIUM | 6.7 | 4.3% | Jul 1, 2024 | A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated user in possession of Administrator cred... |
| CVE-2024-36422 | MEDIUM | 6.1 | 0.4% | Jul 1, 2024 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, a ... |
| CVE-2024-36421 | HIGH | 7.5 | 8.5% | Jul 1, 2024 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, A ... |
| CVE-2024-36420 | HIGH | 7.5 | 1.8% | Jul 1, 2024 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, th... |
| CVE-2024-36401 | CRITICAL | 9.8 | 99.8% | Jul 1, 2024 | GeoServer is an open source server that allows users to share and edit geospatial data. Prior to versions 2.22.6, 2.23.6... |
| CVE-2024-6376 | CRITICAL | 9.8 | 0.4% | Jul 1, 2024 | MongoDB Compass may be susceptible to code injection due to insufficient sandbox protection settings with the usage of e... |
| CVE-2024-6375 | MEDIUM | 6.5 | 0.4% | Jul 1, 2024 | A command for refining a collection shard key is missing an authorization check. This may cause the command to run direc... |
| CVE-2024-34696 | MEDIUM | 4.9 | 0.4% | Jul 1, 2024 | GeoServer is an open source server that allows users to share and edit geospatial data. Starting in version 2.10.0 and p... |
| CVE-2024-23380 | HIGH | 7.8 | 0.2% | Jul 1, 2024 | Memory corruption while handling user packets during VBO bind operation. |
| CVE-2024-23373 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released. |
| CVE-2024-23372 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption while invoking IOCTL call for GPU memory allocation and size param is greater than expected size. |
| CVE-2024-23368 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption when allocating and accessing an entry in an SMEM partition. |
| CVE-2024-21482 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of th... |
| CVE-2024-21469 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption when an invoke call and a TEE call are bound for the same trusted application. |
| CVE-2024-21466 | HIGH | 7.5 | 0.2% | Jul 1, 2024 | Information disclosure while parsing sub-IE length during new IE generation. |
| CVE-2024-21465 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption while processing key blob passed by the user. |
| CVE-2024-21462 | MEDIUM | 5.5 | 0.1% | Jul 1, 2024 | Transient DOS while loading the TA ELF file. |
| CVE-2024-21461 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption while performing finish HMAC operation when context is freed by keymaster. |
| CVE-2024-21460 | MEDIUM | 6.5 | 0.1% | Jul 1, 2024 | Information disclosure when ASLR relocates the IMEM and Secure DDR portions as one chunk in virtual address space. |
| CVE-2024-21458 | HIGH | 7.5 | 0.2% | Jul 1, 2024 | Information disclosure while handling SA query action frame. |
| CVE-2024-21457 | HIGH | 7.5 | 0.2% | Jul 1, 2024 | INformation disclosure while handling Multi-link IE in beacon frame. |
| CVE-2024-21456 | CRITICAL | 9.1 | 0.3% | Jul 1, 2024 | Information Disclosure while parsing beacon frame in STA. |
| CVE-2024-6050 | MEDIUM | 6.1 | 0.8% | Jul 1, 2024 | Improper Neutralization of Input During Web Page Generation vulnerability in SOKRATES-software SOWA OPAC allows a Reflec... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now