2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-57427MEDIUM6.1PHPJabbers Cinema Booking System v2.0 is vulnerable to reflected cross-site scripting (XSS). Multiple endpoints improper...
CVE-2024-43779MEDIUM6.5An information disclosure vulnerability exists in the Vault API functionality of ClearML Enterprise Server 3.22.5-1533. ...
CVE-2024-39272HIGH8.2A cross-site scripting (xss) vulnerability exists in the dataset upload functionality of ClearML Enterprise Server 3.22....
CVE-2024-39033HIGH7.5In Newgensoft OmniDocs 11.0_SP1_03_006, Insecure Direct Object Reference (IDOR) in the getuserproperty function allows u...
CVE-2024-13614MEDIUM5.3Kaspersky has fixed a security issue in Kaspersky Anti-Virus SDK for Windows, Kaspersky Security for Virtualization Ligh...
CVE-2024-43811Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requ...
CVE-2024-24911HIGH7.5In rare scenarios, the cpca process on the Security Management Server / Domain Management Server may exit unexpectedly, ...
CVE-2024-57962HIGH7.5Vulnerability of incomplete verification information in the VPN service module Impact: Successful exploitation of this v...
CVE-2024-57961CRITICAL9.8Out-of-bounds write vulnerability in the emcom module Impact: Successful exploitation of this vulnerability may cause fe...
CVE-2024-57960HIGH7.5Input verification vulnerability in the ExternalStorageProvider module Impact: Successful exploitation of this vulnerabi...
CVE-2024-57959CRITICAL9.8Use-After-Free (UAF) vulnerability in the display module Impact: Successful exploitation of this vulnerability may cause...
CVE-2024-57958CRITICAL9.1Out-of-bounds array read vulnerability in the FFRT module Impact: Successful exploitation of this vulnerability may caus...
CVE-2024-57957HIGH7.5Vulnerability of improper log information control in the UI framework module Impact: Successful exploitation of this vul...
CVE-2024-57956HIGH7.5Out-of-bounds read vulnerability in the interpreter string module Impact: Successful exploitation of this vulnerability ...
CVE-2024-57955HIGH7.5Arbitrary write vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect se...
CVE-2024-57954HIGH7.5Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability ...
CVE-2024-12602HIGH7.5Identity verification vulnerability in the ParamWatcher module Impact: Successful exploitation of this vulnerability may...
CVE-2024-45626HIGH7.5Apache James server JMAP HTML to text plain implementation in versions below 3.8.2 and 3.7.6 is subject to unbounded mem...
CVE-2024-37358HIGH7.5Similarly to CVE-2024-34055, Apache James is vulnerable to denial of service through the abuse of IMAP literals from bot...
CVE-2024-13487HIGH7.3The The CURCY – Multi Currency for WooCommerce – The best free currency exchange plugin – Run smoothly on WooCommerce 9....
CVE-2024-51547CRITICAL9.8Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB MATRIX Series.This issue aff...
CVE-2024-51450HIGH8.8IBM Security Verify Directory 10.0.0 through 10.0.3 could allow a remote authenticated attacker to execute arbitrary com...
CVE-2024-49814HIGH7.8IBM Security Verify Access Appliance 10.0.0 through 10.0.3 could allow a locally authenticated user to increase their pr...
CVE-2024-49800MEDIUM6.5IBM ApplinX 11.1 stores sensitive information in cleartext in memory that could be obtained by an authenticated user.
CVE-2024-49798MEDIUM4.3IBM ApplinX 11.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message i...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now