2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-53126 | HIGH | 7.8 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: vdpa: solidrun: Fix UB bug with devres In psnet_op... |
| CVE-2024-51465 | HIGH | 8.8 | 0.7% | Dec 4, 2024 | IBM App Connect Enterprise Certified Container 11.4, 11.5, 11.6, 12.0, 12.1, 12.2, and 12.3 could allow a remote authent... |
| CVE-2024-12138 | HIGH | 8.8 | 0.7% | Dec 4, 2024 | A vulnerability classified as critical was found in horilla up to 1.2.1. This vulnerability affects the function request... |
| CVE-2024-8894 | HIGH | 8.1 | 0.2% | Dec 4, 2024 | Out-of-bounds Write vulnerability was discovered in Open Design Alliance Drawings SDK before 2025.10. Reading crafted DW... |
| CVE-2024-52269 | HIGH | 8.2 | 0.3% | Dec 4, 2024 | User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSign allows Content Spoofing. The Saa... |
| CVE-2024-52277 | HIGH | 8.2 | 0.2% | Dec 4, 2024 | User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSeal allows Content Spoofing.Displaye... |
| CVE-2024-52276 | HIGH | 8.2 | 0.3% | Dec 4, 2024 | User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSign allows Content Spoofing. 1. Disp... |
| CVE-2024-12107 | HIGH | 7.5 | 0.5% | Dec 4, 2024 | Double-Free Vulnerability in uD3TN BPv7 Caused by Malformed Endpoint Identifier allows remote attacker to reliably cause... |
| CVE-2024-11952 | HIGH | 7.5 | 0.9% | Dec 4, 2024 | The Classic Addons – WPBakery Page Builder plugin for WordPress is vulnerable to Limited Local PHP File Inclusion in all... |
| CVE-2024-10567 | HIGH | 7.5 | 0.4% | Dec 4, 2024 | The TI WooCommerce Wishlist plugin for WordPress is vulnerable to unauthorized modification of data due to a missing cap... |
| CVE-2024-11293 | HIGH | 8.1 | 0.5% | Dec 4, 2024 | The Registration Forms – User Registration Forms, Invitation-Based Registrations, Front-end User Profile, Login Form & ... |
| CVE-2024-11398 | HIGH | 8.1 | 0.6% | Dec 4, 2024 | Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in OTP reset functionality ... |
| CVE-2024-9404 | HIGH | 8.7 | 0.7% | Dec 4, 2024 | This vulnerability could lead to denial-of-service or service crashes. Exploitation of the moxa_cmd service, because of ... |
| CVE-2024-10952 | HIGH | 7.3 | 0.6% | Dec 4, 2024 | The The Authors List plugin for WordPress is vulnerable to arbitrary shortcode execution via update_authors_list_ajax AJ... |
| CVE-2024-10587 | HIGH | 8.8 | 0.6% | Dec 4, 2024 | The Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free plugin for WordPress... |
| CVE-2024-45207 | HIGH | 7 | 0.2% | Dec 4, 2024 | DLL injection in Veeam Agent for Windows can occur if the system's PATH variable includes insecure locations. When the a... |
| CVE-2024-45205 | HIGH | 7.1 | 0.1% | Dec 4, 2024 | An Improper Certificate Validation on the UniFi iOS App managing a standalone UniFi Access Point (not using UniFi Networ... |
| CVE-2024-42456 | HIGH | 8.8 | 0.4% | Dec 4, 2024 | A vulnerability in Veeam Backup & Replication platform allows a low-privileged user with a specific role to exploit a me... |
| CVE-2024-42455 | HIGH | 8.1 | 14.0% | Dec 4, 2024 | A vulnerability in Veeam Backup & Replication allows a low-privileged user to connect to remoting services and exploit i... |
| CVE-2024-42453 | HIGH | 8.1 | 0.3% | Dec 4, 2024 | A vulnerability Veeam Backup & Replication allows low-privileged users to control and modify configurations on connected... |
| CVE-2024-42452 | HIGH | 8.8 | 0.5% | Dec 4, 2024 | A vulnerability in Veeam Backup & Replication allows a low-privileged user to start an agent remotely in server mode and... |
| CVE-2024-42449 | HIGH | 7.1 | 5.4% | Dec 4, 2024 | From the VSPC management agent machine, under condition that the management agent is authorized on the server, it is pos... |
| CVE-2024-40717 | HIGH | 8.8 | 0.7% | Dec 4, 2024 | A vulnerability in Veeam Backup & Replication allows a low-privileged user with certain roles to perform remote code exe... |
| CVE-2024-46624 | HIGH | 8.8 | 0.4% | Dec 3, 2024 | An issue in InfoDom Performa 365 v4.0.1 allows authenticated attackers to elevate their privileges to Administrator via ... |
| CVE-2024-46625 | HIGH | 8.8 | 0.5% | Dec 3, 2024 | An authenticated arbitrary file upload vulnerability in the /documentCache/upload endpoint of InfoDom Performa 365 v4.0.... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now