2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12342 | HIGH | 7.1 | 8.9% | Dec 8, 2024 | A vulnerability was found in TP-Link VN020 F3v(T) TT_V6.2.1021. It has been rated as critical. This issue affects some u... |
| CVE-2024-53473 | HIGH | 7.5 | 0.6% | Dec 7, 2024 | WeGIA 3.2.0 before 3998672 does not verify permission to change a password. |
| CVE-2024-47115 | HIGH | 7.8 | 0.2% | Dec 7, 2024 | IBM AIX 7.2, 7.3 and VIOS 3.1 and 4.1 could allow a local user to execute arbitrary commands on the system due to improp... |
| CVE-2024-11501 | HIGH | 8.8 | 0.6% | Dec 7, 2024 | The Gallery plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.3 via des... |
| CVE-2024-12270 | HIGH | 7.5 | 3.5% | Dec 7, 2024 | The Beautiful taxonomy filters plugin for WordPress is vulnerable to SQL Injection via the 'selects[0][term]' parameter ... |
| CVE-2024-11010 | HIGH | 7.2 | 0.8% | Dec 7, 2024 | The FileOrganizer – Manage WordPress and Website Files plugin for WordPress is vulnerable to Local JavaScript File Inclu... |
| CVE-2024-53143 | HIGH | 7.8 | 0.2% | Dec 7, 2024 | In the Linux kernel, the following vulnerability has been resolved: fsnotify: Fix ordering of iput() and watched_object... |
| CVE-2024-44856 | HIGH | 7.5 | 0.6% | Dec 6, 2024 | Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference ... |
| CVE-2024-44855 | HIGH | 7.5 | 0.6% | Dec 6, 2024 | Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference ... |
| CVE-2024-44854 | HIGH | 7.5 | 0.6% | Dec 6, 2024 | Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference ... |
| CVE-2024-44853 | HIGH | 7.5 | 0.6% | Dec 6, 2024 | Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference ... |
| CVE-2024-0130 | HIGH | 8.8 | 0.3% | Dec 6, 2024 | NVIDIA UFM Enterprise, UFM Appliance, and UFM CyberAI contain a vulnerability where an attacker can cause an improper au... |
| CVE-2024-45722 | HIGH | 7.5 | 0.5% | Dec 6, 2024 | Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x uses weak credential mechanism that could allow an atta... |
| CVE-2024-51727 | HIGH | 7.5 | 0.5% | Dec 6, 2024 | Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a feature that could enable attackers to inval... |
| CVE-2024-42494 | HIGH | 7.5 | 0.4% | Dec 6, 2024 | Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a a feature that could enable sub accounts or ... |
| CVE-2024-11220 | HIGH | 7.8 | 0.1% | Dec 6, 2024 | A local low-level user on the server machine with credentials to the running OAS services can create and execute a repor... |
| CVE-2024-54749 | HIGH | 7.5 | 0.2% | Dec 6, 2024 | Ubiquiti U7-Pro 7.0.35 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attacke... |
| CVE-2024-53691 | HIGH | 8.8 | 20.1% | Dec 6, 2024 | A link following vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul... |
| CVE-2024-50404 | HIGH | 8.8 | 1.4% | Dec 6, 2024 | A link following vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow re... |
| CVE-2024-50403 | HIGH | 7.2 | 0.5% | Dec 6, 2024 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-50402 | HIGH | 7.2 | 0.5% | Dec 6, 2024 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-48868 | HIGH | 7.5 | 0.4% | Dec 6, 2024 | An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP o... |
| CVE-2024-48867 | HIGH | 7.5 | 0.5% | Dec 6, 2024 | An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP o... |
| CVE-2024-48865 | HIGH | 7.5 | 0.2% | Dec 6, 2024 | An improper certificate validation vulnerability has been reported to affect several QNAP operating system versions. If ... |
| CVE-2024-54137 | HIGH | 7.5 | 0.4% | Dec 6, 2024 | liboqs is a C-language cryptographic library that provides implementations of post-quantum cryptography algorithms. A co... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now