2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-28447 | MEDIUM | 6.5 | 0.5% | Mar 19, 2024 | Shenzhen Libituo Technology Co., Ltd LBT-T300-mini1 v1.2.9 was discovered to contain a buffer overflow via lan_ipaddr pa... |
| CVE-2024-28446 | MEDIUM | 5.7 | 0.5% | Mar 19, 2024 | Shenzhen Libituo Technology Co., Ltd LBT-T300-mini1 v1.2.9 was discovered to contain a buffer overflow via lan_netmask p... |
| CVE-2024-26369 | HIGH | 7.5 | 0.6% | Mar 19, 2024 | An issue in the HistoryQosPolicy component of FastDDS v2.12.x, v2.11.x, v2.10.x, and v2.6.x leads to a SIGABRT (signal a... |
| CVE-2024-22025 | MEDIUM | 6.5 | 1.3% | Mar 19, 2024 | A vulnerability in Node.js has been identified, allowing for a Denial of Service (DoS) attack through resource exhaustio... |
| CVE-2024-22017 | HIGH | 7.3 | 0.9% | Mar 19, 2024 | setuid() does not affect libuv's internal io_uring operations if initialized before the call to setuid(). This allows th... |
| CVE-2024-21504 | MEDIUM | 6.1 | 0.5% | Mar 19, 2024 | Versions of the package livewire/livewire from 3.3.5 and before 3.4.9 are vulnerable to Cross-site Scripting (XSS) when ... |
| CVE-2024-21503 | MEDIUM | 5.3 | 1.0% | Mar 19, 2024 | Versions of the package black before 24.3.0 are vulnerable to Regular Expression Denial of Service (ReDoS) via the lines... |
| CVE-2024-2622 | CRITICAL | 9.8 | 0.5% | Mar 19, 2024 | A vulnerability was found in Fujian Kelixin Communication Command and Dispatch Platform up to 20240318. It has been clas... |
| CVE-2024-2621 | CRITICAL | 9.8 | 1.9% | Mar 19, 2024 | A vulnerability was found in Fujian Kelixin Communication Command and Dispatch Platform up to 20240318 and classified as... |
| CVE-2024-2620 | CRITICAL | 9.8 | 0.6% | Mar 19, 2024 | A vulnerability has been found in Fujian Kelixin Communication Command and Dispatch Platform up to 20240318 and classifi... |
| CVE-2024-28865 | HIGH | 7.5 | 0.6% | Mar 18, 2024 | django-wiki is a wiki system for Django. Installations of django-wiki prior to version 0.10.1 are vulnerable to maliciou... |
| CVE-2024-28864 | LOW | 2.6 | 0.3% | Mar 18, 2024 | SecureProps is a PHP library designed to simplify the encryption and decryption of property data in objects. A vulnerabi... |
| CVE-2024-28855 | MEDIUM | 6.1 | 0.8% | Mar 18, 2024 | ZITADEL, open source authentication management software, uses Go templates to render the login UI. Due to a improper use... |
| CVE-2024-28250 | MEDIUM | 6.1 | 0.2% | Mar 18, 2024 | Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Starting in version 1.14.0 an... |
| CVE-2024-28249 | MEDIUM | 6.1 | 0.3% | Mar 18, 2024 | Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.13.13, 1.... |
| CVE-2024-28248 | HIGH | 7.2 | 0.6% | Mar 18, 2024 | Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Starting in version 1.13.9 an... |
| CVE-2024-28237 | MEDIUM | 4.8 | 0.4% | Mar 18, 2024 | OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up until and including 1.9.3... |
| CVE-2024-24578 | CRITICAL | 9.8 | 8.7% | Mar 18, 2024 | RaspberryMatic is an open-source operating system for HomeMatic internet-of-things devices. RaspberryMatic / OCCU prior ... |
| CVE-2024-2604 | CRITICAL | 9.8 | 0.7% | Mar 18, 2024 | A vulnerability was found in SourceCodester File Manager App 1.0. It has been declared as critical. This vulnerability a... |
| CVE-2024-23333 | MEDIUM | 6.6 | 17.9% | Mar 18, 2024 | LDAP Account Manager (LAM) is a webfrontend for managing entries stored in an LDAP directory. LAM's log configuration al... |
| CVE-2024-22412 | MEDIUM | 4.9 | 0.6% | Mar 18, 2024 | ClickHouse is an open-source column-oriented database management system. A bug exists in the cloud ClickHouse offering p... |
| CVE-2024-25657 | MEDIUM | 5.4 | 0.3% | Mar 18, 2024 | An open redirect in the Login/Logout functionality of web management in AVSystem Unified Management Platform (UMP) 23.07... |
| CVE-2024-25656 | MEDIUM | 5.9 | 0.5% | Mar 18, 2024 | Improper input validation in AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS can result in unauthenticated ... |
| CVE-2024-25655 | MEDIUM | 6.5 | 0.5% | Mar 18, 2024 | Insecure storage of LDAP passwords in the authentication functionality of AVSystem Unified Management Platform (UMP) 23.... |
| CVE-2024-25654 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | Insecure permissions for log files of AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS allow members (with l... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now