2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-33625 | CRITICAL | 9.8 | 0.5% | May 15, 2024 | CyberPower PowerPanel business application code contains a hard-coded JWT signing key. This could result in an attacke... |
| CVE-2024-32053 | CRITICAL | 9.8 | 0.5% | May 15, 2024 | Hard-coded credentials are used by the CyberPower PowerPanel platform to authenticate to the database, other servic... |
| CVE-2024-32047 | CRITICAL | 9.8 | 0.5% | May 15, 2024 | Hard-coded credentials for the CyberPower PowerPanel test server can be found in the production code. This might resul... |
| CVE-2024-3968 | CRITICAL | 9.8 | 0.7% | May 15, 2024 | Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code ex... |
| CVE-2024-3967 | CRITICAL | 9.8 | 0.6% | May 15, 2024 | Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code ex... |
| CVE-2024-3488 | CRITICAL | 9.8 | 0.4% | May 15, 2024 | File Upload vulnerability in unauthenticated session found in OpenText™ iManager 3.2.6.0200. The vulnerability could all... |
| CVE-2024-3487 | CRITICAL | 9.8 | 0.4% | May 15, 2024 | Broken Authentication vulnerability discovered in OpenText™ iManager 3.2.6.0200. This vulnerability allows an attacker t... |
| CVE-2024-3486 | CRITICAL | 9.8 | 0.5% | May 15, 2024 | XML External Entity injection vulnerability found in OpenText™ iManager 3.2.6.0200. This could lead to information discl... |
| CVE-2024-3484 | CRITICAL | 9.8 | 0.5% | May 15, 2024 | Path Traversal found in OpenText™ iManager 3.2.6.0200. This can lead to privilege escalation or file disclosure. |
| CVE-2024-3483 | CRITICAL | 9.8 | 1.0% | May 15, 2024 | Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger command inject... |
| CVE-2024-34082 | CRITICAL | 9.9 | 3.1% | May 15, 2024 | Grav is a file-based Web platform. Prior to version 1.7.46, a low privilege user account with page edit privilege can re... |
| CVE-2024-3319 | CRITICAL | 9.1 | 0.8% | May 15, 2024 | An issue was identified in the Identity Security Cloud (ISC) Transform preview and IdentityProfile preview API endpoints... |
| CVE-2024-34955 | CRITICAL | 9.8 | 0.6% | May 15, 2024 | Code-projects Budget Management 1.0 is vulnerable to SQL Injection via the delete parameter. |
| CVE-2024-4893 | CRITICAL | 9.8 | 0.8% | May 15, 2024 | DigiWin EasyFlow .NET lacks validation for certain input parameters, allowing remote attackers to inject arbitrary SQL c... |
| CVE-2024-32888 | CRITICAL | 10 | 0.8% | May 15, 2024 | The Amazon JDBC Driver for Redshift is a Type 4 JDBC driver that provides database connectivity through the standard JDB... |
| CVE-2024-31473 | CRITICAL | 9.8 | 1.7% | May 14, 2024 | There is a command injection vulnerability in the underlying deauthentication service that could lead to unauthenticated... |
| CVE-2024-31472 | CRITICAL | 9.8 | 1.6% | May 14, 2024 | There are command injection vulnerabilities in the underlying Soft AP Daemon service that could lead to unauthenticated ... |
| CVE-2024-31471 | CRITICAL | 9.8 | 1.6% | May 14, 2024 | There is a command injection vulnerability in the underlying Central Communications service that could lead to unauthent... |
| CVE-2024-31470 | CRITICAL | 9.8 | 1.2% | May 14, 2024 | There is a buffer overflow vulnerability in the underlying SAE (Simultaneous Authentication of Equals) service that coul... |
| CVE-2024-31469 | CRITICAL | 9.8 | 1.1% | May 14, 2024 | There are buffer overflow vulnerabilities in the underlying Central Communications service that could lead to unauthenti... |
| CVE-2024-31468 | CRITICAL | 9.8 | 1.1% | May 14, 2024 | There are buffer overflow vulnerabilities in the underlying Central Communications service that could lead to unauthenti... |
| CVE-2024-31467 | CRITICAL | 9.8 | 1.1% | May 14, 2024 | There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code e... |
| CVE-2024-31466 | CRITICAL | 9.8 | 1.1% | May 14, 2024 | There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code e... |
| CVE-2024-32002 | CRITICAL | 9 | 25.3% | May 14, 2024 | Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, reposito... |
| CVE-2024-4778 | CRITICAL | 9.8 | 0.4% | May 14, 2024 | Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that w... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now