2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-51542 | HIGH | 8.2 | 0.3% | Dec 5, 2024 | Configuration Download vulnerabilities allow access to dependency configuration information. Affected products: ABB A... |
| CVE-2024-51541 | HIGH | 7.5 | 0.3% | Dec 5, 2024 | Local File Inclusion vulnerabilities allow access to sensitive system information. Affected products: ABB ASPECT - En... |
| CVE-2024-48846 | HIGH | 7.3 | 0.6% | Dec 5, 2024 | Cross Site Request Forgery vulnerabilities where found providing a potiential for exposing sensitive information or chan... |
| CVE-2024-48843 | HIGH | 7.5 | 0.3% | Dec 5, 2024 | Denial of Service vulnerabilities where found providing a potiential for device service disruptions. Affected products:... |
| CVE-2024-11316 | HIGH | 7.5 | 0.6% | Dec 5, 2024 | Fileszie Check vulnerabilities allow a malicious user to bypass size limits or overload to the product. Affected produc... |
| CVE-2024-52270 | HIGH | 8.2 | 0.2% | Dec 5, 2024 | User Interface (UI) Misrepresentation of Critical Information vulnerability in DropBox Sign(HelloSign) allows Content Sp... |
| CVE-2024-52564 | HIGH | 7.5 | 0.6% | Dec 5, 2024 | Inclusion of undocumented features or chicken bits issue exists in UD-LT1 firmware Ver.2.1.8 and earlier and UD-LT1/EX f... |
| CVE-2024-47133 | HIGH | 7.2 | 0.9% | Dec 5, 2024 | UD-LT1 firmware Ver.2.1.9 and earlier and UD-LT1/EX firmware Ver.2.1.9 and earlier allow a remote authenticated attacker... |
| CVE-2024-11429 | HIGH | 8.8 | 0.7% | Dec 5, 2024 | The Free Responsive Testimonials, Social Proof Reviews, and Customer Reviews – Stars Testimonials plugin for WordPress i... |
| CVE-2024-12186 | HIGH | 7.8 | 0.3% | Dec 5, 2024 | A vulnerability was found in code-projects Hotel Management System 1.0 and classified as problematic. This issue affects... |
| CVE-2024-12185 | HIGH | 7.8 | 0.3% | Dec 5, 2024 | A vulnerability has been found in code-projects Hotel Management System 1.0 and classified as problematic. This vulnerab... |
| CVE-2024-53982 | HIGH | 8.7 | 0.5% | Dec 4, 2024 | ZOO-Project is a C-based WPS (Web Processing Service) implementation. A path traversal vulnerability was discovered in Z... |
| CVE-2024-50947 | HIGH | 7.5 | 0.4% | Dec 4, 2024 | An issue in kmqtt v0.2.7 allows attackers to cause a Denial of Service (DoS) via a crafted request. |
| CVE-2024-39219 | HIGH | 8.8 | 0.4% | Dec 4, 2024 | An issue in Aginode GigaSwitch V5 before version 7.06G allows authenticated attackers with Administrator privileges to u... |
| CVE-2024-12149 | HIGH | 8.1 | 0.6% | Dec 4, 2024 | Incorrect permission assignment in temporary access requests component in Devolutions Remote Desktop Manager 2024.3.19.0... |
| CVE-2024-12147 | HIGH | 7.1 | 0.8% | Dec 4, 2024 | A vulnerability was found in Netgear R6900 1.0.1.26_1.0.20. It has been declared as critical. Affected by this vulnerabi... |
| CVE-2024-39163 | HIGH | 8.8 | 0.2% | Dec 4, 2024 | binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. |
| CVE-2024-54134 | HIGH | 8.3 | 0.4% | Dec 4, 2024 | A publish-access account was compromised for `@solana/web3.js`, a JavaScript library that is commonly used by Solana dap... |
| CVE-2024-37575 | HIGH | 7.5 | 0.4% | Dec 4, 2024 | The Mister org.mistergroup.shouldianswer application 1.4.264 for Android enables any installed application (with no perm... |
| CVE-2024-37574 | HIGH | 8.2 | 0.3% | Dec 4, 2024 | The GriceMobile com.grice.call application 4.5.2 for Android enables any installed application (with no permissions) to ... |
| CVE-2024-11643 | HIGH | 8.8 | 0.7% | Dec 4, 2024 | The Accessibility by AllAccessible plugin for WordPress is vulnerable to unauthorized modification of data that can lead... |
| CVE-2024-53139 | HIGH | 7.8 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: sctp: fix possible UAF in sctp_v6_available() A lo... |
| CVE-2024-53133 | HIGH | 7.8 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Handle dml allocation failure to a... |
| CVE-2024-53126 | HIGH | 7.8 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: vdpa: solidrun: Fix UB bug with devres In psnet_op... |
| CVE-2024-51465 | HIGH | 8.8 | 0.7% | Dec 4, 2024 | IBM App Connect Enterprise Certified Container 11.4, 11.5, 11.6, 12.0, 12.1, 12.2, and 12.3 could allow a remote authent... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now