2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-25864CRITICAL9.1Server Side Request Forgery (SSRF) vulnerability in Friendica versions after v.2023.12, allows a remote attacker to exec...
CVE-2024-24724CRITICAL9.8Gibbon through 26.0.00 allows /modules/School%20Admin/messengerSettings.php Server Side Template Injection leading to Re...
CVE-2024-1327MEDIUM5.4The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's image box widge...
CVE-2024-3226HIGH7.5A vulnerability was found in Campcodes Online Patient Record Management System 1.0. It has been classified as critical. ...
CVE-2024-3225MEDIUM6.5A vulnerability was found in SourceCodester PHP Task Management System 1.0 and classified as critical. Affected by this ...
CVE-2024-3224HIGH8.8A vulnerability has been found in SourceCodester PHP Task Management System 1.0 and classified as critical. Affected by ...
CVE-2024-3223HIGH8.8A vulnerability, which was classified as critical, was found in SourceCodester PHP Task Management System 1.0. Affected ...
CVE-2024-3222HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester PHP Task Management System 1.0. This...
CVE-2024-3221HIGH8.8A vulnerability classified as critical was found in SourceCodester PHP Task Management System 1.0. This vulnerability af...
CVE-2024-3218MEDIUM5.4A vulnerability classified as critical has been found in Shibang Communications IP Network Intercom Broadcasting System ...
CVE-2024-3248MEDIUM5.5In Xpdf 4.05 (and earlier), a PDF object loop in the attachments leads to infinite recursion and a stack overflow.
CVE-2024-3247MEDIUM5.5In Xpdf 4.05 (and earlier), a PDF object loop in an object stream leads to infinite recursion and a stack overflow.
CVE-2024-3209CRITICAL9.8A vulnerability was found in UPX up to 4.2.2. It has been rated as critical. This issue affects the function get_ne64 of...
CVE-2024-3207CRITICAL9.8A vulnerability was found in ermig1979 Simd up to 6.0.134. It has been declared as critical. This vulnerability affects ...
CVE-2024-3205Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn b...
CVE-2024-3204CRITICAL9.8A vulnerability has been found in c-blosc2 up to 2.13.2 and classified as critical. Affected by this vulnerability is th...
CVE-2024-3203CRITICAL9.8A vulnerability, which was classified as critical, was found in c-blosc2 up to 2.13.2. Affected is the function ndlz8_de...
CVE-2024-3202MEDIUM5.9A vulnerability, which was classified as problematic, has been found in codelyfe Stupid Simple CMS 1.2.4. This issue aff...
CVE-2024-29434HIGH8.3An issue in the system image upload interface of Alldata v0.4.6 allows attackers to execute a directory traversal when u...
CVE-2024-30371HIGH7.8Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
CVE-2024-30370MEDIUM4.3RARLAB WinRAR Mark-Of-The-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass the Mark-Of-The...
CVE-2024-30367HIGH7.8Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
CVE-2024-30365HIGH7.8Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
CVE-2024-30364LOW3.3Foxit PDF Reader U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows rem...
CVE-2024-30363MEDIUM5.5Foxit PDF Reader U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows rem...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now