2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-57956 | HIGH | 7.5 | 0.2% | Feb 6, 2025 | Out-of-bounds read vulnerability in the interpreter string module Impact: Successful exploitation of this vulnerability ... |
| CVE-2024-57955 | HIGH | 7.5 | 0.2% | Feb 6, 2025 | Arbitrary write vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect se... |
| CVE-2024-57954 | HIGH | 7.5 | 0.2% | Feb 6, 2025 | Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability ... |
| CVE-2024-12602 | HIGH | 7.5 | 0.2% | Feb 6, 2025 | Identity verification vulnerability in the ParamWatcher module Impact: Successful exploitation of this vulnerability may... |
| CVE-2024-45626 | HIGH | 7.5 | 0.7% | Feb 6, 2025 | Apache James server JMAP HTML to text plain implementation in versions below 3.8.2 and 3.7.6 is subject to unbounded mem... |
| CVE-2024-37358 | HIGH | 7.5 | 0.8% | Feb 6, 2025 | Similarly to CVE-2024-34055, Apache James is vulnerable to denial of service through the abuse of IMAP literals from bot... |
| CVE-2024-13487 | HIGH | 7.3 | 0.7% | Feb 6, 2025 | The The CURCY – Multi Currency for WooCommerce – The best free currency exchange plugin – Run smoothly on WooCommerce 9.... |
| CVE-2024-51547 | CRITICAL | 9.8 | 0.6% | Feb 6, 2025 | Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB MATRIX Series.This issue aff... |
| CVE-2024-51450 | HIGH | 8.8 | 1.0% | Feb 6, 2025 | IBM Security Verify Directory 10.0.0 through 10.0.3 could allow a remote authenticated attacker to execute arbitrary com... |
| CVE-2024-49814 | HIGH | 7.8 | 0.2% | Feb 6, 2025 | IBM Security Verify Access Appliance 10.0.0 through 10.0.3 could allow a locally authenticated user to increase their pr... |
| CVE-2024-49800 | MEDIUM | 6.5 | 0.2% | Feb 6, 2025 | IBM ApplinX 11.1 stores sensitive information in cleartext in memory that could be obtained by an authenticated user. |
| CVE-2024-49798 | MEDIUM | 4.3 | 0.3% | Feb 6, 2025 | IBM ApplinX 11.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message i... |
| CVE-2024-49797 | MEDIUM | 5.9 | 0.2% | Feb 6, 2025 | IBM ApplinX 11.1 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable... |
| CVE-2024-49796 | MEDIUM | 5.4 | 0.4% | Feb 6, 2025 | IBM ApplinX 11.1 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to vi... |
| CVE-2024-49795 | MEDIUM | 4.3 | 0.1% | Feb 6, 2025 | IBM ApplinX 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unau... |
| CVE-2024-49794 | MEDIUM | 4.3 | 0.1% | Feb 6, 2025 | IBM ApplinX 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unau... |
| CVE-2024-49793 | MEDIUM | 5.4 | 0.2% | Feb 6, 2025 | IBM ApplinX 11.1 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitra... |
| CVE-2024-49792 | MEDIUM | 5.4 | 0.2% | Feb 6, 2025 | IBM ApplinX 11.1 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitra... |
| CVE-2024-49791 | MEDIUM | 5.4 | 0.2% | Feb 6, 2025 | IBM ApplinX 11.1 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitra... |
| CVE-2024-56473 | MEDIUM | 5.3 | 0.3% | Feb 5, 2025 | IBM Aspera Shares 1.9.0 through 1.10.0 PL6 could allow an attacker to spoof their IP address, which is written to log f... |
| CVE-2024-56472 | MEDIUM | 5.4 | 0.2% | Feb 5, 2025 | IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to stored cross-site scripting. This vulnerability allows auth... |
| CVE-2024-56471 | MEDIUM | 5.4 | 0.2% | Feb 5, 2025 | IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to server-side request forgery (SSRF). This may allow an authe... |
| CVE-2024-56470 | MEDIUM | 5.4 | 0.2% | Feb 5, 2025 | IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to server-side request forgery (SSRF). This may allow an authe... |
| CVE-2024-38318 | MEDIUM | 6.1 | 0.2% | Feb 5, 2025 | IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to HTML injection. A remote attacker could inject malicious HTM... |
| CVE-2024-38317 | MEDIUM | 4.8 | 0.2% | Feb 5, 2025 | IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to cross-site scripting. This vulnerability allows a privilege... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now