2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12485 | HIGH | 8.8 | 0.5% | Dec 12, 2024 | A vulnerability, which was classified as critical, has been found in code-projects Online Class and Exam Scheduling Syst... |
| CVE-2024-12481 | HIGH | 8.8 | 0.6% | Dec 12, 2024 | A vulnerability was found in cjbi wetech-cms 1.0/1.1/1.2. It has been declared as critical. Affected by this vulnerabili... |
| CVE-2024-12480 | HIGH | 8.8 | 0.5% | Dec 12, 2024 | A vulnerability was found in cjbi wetech-cms 1.0/1.1/1.2. It has been classified as critical. Affected is the function s... |
| CVE-2024-12479 | HIGH | 8.8 | 0.6% | Dec 12, 2024 | A vulnerability was found in cjbi wetech-cms 1.0/1.1/1.2 and classified as critical. This issue affects the function sea... |
| CVE-2024-12382 | HIGH | 8.8 | 4.1% | Dec 12, 2024 | Use after free in Translate in Google Chrome prior to 131.0.6778.139 allowed a remote attacker to potentially exploit he... |
| CVE-2024-12381 | HIGH | 8.8 | 4.0% | Dec 12, 2024 | Type Confusion in V8 in Google Chrome prior to 131.0.6778.139 allowed a remote attacker to potentially exploit heap corr... |
| CVE-2024-11950 | HIGH | 8.8 | 0.5% | Dec 12, 2024 | XnSoft XnView Classic RWZ File Parsing Integer Underflow Remote Code Execution Vulnerability. This vulnerability allows ... |
| CVE-2024-11949 | HIGH | 8.8 | 0.8% | Dec 12, 2024 | GFI Archiver Store Service Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability all... |
| CVE-2024-11947 | HIGH | 8.8 | 0.8% | Dec 12, 2024 | GFI Archiver Core Service Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allo... |
| CVE-2024-11872 | HIGH | 7.8 | 0.2% | Dec 12, 2024 | Epic Games Launcher Incorrect Default Permissions Local Privilege Escalation Vulnerability. This vulnerability allows lo... |
| CVE-2024-9845 | HIGH | 7.8 | 0.2% | Dec 11, 2024 | Under specific circumstances, insecure permissions in Ivanti Automation before version 2024.4.0.1 allows a local authent... |
| CVE-2024-8496 | HIGH | 7.8 | 0.2% | Dec 11, 2024 | Under specific circumstances, insecure permissions in Ivanti Workspace Control before version 10.18.40.0 allows a local ... |
| CVE-2024-48912 | HIGH | 8.1 | 0.4% | Dec 11, 2024 | GLPI is a free asset and IT management software package. Starting in version 10.0.0 and prior to version 10.0.17, an aut... |
| CVE-2024-47761 | HIGH | 7.2 | 0.5% | Dec 11, 2024 | GLPI is a free asset and IT management software package. Starting in version 0.80 and prior to version 10.0.17, an admin... |
| CVE-2024-47760 | HIGH | 8.8 | 0.5% | Dec 11, 2024 | GLPI is a free asset and IT management software package. Starting in version 9.1.0 and prior to version 10.0.17, a techn... |
| CVE-2024-11598 | HIGH | 7.8 | 0.2% | Dec 11, 2024 | Under specific circumstances, insecure permissions in Ivanti Application Control before version 2024.3 HF1, 2024.1 HF2, ... |
| CVE-2024-11597 | HIGH | 7.8 | 0.2% | Dec 11, 2024 | Under specific circumstances, insecure permissions in Ivanti Performance Manager before version 2024.3 HF1, 2024.1 HF1, ... |
| CVE-2024-10251 | HIGH | 7.8 | 0.2% | Dec 11, 2024 | Under specific circumstances, insecure permissions in Ivanti Security Controls before version 2024.4.1 allows a local au... |
| CVE-2024-47758 | HIGH | 8.8 | 0.4% | Dec 11, 2024 | GLPI is a free asset and IT management software package. Starting in version 9.3.0 and prior to version 10.0.17, an auth... |
| CVE-2024-28139 | HIGH | 8.8 | 0.7% | Dec 11, 2024 | The www-data user can elevate its privileges because sudo is configured to allow the execution of the mount command as r... |
| CVE-2024-11840 | HIGH | 7.1 | 0.4% | Dec 11, 2024 | The RapidLoad – Optimize Web Vitals Automatically plugin for WordPress is vulnerable to unauthorized access of data and ... |
| CVE-2024-12363 | HIGH | 7.1 | 0.1% | Dec 11, 2024 | Insufficient permissions in the TeamViewer Patch & Asset Management component prior to version 24.12 on Windows allows a... |
| CVE-2024-53290 | HIGH | 8.4 | 0.8% | Dec 11, 2024 | Dell ThinOS version 2408 contains an Improper Neutralization of Special Elements used in a Command ('Command Injection')... |
| CVE-2024-53289 | HIGH | 7 | 0.1% | Dec 11, 2024 | Dell ThinOS version 2408 contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. A low privileged at... |
| CVE-2024-53959 | HIGH | 7.8 | 0.5% | Dec 10, 2024 | Adobe Framemaker versions 2020.7, 2022.5 and earlier are affected by a Stack-based Buffer Overflow vulnerability that co... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now