2024 CVE Vulnerabilities
39,241 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-36413 | MEDIUM | 5.4 | 0.3% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6... |
| CVE-2024-36412 | CRITICAL | 9.8 | 5.7% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6... |
| CVE-2024-36411 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. In versions prior to 7.14.4 and ... |
| CVE-2024-32167 | CRITICAL | 9.1 | 0.7% | Jun 10, 2024 | Sourcecodester Online Medicine Ordering System 1.0 is vulnerable to Arbitrary file deletion vulnerability as the backend... |
| CVE-2024-27792 | MEDIUM | 5.5 | 0.2% | Jun 10, 2024 | This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Sonoma 14.4. An a... |
| CVE-2024-23299 | HIGH | 8.6 | 0.2% | Jun 10, 2024 | The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ven... |
| CVE-2024-22279 | HIGH | 7.5 | 0.4% | Jun 10, 2024 | Improper handling of requests in Routing Release > v0.273.0 and <= v0.297.0 allows an unauthenticated attacker to degrad... |
| CVE-2024-36410 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. In versions prior to 7.14.4 and ... |
| CVE-2024-36409 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. In versions prior to 7.14.4 and ... |
| CVE-2024-31612 | MEDIUM | 6.5 | 0.2% | Jun 10, 2024 | Emlog pro2.3 is vulnerable to Cross Site Request Forgery (CSRF) via twitter.php which can be used with a XSS vulnerabili... |
| CVE-2024-5597 | CRITICAL | 9.8 | 0.5% | Jun 10, 2024 | Fuji Electric Monitouch V-SFT is vulnerable to a type confusion, which could cause a crash or code execution. |
| CVE-2024-5102 | HIGH | 7 | 0.2% | Jun 10, 2024 | A sym-linked file accessed via the repair function in Avast Antivirus <24.2 on Windows may allow user to elevate privile... |
| CVE-2024-3850 | MEDIUM | 5.4 | 0.9% | Jun 10, 2024 | Uniview NVR301-04S2-P4 is vulnerable to reflected cross-site scripting attack (XSS). An attacker could send a user a URL... |
| CVE-2024-36408 | HIGH | 8.8 | 0.5% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. In versions prior to 7.14.4 and ... |
| CVE-2024-36407 | MEDIUM | 6.5 | 0.3% | Jun 10, 2024 | SuiteCRM is an open-source Customer Relationship Management (CRM) software application. In versions prior to 7.14.4 and ... |
| CVE-2024-35754 | MEDIUM | 6.5 | 0.5% | Jun 10, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Ovic Team Ovic Importer ... |
| CVE-2024-35749 | MEDIUM | 5.3 | 0.3% | Jun 10, 2024 | Authentication Bypass by Spoofing vulnerability in Acurax Under Construction / Maintenance Mode from Acurax allows Authe... |
| CVE-2024-35747 | MEDIUM | 5.3 | 0.4% | Jun 10, 2024 | Improper Restriction of Excessive Authentication Attempts vulnerability in wpdevart Contact Form Builder, Contact Widget... |
| CVE-2024-35746 | CRITICAL | 9.8 | 0.5% | Jun 10, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Asghar Hatampoor BuddyPress Cover allows Code Injection... |
| CVE-2024-35745 | HIGH | 7.5 | 0.6% | Jun 10, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Gabriel Somoza / Joseph ... |
| CVE-2024-35744 | MEDIUM | 6.5 | 0.6% | Jun 10, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Ravidhu Dissanayake Upun... |
| CVE-2024-35743 | MEDIUM | 6.5 | 0.6% | Jun 10, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Siteclean SC filechecker... |
| CVE-2024-35728 | MEDIUM | 5.3 | 0.3% | Jun 10, 2024 | Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in Them... |
| CVE-2024-31611 | CRITICAL | 9.1 | 0.6% | Jun 10, 2024 | SeaCMS 12.9 has a file deletion vulnerability via admin_template.php. |
| CVE-2024-37051 | HIGH | 7.5 | 3.8% | Jun 10, 2024 | GitHub access token could be exposed to third-party sites in JetBrains IDEs after version 2023.1 and less than: IntelliJ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now