2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-32163MEDIUM6.4CMSeasy 7.7.7.9 is vulnerable to code execution.
CVE-2024-32162MEDIUM4.3CMSeasy 7.7.7.9 is vulnerable to Arbitrary file deletion.
CVE-2024-31585MEDIUM5.3FFmpeg version n5.1 to n6.1 was discovered to contain an Off-by-one Error vulnerability in libavfilter/avf_showspectrum....
CVE-2024-31583HIGH7.8Pytorch before version v2.2.0 was discovered to contain a use-after-free vulnerability in torch/csrc/jit/mobile/interpre...
CVE-2024-31582HIGH7.8FFmpeg version n6.1 was discovered to contain a heap buffer overflow vulnerability in the draw_block_rectangle function ...
CVE-2024-31581CRITICAL9.8FFmpeg version n6.1 was discovered to contain an improper validation of array index vulnerability in libavcodec/cbs_h266...
CVE-2024-31580MEDIUM4PyTorch before v2.2.0 was discovered to contain a heap buffer overflow vulnerability in the component /runtime/vararg_fu...
CVE-2024-31041HIGH7.5Null Pointer Dereference vulnerability in topic_filtern function in mqtt_parser.c in NanoMQ 0.21.7 allows attackers to c...
CVE-2024-31040LOW2.7Buffer Overflow vulnerability in the get_var_integer function in mqtt_parser.c in NanoMQ 0.21.7 allows remote attackers ...
CVE-2024-31031HIGH7.5An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a sequence of messages leadin...
CVE-2024-30990CRITICAL9.8SQL Injection vulnerability in the "Invoices" page in phpgurukul Client Management System using PHP & MySQL 1.1 allows a...
CVE-2024-30989MEDIUM5.4Cross Site Scripting vulnerability in /edit-client-details.php of phpgurukul Client Management System using PHP & MySQL ...
CVE-2024-30953MEDIUM6.1A stored cross-site scripting (XSS) vulnerability in Htmly v2.9.5 allows attackers to execute arbitrary web scripts or H...
CVE-2024-30950LOW3.5A stored cross-site scripting (XSS) vulnerability in FUDforum v3.1.3 allows attackers to execute arbitrary web scripts o...
CVE-2024-29950MEDIUM5.9The class FileTransfer implemented in Brocade SANnav before v2.3.1, v2.3.0a, uses the ssh-rsa signature scheme, which ha...
CVE-2024-3914MEDIUM6.5Use after free in V8 in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit heap corru...
CVE-2024-32161CRITICAL9.8jizhiCMS 2.5 suffers from a File upload vulnerability.
CVE-2024-30988MEDIUM6.8Cross Site Scripting vulnerability in /search-invoices.php of phpgurukul Client Management System using PHP & MySQL 1.1 ...
CVE-2024-30987MEDIUM6.8Cross Site Scripting vulnerability in /bwdates-reports-ds.php of phpgurukul Client Management System using PHP & MySQL 1...
CVE-2024-30986MEDIUM6.5Cross Site Scripting vulnerability in /edit-services-details.php of phpgurukul Client Management System using PHP & MySQ...
CVE-2024-30985CRITICAL9.8SQL Injection vulnerability in "B/W Dates Reports" page in phpgurukul Client Management System using PHP & MySQL 1.1 all...
CVE-2024-30982CRITICAL9.8SQL Injection vulnerability in phpgurukul Cyber Cafe Management System Using PHP & MySQL 1.0 allows attackers to run arb...
CVE-2024-30951MEDIUM6.1FUDforum v3.1.3 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the chpos parameter a...
CVE-2024-2961HIGH7.3The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4...
CVE-2024-30983HIGH7.3SQL Injection vulnerability in phpgurukul Cyber Cafe Management System Using PHP & MySQL 1.0 allows attackers to run arb...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now