2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-11835 | HIGH | 7.5 | 0.4% | Dec 13, 2024 | Uncontrolled Resource Consumption vulnerability in PlexTrac allows WebSocket DoS.This issue affects PlexTrac: from 1.61.... |
| CVE-2024-21544 | HIGH | 8.6 | 0.6% | Dec 13, 2024 | Versions of the package spatie/browsershot before 5.0.1 are vulnerable to Improper Input Validation due to improper URL ... |
| CVE-2024-21543 | HIGH | 7.1 | 0.5% | Dec 13, 2024 | Versions of the package djoser before 2.3.0 are vulnerable to Authentication Bypass when the authenticate() function fai... |
| CVE-2024-9508 | HIGH | 8.5 | 0.2% | Dec 13, 2024 | Horner Automation Cscape contains a memory corruption vulnerability, which could allow an attacker to disclose informat... |
| CVE-2024-12212 | HIGH | 8.5 | 0.2% | Dec 13, 2024 | The vulnerability occurs in the parsing of CSP files. The issues result from the lack of proper validation of user-supp... |
| CVE-2024-55888 | HIGH | 7.1 | 0.3% | Dec 12, 2024 | Hush Line is an open-source whistleblower management system. Starting in version 0.1.0 and prior to version 0.3.5, the p... |
| CVE-2024-55885 | HIGH | 7.5 | 0.3% | Dec 12, 2024 | beego is an open-source web framework for the Go programming language. Versions of beego prior to 2.3.4 use MD5 as a has... |
| CVE-2024-55879 | HIGH | 8.8 | 1.0% | Dec 12, 2024 | XWiki Platform is a generic wiki platform. Starting in version 2.3 and prior to versions 15.10.9, 16.3.0, any user with ... |
| CVE-2024-55877 | HIGH | 8.8 | 1.6% | Dec 12, 2024 | XWiki Platform is a generic wiki platform. Starting in version 9.7-rc-1 and prior to versions 15.10.11, 16.4.1, and 16.5... |
| CVE-2024-55662 | HIGH | 8.8 | 0.7% | Dec 12, 2024 | XWiki Platform is a generic wiki platform. Starting in version 3.3-milestone-1 and prior to versions 15.10.9 and 16.3.0,... |
| CVE-2024-28146 | HIGH | 8.4 | 0.3% | Dec 12, 2024 | The application uses several hard-coded credentials to encrypt config files during backup, to decrypt the new firmware d... |
| CVE-2024-28143 | HIGH | 8.4 | 0.3% | Dec 12, 2024 | The password change function at /cgi/admin.cgi does not require the current/old password, which makes the application vu... |
| CVE-2024-54119 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability... |
| CVE-2024-8233 | HIGH | 7.5 | 0.8% | Dec 12, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions from 9.4 before 17.4.6, 17.5 before 17.5.4, and 17.6... |
| CVE-2024-54117 | HIGH | 7.5 | 0.3% | Dec 12, 2024 | Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability... |
| CVE-2024-54116 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Out-of-bounds read vulnerability in the M3U8 module Impact: Successful exploitation of this vulnerability may cause feat... |
| CVE-2024-54115 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Out-of-bounds read vulnerability in the DASH module Impact: Successful exploitation of this vulnerability will affect av... |
| CVE-2024-54114 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Out-of-bounds access vulnerability in playback in the DASH module Impact: Successful exploitation of this vulnerability ... |
| CVE-2024-54113 | HIGH | 7.5 | 0.3% | Dec 12, 2024 | Process residence vulnerability in abnormal scenarios in the print module Impact: Successful exploitation of this vulner... |
| CVE-2024-54112 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability... |
| CVE-2024-54111 | HIGH | 7.5 | 0.1% | Dec 12, 2024 | Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect ... |
| CVE-2024-54110 | HIGH | 7.5 | 0.3% | Dec 12, 2024 | Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability... |
| CVE-2024-54109 | HIGH | 7.5 | 0.3% | Dec 12, 2024 | Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect ... |
| CVE-2024-54108 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect ... |
| CVE-2024-54107 | HIGH | 7.5 | 0.2% | Dec 12, 2024 | Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now