2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-22458 | MEDIUM | 5.3 | 0.1% | Mar 1, 2024 | Dell Secure Connect Gateway, 5.18, contains an Inadequate Encryption Strength Vulnerability. An unauthenticated network ... |
| CVE-2024-22457 | HIGH | 8.8 | 0.3% | Mar 1, 2024 | Dell Secure Connect Gateway 5.20 contains an improper authentication vulnerability during the SRS to SCG update path. A ... |
| CVE-2024-25972 | HIGH | 8.3 | 0.3% | Mar 1, 2024 | Initialization of a resource with an insecure default vulnerability in OET-213H-BTS1 sold in Japan by Atsumi Electric Co... |
| CVE-2024-1120 | MEDIUM | 5.3 | 0.5% | Mar 1, 2024 | The NextMove Lite – Thank You Page for WooCommerce and Finale Lite – Sales Countdown Timer & Discount for WooCommerce pl... |
| CVE-2024-25091 | CRITICAL | 9.1 | 0.5% | Mar 1, 2024 | Protection mechanism failure issue exists in RevoWorks SCVX prior to scvimage4.10.21_1013 (when using 'VirusChecker' or ... |
| CVE-2024-0692 | HIGH | 8.8 | 91.6% | Mar 1, 2024 | The SolarWinds Security Event Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows ... |
| CVE-2024-27950 | HIGH | 8.8 | 0.4% | Mar 1, 2024 | Missing Authorization vulnerability in Sirv CDN and Image Hosting Sirv sirv.This issue affects Sirv: from n/a through <=... |
| CVE-2024-27949 | MEDIUM | 5.4 | 0.3% | Mar 1, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Sirv CDN and Image Hosting Sirv sirv.This issue affects Sirv: from n... |
| CVE-2024-25554 | — | — | — | Mar 1, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-25553 | — | — | — | Mar 1, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-25552 | HIGH | 7.8 | 0.2% | Mar 1, 2024 | A local attacker can gain administrative privileges by inserting an executable file in the path of the affected product. |
| CVE-2024-1859 | HIGH | 8.8 | 0.8% | Mar 1, 2024 | The Slider Responsive Slideshow – Image slider, Gallery slideshow plugin for WordPress is vulnerable to PHP Object Injec... |
| CVE-2024-25386 | HIGH | 8.8 | 1.7% | Mar 1, 2024 | Directory Traversal vulnerability in DICOM® Connectivity Framework by laurelbridge before v.2.7.6b allows a remote attac... |
| CVE-2024-25293 | CRITICAL | 9.3 | 1.0% | Mar 1, 2024 | mjml-app versions 3.0.4 and 3.1.0-beta were discovered to contain a remote code execution (RCE) via the href attribute. |
| CVE-2024-22891 | CRITICAL | 9.8 | 1.7% | Mar 1, 2024 | Nteract v.0.28.0 was discovered to contain a remote code execution (RCE) vulnerability via the Markdown link. |
| CVE-2024-25578 | HIGH | 7.8 | 0.2% | Mar 1, 2024 | MicroDicom DICOM Viewer versions 2023.3 (Build 9342) and prior contain a lack of proper validation of user-supplied d... |
| CVE-2024-22100 | HIGH | 7.8 | 0.3% | Mar 1, 2024 | MicroDicom DICOM Viewer versions 2023.3 (Build 9342) and prior are affected by a heap-based buffer overflow vulnera... |
| CVE-2024-1941 | HIGH | 7.8 | 0.7% | Mar 1, 2024 | Delta Electronics CNCSoft-B versions 1.0.0.4 and prior are vulnerable to a stack-based buffer overflow, which may allow... |
| CVE-2024-2045 | MEDIUM | 5.5 | 0.3% | Mar 1, 2024 | Session version 1.17.5 allows obtaining internal application files and public files from the user's device without the ... |
| CVE-2024-2022 | CRITICAL | 9.8 | 8.5% | Mar 1, 2024 | A vulnerability was found in Netentsec NS-ASG Application Security Gateway 6.3. It has been declared as critical. Affect... |
| CVE-2024-2021 | CRITICAL | 9.8 | 0.7% | Mar 1, 2024 | A vulnerability was found in Netentsec NS-ASG Application Security Gateway 6.3. It has been classified as critical. Affe... |
| CVE-2024-0403 | MEDIUM | 6.5 | 0.4% | Mar 1, 2024 | Recipes version 1.5.10 allows arbitrary HTTP requests to be made through the server. This is possible because the appli... |
| CVE-2024-27294 | HIGH | 7.8 | 0.2% | Feb 29, 2024 | dp-golang is a Puppet module for Go installations. Prior to 1.2.7, dp-golang could install files — including the compil... |
| CVE-2024-2009 | HIGH | 7.5 | 0.6% | Feb 29, 2024 | A vulnerability was found in Nway Pro 9. It has been rated as problematic. Affected by this issue is the function ajax_l... |
| CVE-2024-27662 | MEDIUM | 6.5 | 0.4% | Feb 29, 2024 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_4110f4(). This vulnerability al... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now