2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-58054 | HIGH | 7.1 | 0.2% | Mar 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: staging: media: max96712: fix kernel oops when remo... |
| CVE-2024-58053 | MEDIUM | 5.5 | 0.2% | Mar 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix handling of received connection abort F... |
| CVE-2024-58052 | MEDIUM | 5.5 | 0.2% | Mar 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix potential NULL pointer dereference ... |
| CVE-2024-58051 | MEDIUM | 5.5 | 0.2% | Mar 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: ipmi: ipmb: Add check devm_kasprintf() returned val... |
| CVE-2024-42844 | HIGH | 8.1 | 0.4% | Mar 6, 2025 | A SQL Injection vulnerability has been identified in EPICOR Prophet 21 (P21) up to 23.2.5232. This vulnerability allows ... |
| CVE-2024-12146 | HIGH | 7.5 | 0.3% | Mar 6, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Finder Fire Safety... |
| CVE-2024-13894 | MEDIUM | 5.9 | 0.2% | Mar 6, 2025 | Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, are ... |
| CVE-2024-13893 | HIGH | 7.5 | 0.2% | Mar 6, 2025 | Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, migh... |
| CVE-2024-13892 | HIGH | 7.7 | 0.7% | Mar 6, 2025 | Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, are ... |
| CVE-2024-12144 | CRITICAL | 9.8 | 0.4% | Mar 6, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Finder Fire Safety... |
| CVE-2024-7872 | HIGH | 7.6 | 0.2% | Mar 6, 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in ExtremePACS Extreme XDS allows Retrieve Embedded Sens... |
| CVE-2024-56196 | MEDIUM | 6.3 | 0.7% | Mar 6, 2025 | Improper Access Control vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 10.0.0 t... |
| CVE-2024-56195 | MEDIUM | 6.3 | 0.7% | Mar 6, 2025 | Improper Access Control vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.2.0 th... |
| CVE-2024-38311 | MEDIUM | 6.3 | 0.8% | Mar 6, 2025 | Improper Input Validation vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 8.0.0 ... |
| CVE-2024-56202 | MEDIUM | 4.3 | 0.8% | Mar 6, 2025 | Expected Behavior Violation vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.0.... |
| CVE-2024-13902 | MEDIUM | 5.4 | 0.3% | Mar 6, 2025 | A vulnerability, which was classified as problematic, was found in huang-yk student-manage 1.0. This affects an unknown ... |
| CVE-2024-13897 | MEDIUM | 6.5 | 0.9% | Mar 6, 2025 | The Moving Media Library plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path val... |
| CVE-2024-13868 | MEDIUM | 6.1 | 0.3% | Mar 6, 2025 | The URL Shortener | Conversion Tracking | AB Testing | WooCommerce WordPress plugin through 9.0.2 does not sanitise an... |
| CVE-2024-57174 | HIGH | 8.1 | 0.3% | Mar 5, 2025 | A misconfiguration in Alphion ASEE-1443 Firmware v0.4.H.00.02.15 defines a previously unregistered domain name as the de... |
| CVE-2024-51144 | HIGH | 8.8 | 0.4% | Mar 5, 2025 | Cross Site Request Forgery (CSRF) vulnerability exists in the 'pvmsg.php?action=add_message', pvmsg.php?action=confirm_d... |
| CVE-2024-48246 | MEDIUM | 5.4 | 0.4% | Mar 5, 2025 | Vehicle Management System 1.0 contains a Stored Cross-Site Scripting (XSS) vulnerability in the "Name" parameter of /veh... |
| CVE-2024-31525 | HIGH | 7.2 | 0.4% | Mar 5, 2025 | Peppermint Ticket Management 0.4.6 is vulnerable to Incorrect Access Control. A regular registered user is able to eleva... |
| CVE-2024-53458 | HIGH | 7.5 | 0.5% | Mar 5, 2025 | Sysax Multi Server 6.99 is vulnerable to a denial of service (DoS) condition when processing specially crafted SSH packe... |
| CVE-2024-11035 | LOW | 2.5 | 0.1% | Mar 5, 2025 | Carbon Black Cloud Windows Sensor, prior to 4.0.3, may be susceptible to an Information Leak vulnerability, which s a ty... |
| CVE-2024-12799 | CRITICAL | 10 | 0.4% | Mar 5, 2025 | Insufficiently Protected Credentials vulnerability in OpenText Identity Manager Advanced Edition on Windows, Linux, 64 b... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now