2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-10404MEDIUM4.4CalInvocationHandler in Brocade SANnav before 2.3.1b logs sensitive information in clear text. The vulnerability could...
CVE-2024-57782MEDIUM6.8An issue in Docker-proxy v18.09.0 allows attackers to cause a denial of service.
CVE-2024-56908MEDIUM6.8In Perfex Crm < 3.2.1, an authenticated attacker can send a crafted HTTP POST request to the affected upload_sales_file ...
CVE-2024-54951MEDIUM5.4Monica 4.1.2 is vulnerable to Cross Site Scripting (XSS). A malicious user can create a malformed contact and use that c...
CVE-2024-53311MEDIUM5.5A Stack buffer overflow in the arguments parameter in Immunity Inc. Immunity Debugger v1.85 allows attackers to execute ...
CVE-2024-53310MEDIUM5.5A Structured Exception Handler based buffer overflow vulnerability exists in Effectmatrix Total Video Converter Command ...
CVE-2024-53309MEDIUM5.5A stack-based buffer overflow vulnerability exists in Effectmatrix Total Video Converter Command Line (TVCC) 2.50 when a...
CVE-2024-37603MEDIUM4.6An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible type confusion exists in the user...
CVE-2024-37602MEDIUM4.6An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A possible NULL pointer derefer...
CVE-2024-37601MEDIUM4.6An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible heap buffer overflow exists in th...
CVE-2024-37600MEDIUM6.8An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A possible stack buffer overflo...
CVE-2024-12054MEDIUM5.9ZF Roll Stability Support Plus (RSSPlus) is vulnerable to an authentication bypass vulnerability targeting determinist...
CVE-2024-57378HIGH7.3Wazuh SIEM version 4.8.2 is affected by a broken access control vulnerability. This issue allows the unauthorized creati...
CVE-2024-11347HIGH7.3Integer Overflow or Wraparound vulnerability in Lexmark International CX, XC, CS, et. Al. (Postscript interpreter module...
CVE-2024-11346HIGH7.3: Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Lexmark International CX, XC, CS, et. A...
CVE-2024-11345HIGH7.3A heap-based memory vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vuln...
CVE-2024-11344HIGH7.3A type confusion vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnera...
CVE-2024-12013HIGH7.6A CWE-1392 “Use of Default Credentials” was discovered affecting the 130.8005 TCP/IP Gateway running firmware version 12...
CVE-2024-12012MEDIUM5.7A CWE-598 “Use of GET Request Method with Sensitive Query Strings” was discovered affecting the 130.8005 TCP/IP Gateway ...
CVE-2024-12011HIGH7.6A CWE-126 “Buffer Over-read” was discovered affecting the 130.8005 TCP/IP Gateway running firmware version 12h. The info...
CVE-2024-13182CRITICAL9.8The WP Directorybox Manager plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and inclu...
CVE-2024-13867MEDIUM6.1The Listivo - Classified Ads WordPress Theme theme for WordPress is vulnerable to Reflected Cross-Site Scripting via the...
CVE-2024-13606HIGH7.5The JS Help Desk – The Ultimate Help Desk & Support Plugin plugin for WordPress is vulnerable to Sensitive Information E...
CVE-2024-46910HIGH7.1An authenticated user can perform XSS and potentially impersonate another user. This issue affects Apache Atlas version...
CVE-2024-3303MEDIUM5.7An issue was discovered in GitLab EE affecting all versions starting from 16.0 prior to 17.6.5, starting from 17.7 prior...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now