2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41336 | HIGH | 7.5 | 0.4% | Feb 27, 2025 | Draytek devices Vigor 165/166 prior to v4.2.6 , Vigor 2620/LTE200 prior to v3.9.8.8, Vigor 2860/2925 prior to v3.9.7, Vi... |
| CVE-2024-41335 | HIGH | 7.5 | 0.4% | Feb 27, 2025 | Draytek devices Vigor 165/166 prior to v4.2.6 , Vigor 2620/LTE200 prior to v3.9.8.8, Vigor 2860/2925 prior to v3.9.7, Vi... |
| CVE-2024-41334 | HIGH | 8.8 | 0.4% | Feb 27, 2025 | Draytek devices Vigor 165/166 prior to v4.2.6 , Vigor 2620/LTE200 prior to v3.9.8.8, Vigor 2860/2925 prior to v3.9.7, Vi... |
| CVE-2024-58042 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: rhashtable: Fix potential deadlock by moving schedu... |
| CVE-2024-58034 | HIGH | 7.8 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: memory: tegra20-emc: fix an OF node reference bug i... |
| CVE-2024-58022 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: mailbox: th1520: Fix a NULL vs IS_ERR() bug The de... |
| CVE-2024-54957 | MEDIUM | 6.1 | 0.6% | Feb 27, 2025 | Nagios XI 2024R1.2.2 is vulnerable to an open redirect flaw on the Tools page, exploitable by users with read-only permi... |
| CVE-2024-53944 | CRITICAL | 9.8 | 39.2% | Feb 27, 2025 | An issue was discovered on Tuoshi/Dionlink LT15D 4G Wi-Fi devices through M7628NNxlSPv2xUI_v1.0.1802.10.08_P4 and LT21B ... |
| CVE-2024-53408 | MEDIUM | 5.4 | 0.3% | Feb 27, 2025 | AVE System Web Client v2.1.131.13992 was discovered to contain a cross-site scripting (XSS) vulnerability. |
| CVE-2024-9285 | MEDIUM | 5.3 | 0.4% | Feb 27, 2025 | A vulnerability was found in Tu Yafeng Via Browser up to 5.9.0 on Android. It has been rated as problematic. This issue ... |
| CVE-2024-56812 | MEDIUM | 5.5 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret... |
| CVE-2024-56811 | LOW | 3.3 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret... |
| CVE-2024-56810 | LOW | 3.3 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret... |
| CVE-2024-56496 | LOW | 3.3 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret... |
| CVE-2024-56495 | LOW | 3.3 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret... |
| CVE-2024-56494 | LOW | 3.3 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret... |
| CVE-2024-56493 | LOW | 3.3 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret... |
| CVE-2024-54170 | MEDIUM | 5.5 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to cause a denial of service due to use of a regular expression with an ineffi... |
| CVE-2024-54169 | MEDIUM | 6.5 | 0.4% | Feb 27, 2025 | IBM EntireX 11.1 could allow an authenticated attacker to traverse directories on the system. An attacker could send a s... |
| CVE-2024-13148 | CRITICAL | 9.8 | 0.4% | Feb 27, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yukseloglu Filter ... |
| CVE-2024-9334 | HIGH | 8.2 | 0.3% | Feb 27, 2025 | Use of Hard-coded Credentials, Storage of Sensitive Data in a Mechanism without Access Control vulnerability in E-Kent P... |
| CVE-2024-13402 | MEDIUM | 5.4 | 0.2% | Feb 27, 2025 | The Buddyboss Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘link_title’ parameter ... |
| CVE-2024-13217 | MEDIUM | 4.3 | 0.3% | Feb 27, 2025 | The Jeg Elementor Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in... |
| CVE-2024-10918 | CRITICAL | 9.8 | 0.4% | Feb 27, 2025 | Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows to overflow the buffer allocated for the Modbus re... |
| CVE-2024-13734 | MEDIUM | 5.4 | 0.3% | Feb 27, 2025 | The Card Elements for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Profi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now