2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-57956HIGH7.5Out-of-bounds read vulnerability in the interpreter string module Impact: Successful exploitation of this vulnerability ...
CVE-2024-57955HIGH7.5Arbitrary write vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect se...
CVE-2024-57954HIGH7.5Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability ...
CVE-2024-12602HIGH7.5Identity verification vulnerability in the ParamWatcher module Impact: Successful exploitation of this vulnerability may...
CVE-2024-45626HIGH7.5Apache James server JMAP HTML to text plain implementation in versions below 3.8.2 and 3.7.6 is subject to unbounded mem...
CVE-2024-37358HIGH7.5Similarly to CVE-2024-34055, Apache James is vulnerable to denial of service through the abuse of IMAP literals from bot...
CVE-2024-13487HIGH7.3The The CURCY – Multi Currency for WooCommerce – The best free currency exchange plugin – Run smoothly on WooCommerce 9....
CVE-2024-51547CRITICAL9.8Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB MATRIX Series.This issue aff...
CVE-2024-51450HIGH8.8IBM Security Verify Directory 10.0.0 through 10.0.3 could allow a remote authenticated attacker to execute arbitrary com...
CVE-2024-49814HIGH7.8IBM Security Verify Access Appliance 10.0.0 through 10.0.3 could allow a locally authenticated user to increase their pr...
CVE-2024-49800MEDIUM6.5IBM ApplinX 11.1 stores sensitive information in cleartext in memory that could be obtained by an authenticated user.
CVE-2024-49798MEDIUM4.3IBM ApplinX 11.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message i...
CVE-2024-49797MEDIUM5.9IBM ApplinX 11.1 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable...
CVE-2024-49796MEDIUM5.4IBM ApplinX 11.1 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to vi...
CVE-2024-49795MEDIUM4.3IBM ApplinX 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unau...
CVE-2024-49794MEDIUM4.3IBM ApplinX 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unau...
CVE-2024-49793MEDIUM5.4IBM ApplinX 11.1 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitra...
CVE-2024-49792MEDIUM5.4IBM ApplinX 11.1 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitra...
CVE-2024-49791MEDIUM5.4IBM ApplinX 11.1 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitra...
CVE-2024-56473MEDIUM5.3IBM Aspera Shares 1.9.0 through 1.10.0 PL6 could allow an attacker to spoof their IP address, which is written to log f...
CVE-2024-56472MEDIUM5.4IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to stored cross-site scripting. This vulnerability allows auth...
CVE-2024-56471MEDIUM5.4IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to server-side request forgery (SSRF). This may allow an authe...
CVE-2024-56470MEDIUM5.4IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to server-side request forgery (SSRF). This may allow an authe...
CVE-2024-38318MEDIUM6.1IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to HTML injection. A remote attacker could inject malicious HTM...
CVE-2024-38317MEDIUM4.8IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to cross-site scripting. This vulnerability allows a privilege...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now