2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-11746 | MEDIUM | 5.4 | 0.3% | Feb 12, 2025 | The Discover the Best Woocommerce Product Brands Plugin for WordPress – Woocommerce Brands Plugin plugin for WordPress i... |
| CVE-2024-13749 | MEDIUM | 6.1 | 0.3% | Feb 12, 2025 | The StaffList plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.2... |
| CVE-2024-13701 | MEDIUM | 5.4 | 0.2% | Feb 12, 2025 | The Liveticker (by stklcode) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'livetic... |
| CVE-2024-13554 | MEDIUM | 5.3 | 0.3% | Feb 12, 2025 | The The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to unauthorized modification of data... |
| CVE-2024-13541 | MEDIUM | 5.4 | 0.3% | Feb 12, 2025 | The aDirectory – WordPress Directory Listing Plugin plugin for WordPress is vulnerable to unauthorized loss of data due ... |
| CVE-2024-13539 | MEDIUM | 5.3 | 0.4% | Feb 12, 2025 | The AForms Eats plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.3.1. ... |
| CVE-2024-29172 | HIGH | 7.5 | 0.4% | Feb 12, 2025 | Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains a deadlock vulnerability. A remote attack... |
| CVE-2024-29171 | HIGH | 7.5 | 0.3% | Feb 12, 2025 | Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains an Improper certificate verification vuln... |
| CVE-2024-53880 | MEDIUM | 6.5 | 0.5% | Feb 12, 2025 | NVIDIA Triton Inference Server contains a vulnerability in the model loading API, where a user could cause an integer ov... |
| CVE-2024-0145 | MEDIUM | 6.8 | 0.9% | Feb 12, 2025 | NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause a heap-based buffer overflow issue by mea... |
| CVE-2024-0144 | MEDIUM | 6.8 | 0.7% | Feb 12, 2025 | NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause a buffer overflow issue by means of a spe... |
| CVE-2024-0143 | MEDIUM | 6.8 | 0.6% | Feb 12, 2025 | NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause an out-of-bounds write issue by means of ... |
| CVE-2024-21971 | MEDIUM | 5.5 | 0.1% | Feb 12, 2025 | Improper input validation in AMD Crash Defender could allow an attacker to provide the Windows® system process ID to a k... |
| CVE-2024-0142 | MEDIUM | 6.8 | 0.6% | Feb 12, 2025 | NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause an out-of-bounds write issue by means of ... |
| CVE-2024-0112 | HIGH | 7.5 | 0.2% | Feb 12, 2025 | NVIDIA Jetson AGX Orin™ and NVIDIA IGX Orin software contain a vulnerability where an attacker can cause an improper inp... |
| CVE-2024-57000 | — | — | — | Feb 11, 2025 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-48022. Reason: This candidate is a duplicate of ... |
| CVE-2024-54916 | MEDIUM | 6.8 | 0.4% | Feb 11, 2025 | An issue in the SharedConfig class of Telegram Android APK v.11.7.0 allows a physically proximate attacker to bypass aut... |
| CVE-2024-54772 | MEDIUM | 5.4 | 0.7% | Feb 11, 2025 | An issue was discovered in the Winbox service of MikroTik RouterOS long-term release v6.43.13 through v6.49.13 and stabl... |
| CVE-2024-44336 | MEDIUM | 5.3 | 0.3% | Feb 11, 2025 | An issue in AnkiDroid Android Application v2.17.6 allows attackers to retrieve internal files from the /data/data/com.ic... |
| CVE-2024-33469 | HIGH | 7.9 | 0.2% | Feb 11, 2025 | An issue in Team Amaze Amaze File Manager v.3.8.5 and fixed in v.3.10 allows a local attacker to execute arbitrary code ... |
| CVE-2024-57777 | MEDIUM | 5.1 | 0.4% | Feb 11, 2025 | Directory Traversal vulnerability in Ianproxy v.0.1 and before allows a remote attacker to obtain sensitive information |
| CVE-2024-57241 | MEDIUM | 6.5 | 1.1% | Feb 11, 2025 | Dedecms 5.71sp1 and earlier is vulnerable to URL redirect. In the web application, a logic error does not judge the inpu... |
| CVE-2024-55212 | MEDIUM | 6.5 | 0.3% | Feb 11, 2025 | DNNGo xBlog v6.5.0 was discovered to contain a SQL injection vulnerability via the Categorys parameter at /DNNGo_xBlog/R... |
| CVE-2024-51324 | LOW | 3.8 | 0.5% | Feb 11, 2025 | An issue in the BdApiUtil driver of Baidu Antivirus v5.2.3.116083 allows attackers to terminate arbitrary process via ex... |
| CVE-2024-32037 | MEDIUM | 5.3 | 0.4% | Feb 11, 2025 | GeoNetwork is a catalog application to manage spatially referenced resources. In versions prior to 4.2.10 and 4.4.5, the... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now