2024 CVE Vulnerabilities
39,217 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-58356 | LOW | 2.3 | 0.3% | Jul 18, 2026 | SurrealDB before 2.1.4 silently fails to overwrite table definitions when the DEFINE TABLE ... OVERWRITE clause is used ... |
| CVE-2024-23573 | LOW | 3.7 | — | Jul 17, 2026 | HCL Aftermarket EPC is vulnerable to attack since the Application is vulnerable to Lucky 13. that makes the SS LLUCKY13 ... |
| CVE-2024-32389 | LOW | 3.5 | 0.2% | Jul 16, 2026 | Buffer Overflow vulnerability in Kerlink Kerlink Wirnet iStation 868 KerOS v.4.3.3_20200803132042 allows a remote attack... |
| CVE-2024-24769 | LOW | 2.1 | 0.3% | Jun 17, 2026 | vantage6 is an open-source infrastructure for privacy preserving analysis. Prior to version 5.0.0, users can reset their... |
| CVE-2024-42206 | LOW | 3.1 | 0.2% | Jun 2, 2026 | HCL iReflection Third party vulnerable and outdated components issue was detected in the web application |
| CVE-2024-47272 | LOW | 2.7 | 0.2% | May 27, 2026 | Incorrect authorization vulnerability in IO Module functionality in Synology Surveillance Station before 9.2.2-11575 and... |
| CVE-2024-47270 | LOW | 2.7 | 0.2% | May 27, 2026 | Improper preservation of permissions vulnerability in Archiving Push functionality in Synology Surveillance Station befo... |
| CVE-2024-47267 | LOW | 2.7 | 0.3% | May 27, 2026 | Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in Archiving Pull functiona... |
| CVE-2024-21950 | LOW | 1.8 | 0.1% | May 15, 2026 | An out of bounds read in the remote management firmware could allow a privileged attacker read a limited section of memo... |
| CVE-2024-7083 | LOW | 3.5 | 0.2% | Apr 20, 2026 | The Email Encoder WordPress plugin before 2.3.4 does not sanitise and escape some of its settings, which could allow hi... |
| CVE-2024-55271 | LOW | 3.5 | 0.1% | Feb 17, 2026 | A Cross-Site Request Forgery (CSRF) vulnerability has been identified in phpgurukul Gym Management System 1.0. This issu... |
| CVE-2024-54556 | LOW | 2.4 | 0.2% | Jan 16, 2026 | This issue was addressed through improved state management. This issue is fixed in iOS 18.1 and iPadOS 18.1. A user may ... |
| CVE-2024-44210 | LOW | 3.3 | 0.2% | Jan 16, 2026 | This issue was addressed with improved permissions checking. This issue is fixed in macOS Sequoia 15.1. An app may be ab... |
| CVE-2024-56464 | LOW | 2.7 | 0.2% | Dec 9, 2025 | IBM QRadar SIEM 7.5 - 7.5.0 UP14 IF01 is affected by an information disclosure vulnerability involving exposure of direc... |
| CVE-2024-48341 | LOW | 3.7 | 0.2% | Sep 8, 2025 | dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/doAdminAction.... |
| CVE-2024-36331 | LOW | 3.2 | 0.1% | Sep 6, 2025 | Improper initialization of CPU cache memory could allow a privileged attacker with hypervisor access to overwrite SEV-SN... |
| CVE-2024-21977 | LOW | 3.2 | 0.1% | Sep 5, 2025 | Incomplete cleanup after loading a CPU microcode patch may allow a privileged attacker to degrade the entropy of the RDR... |
| CVE-2024-44271 | LOW | 3.3 | 0.1% | Aug 29, 2025 | The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2. An app may be able to record th... |
| CVE-2024-41984 | LOW | 3.5 | 0.2% | Aug 12, 2025 | A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >= V13.2 < V2506), SOA Au... |
| CVE-2024-8244 | LOW | 3.7 | 0.2% | Aug 6, 2025 | The filepath.Walk and filepath.WalkDir functions are documented as not following symbolic links, but both functions are ... |
| CVE-2024-13978 | LOW | 2.5 | 0.2% | Aug 1, 2025 | A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as problematic. Affected by this vulnerability is... |
| CVE-2024-42209 | LOW | 3.5 | 0.2% | Jul 17, 2025 | HCL Connections is vulnerable to an information disclosure vulnerability that could allow a user to obtain sensitive inf... |
| CVE-2024-36349 | LOW | 3.8 | 0.2% | Jul 8, 2025 | A transient execution vulnerability in some AMD processors may allow a user process to infer TSC_AUX even when such a re... |
| CVE-2024-36348 | LOW | 3.8 | 0.3% | Jul 8, 2025 | A transient execution vulnerability in some AMD processors may allow a user process to infer the control registers specu... |
| CVE-2024-58117 | LOW | 3.3 | 0.1% | Jul 7, 2025 | Stack overflow risk when vector images are parsed during file preview Impact: Successful exploitation of this vulnerabil... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now