2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-31823 | CRITICAL | 9.8 | 1.6% | Apr 29, 2024 | An issue in Ecommerce-CodeIgniter-Bootstrap commit v. d22b54e8915f167a135046ceb857caaf8479c4da allows a remote attacker ... |
| CVE-2024-31822 | CRITICAL | 9.8 | 1.9% | Apr 29, 2024 | An issue in Ecommerce-CodeIgniter-Bootstrap commit v. d22b54e8915f167a135046ceb857caaf8479c4da allows a remote attacker ... |
| CVE-2024-31821 | HIGH | 8 | 1.1% | Apr 29, 2024 | SQL Injection vulnerability in Ecommerce-CodeIgniter-Bootstrap commit v. d22b54e8915f167a135046ceb857caaf8479c4da allows... |
| CVE-2024-31820 | CRITICAL | 9.8 | 1.9% | Apr 29, 2024 | An issue in Ecommerce-CodeIgniter-Bootstrap commit v. d22b54e8915f167a135046ceb857caaf8479c4da allows a remote attacker ... |
| CVE-2024-31705 | CRITICAL | 9.8 | 1.9% | Apr 29, 2024 | An issue in Infotel Conseil GLPI v.10.X.X and after allows a remote attacker to execute arbitrary code via the insuffici... |
| CVE-2024-28320 | HIGH | 7.6 | 0.5% | Apr 29, 2024 | Insecure Direct Object References (IDOR) vulnerability in Hospital Management System 1.0 allows attackers to manipulate ... |
| CVE-2024-33449 | CRITICAL | 9.8 | 0.5% | Apr 29, 2024 | An SSRF issue in the PDFMyURL service allows a remote attacker to obtain sensitive information and execute arbitrary cod... |
| CVE-2024-33445 | CRITICAL | 9.8 | 1.3% | Apr 29, 2024 | An issue in hisiphp v2.0.111 allows a remote attacker to execute arbitrary code via a crafted script to the SystemPlugin... |
| CVE-2024-33444 | CRITICAL | 9.8 | 0.9% | Apr 29, 2024 | SQL injection vulnerability in onethink v.1.1 allows a remote attacker to escalate privileges via a crafted script to th... |
| CVE-2024-32493 | HIGH | 8.8 | 0.7% | Apr 29, 2024 | An issue was discovered in Znuny LTS 6.5.1 through 6.5.7 and Znuny 7.0.1 through 7.0.16 where a logged-in agent is able ... |
| CVE-2024-32492 | HIGH | 7.1 | 0.5% | Apr 29, 2024 | An issue was discovered in Znuny 7.0.1 through 7.0.16 where the ticket detail view in the customer front allows the exec... |
| CVE-2024-32491 | CRITICAL | 9.8 | 0.7% | Apr 29, 2024 | An issue was discovered in Znuny and Znuny LTS 6.0.31 through 6.5.7 and Znuny 7.0.1 through 7.0.16 where a logged-in use... |
| CVE-2024-32269 | HIGH | 7.5 | 0.7% | Apr 29, 2024 | An issue in Yonganda YAD-LOJ V3.0.561 allows a remote attacker to cause a denial of service via a crafted packet. |
| CVE-2024-31621 | HIGH | 7.6 | 59.9% | Apr 29, 2024 | An issue in FlowiseAI Inc Flowise v.1.6.2 and before allows a remote attacker to execute arbitrary code via a crafted sc... |
| CVE-2024-34020 | MEDIUM | 6.5 | 0.6% | Apr 29, 2024 | A stack-based buffer overflow was found in the putSDN() function of mail.c in hcode through 2.1. |
| CVE-2024-34011 | MEDIUM | 6.8 | 0.2% | Apr 29, 2024 | Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protec... |
| CVE-2024-34010 | HIGH | 8.2 | 0.2% | Apr 29, 2024 | Local privilege escalation due to unquoted search path vulnerability. The following products are affected: Acronis Cyber... |
| CVE-2024-32268 | LOW | 3.3 | 0.2% | Apr 29, 2024 | An issue in Tuya Smart camera U6N v.3.2.5 allows a remote attacker to cause a denial of service via a crafted packet to ... |
| CVE-2024-23995 | MEDIUM | 6.1 | 1.0% | Apr 29, 2024 | Cross Site Scripting (XSS) in Beekeeper Studio 4.1.13 and earlier allows remote attackers to execute arbitrary code in t... |
| CVE-2024-1969 | HIGH | 8.2 | 0.5% | Apr 29, 2024 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Secomea GateManager (webserver m... |
| CVE-2024-1579 | HIGH | 8.1 | 0.5% | Apr 29, 2024 | Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG) vulnerability in Secomea GateManager (Webserver module... |
| CVE-2024-4310 | MEDIUM | 5.4 | 0.3% | Apr 29, 2024 | Cross-site Scripting (XSS) vulnerability in HubBank affecting version 1.0.2. This vulnerability allows an attacker to se... |
| CVE-2024-4309 | HIGH | 8.1 | 0.4% | Apr 29, 2024 | SQL injection vulnerability in HubBank affecting version 1.0.2. This vulnerability could allow an attacker to send a spe... |
| CVE-2024-4308 | HIGH | 8.1 | 0.4% | Apr 29, 2024 | SQL injection vulnerability in HubBank affecting version 1.0.2. This vulnerability could allow an attacker to send a spe... |
| CVE-2024-4307 | HIGH | 8.1 | 0.4% | Apr 29, 2024 | SQL injection vulnerability in HubBank affecting version 1.0.2. This vulnerability could allow an attacker to send a spe... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now