2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1394 | HIGH | 7.5 | 1.5% | Mar 21, 2024 | A memory leak flaw was found in Golang in the RSA encrypting/decrypting code, which might lead to a resource exhaustion ... |
| CVE-2024-29732 | CRITICAL | 9.8 | 0.5% | Mar 21, 2024 | A SQL Injection has been found on SCAN_VISIO eDocument Suite Web Viewer of Abast. This vulnerability allows an unauthent... |
| CVE-2024-26643 | MEDIUM | 5.5 | 0.2% | Mar 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: mark set as dead when unbindi... |
| CVE-2024-26642 | MEDIUM | 5.5 | 0.3% | Mar 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: disallow anonymous set with t... |
| CVE-2024-27438 | CRITICAL | 9.8 | 1.0% | Mar 21, 2024 | Download of Code Without Integrity Check vulnerability in Apache Doris. The jdbc driver files used for JDBC catalog is n... |
| CVE-2024-26307 | MEDIUM | 5.3 | 0.2% | Mar 21, 2024 | Possible race condition vulnerability in Apache Doris. Some of code using `chmod()` method. This method run the risk of ... |
| CVE-2024-29133 | MEDIUM | 5.4 | 1.7% | Mar 21, 2024 | Out-of-bounds Write vulnerability in Apache Commons Configuration.This issue affects Apache Commons Configuration: from ... |
| CVE-2024-29131 | HIGH | 7.3 | 2.1% | Mar 21, 2024 | Out-of-bounds Write vulnerability in Apache Commons Configuration.This issue affects Apache Commons Configuration: from ... |
| CVE-2024-1148 | CRITICAL | 9.8 | 0.7% | Mar 21, 2024 | Weak access control in OpenText PVCS Version Manager allows potential bypassing of authentication and uploading of files... |
| CVE-2024-1147 | CRITICAL | 9.8 | 0.7% | Mar 21, 2024 | Weak access control in OpenText PVCS Version Manager allows potential bypassing of authentication and download of files. |
| CVE-2024-2754 | HIGH | 8.8 | 0.8% | Mar 21, 2024 | A vulnerability classified as critical has been found in SourceCodester Complete E-Commerce Site 1.0. Affected is an unk... |
| CVE-2024-2162 | HIGH | 8.8 | 2.1% | Mar 21, 2024 | An OS Command Injection vulnerability in Kiloview NDI allows a low-privileged user to execute arbitrary code remotely on... |
| CVE-2024-2161 | CRITICAL | 9.8 | 0.9% | Mar 21, 2024 | Use of Hard-coded Credentials in Kiloview NDI allows un-authenticated users to bypass authenticationThis issue affects K... |
| CVE-2024-28835 | MEDIUM | 5 | 0.4% | Mar 21, 2024 | A flaw has been discovered in GnuTLS where an application crash can be induced when attempting to verify a specially cra... |
| CVE-2024-29864 | CRITICAL | 9.8 | 2.9% | Mar 21, 2024 | Distrobox before 1.7.0.1 allows attackers to execute arbitrary code via command injection into exported executables. |
| CVE-2024-29862 | HIGH | 7.5 | 0.7% | Mar 21, 2024 | The Kerlink firewall in ChirpStack chirpstack-mqtt-forwarder before 4.2.1 and chirpstack-gateway-bridge before 4.0.11 wr... |
| CVE-2024-29859 | CRITICAL | 9.8 | 0.8% | Mar 21, 2024 | In MISP before 2.4.187, add_misp_export in app/Controller/EventsController.php does not properly check for a valid file ... |
| CVE-2024-29858 | CRITICAL | 9.8 | 0.4% | Mar 21, 2024 | In MISP before 2.4.187, __uploadLogo in app/Controller/OrganisationsController.php does not properly check for a valid l... |
| CVE-2024-28635 | MEDIUM | 6.1 | 0.5% | Mar 21, 2024 | Cross Site Scripting (XSS) vulnerability in SurveyJS Survey Creator v.1.9.132 and before, allows attackers to execute ar... |
| CVE-2024-22724 | MEDIUM | 6.6 | 0.3% | Mar 21, 2024 | An issue was discovered in osCommerce v4, allows local attackers to bypass file upload restrictions and execute arbitrar... |
| CVE-2024-1538 | HIGH | 8.8 | 10.7% | Mar 21, 2024 | The File Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, ... |
| CVE-2024-2713 | MEDIUM | 6.5 | 0.6% | Mar 21, 2024 | A vulnerability, which was classified as critical, was found in Campcodes Complete Online DJ Booking System 1.0. Affecte... |
| CVE-2024-2712 | MEDIUM | 6.5 | 0.6% | Mar 21, 2024 | A vulnerability, which was classified as critical, has been found in Campcodes Complete Online DJ Booking System 1.0. Th... |
| CVE-2024-2167 | — | — | — | Mar 21, 2024 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-2041. Reason: This candidate is a r... |
| CVE-2024-2054 | CRITICAL | 9.8 | 81.3% | Mar 21, 2024 | The Artica-Proxy administrative web application will deserialize arbitrary PHP objects supplied by unauthenticated users... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now