2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-56083 | HIGH | 8.1 | 0.5% | Dec 16, 2024 | Cognition Devin before 2024-12-12 provides write access to code by an attacker who discovers the https://vscode-randomly... |
| CVE-2024-11858 | HIGH | 7.8 | 0.8% | Dec 15, 2024 | A flaw was found in Radare2, which contains a command injection vulnerability caused by insufficient input validation wh... |
| CVE-2024-7701 | HIGH | 7.5 | 0.2% | Dec 15, 2024 | Use of Password Hash With Insufficient Computational Effort vulnerability in percona percona-toolkit allows Encryption B... |
| CVE-2024-56073 | HIGH | 7.5 | 0.6% | Dec 15, 2024 | An issue was discovered in FastNetMon Community Edition through 1.2.7. Zero-length templates for Netflow v9 allow remote... |
| CVE-2024-56072 | HIGH | 7.5 | 0.7% | Dec 15, 2024 | An issue was discovered in FastNetMon Community Edition through 1.2.7. The sFlow v5 plugin allows remote attackers to ca... |
| CVE-2024-55970 | HIGH | 7.5 | 0.5% | Dec 15, 2024 | File Manager in Syncfusion Essential Studio for ASP.NET MVC before 27.1.55 has a traversal issue that is related to the ... |
| CVE-2024-31892 | HIGH | 7.5 | 0.3% | Dec 14, 2024 | IBM Storage Scale GUI 5.1.9.0 through 5.1.9.6 and 5.2.0.0 through 5.2.1.1 could allow a user to perform unauthorized act... |
| CVE-2024-31891 | HIGH | 7.8 | 0.2% | Dec 14, 2024 | IBM Storage Scale GUI 5.1.9.0 through 5.1.9.6 and 5.2.0.0 through 5.2.1.1 contains a local privilege escalation vulner... |
| CVE-2024-11721 | HIGH | 8.1 | 0.5% | Dec 14, 2024 | The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to privilege escalation in all versions up to, and i... |
| CVE-2024-11711 | HIGH | 7.5 | 0.5% | Dec 14, 2024 | The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to... |
| CVE-2024-9698 | HIGH | 7.2 | 1.7% | Dec 14, 2024 | The Crafthemes Demo Import plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validat... |
| CVE-2024-12552 | HIGH | 7.8 | 0.2% | Dec 13, 2024 | Wacom Center WTabletServicePro Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local ... |
| CVE-2024-55946 | HIGH | 8.7 | 0.4% | Dec 13, 2024 | Playloom Engine is an open-source, high-performance game development engine. Engine Beta v0.0.1 has a security vulnerabi... |
| CVE-2024-47892 | HIGH | 7.8 | 0.1% | Dec 13, 2024 | Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory... |
| CVE-2024-46971 | HIGH | 7.8 | 0.1% | Dec 13, 2024 | Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory... |
| CVE-2024-55887 | HIGH | 8.6 | 0.5% | Dec 13, 2024 | Ucum-java is a FHIR Java library providing UCUM Services. In versions prior to 1.0.9, XML parsing performed by the UcumE... |
| CVE-2024-55661 | HIGH | 8.8 | 28.6% | Dec 13, 2024 | Laravel Pulse is a real-time application performance monitoring tool and dashboard for Laravel applications. A vulnerabi... |
| CVE-2024-54351 | HIGH | 7.1 | 0.2% | Dec 13, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Thomas K Landis Fancy Roller Scroller fancy-roller-scroller allows St... |
| CVE-2024-54347 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BAKKBONE Australia... |
| CVE-2024-54344 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fahad Mahmood WP Q... |
| CVE-2024-54343 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in thehowarde Connect... |
| CVE-2024-54342 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in STAGGS STAGGS stag... |
| CVE-2024-54341 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LabelGrid LabelGri... |
| CVE-2024-54340 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sylviavanos Simple... |
| CVE-2024-54339 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jbd7 geoFlickr geo... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now