2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4798 | CRITICAL | 9.8 | 0.9% | May 14, 2024 | A vulnerability, which was classified as critical, has been found in SourceCodester Online Computer and Laptop Store 1.0... |
| CVE-2024-4701 | CRITICAL | 9.9 | 24.6% | May 14, 2024 | A path traversal issue potentially leading to remote code execution in Genie for all versions prior to 4.3.18 |
| CVE-2024-4699 | CRITICAL | 9.8 | 6.1% | May 14, 2024 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in D-Link DAR-8000-10 ... |
| CVE-2024-4671 | CRITICAL | 9.6 | 8.3% | May 14, 2024 | Use after free in Visuals in Google Chrome prior to 124.0.6367.201 allowed a remote attacker who had compromised the ren... |
| CVE-2024-4560 | CRITICAL | 9.8 | 0.9% | May 14, 2024 | The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file typ... |
| CVE-2024-4434 | CRITICAL | 9.8 | 36.9% | May 14, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the ‘term_id’ p... |
| CVE-2024-4413 | CRITICAL | 9.8 | 0.9% | May 14, 2024 | The Hotel Booking Lite plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, ... |
| CVE-2024-3806 | CRITICAL | 9.8 | 2.7% | May 14, 2024 | The Porto theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 7.1.0 via the ... |
| CVE-2024-3263 | CRITICAL | 9.8 | 0.8% | May 14, 2024 | YMS VIS Pro is an information system for veterinary and food administration, veterinarians and farm. Due to a combinatio... |
| CVE-2024-3070 | CRITICAL | 9.8 | 1.2% | May 14, 2024 | The Last Viewed Posts by WPBeginner plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, an... |
| CVE-2024-3016 | CRITICAL | 9.1 | 0.7% | May 14, 2024 | NEC Platforms DT900 and DT900S Series 5.0.0.0 – v5.3.4.4, v5.4.0.0 – v5.6.0.20 allows an attacker to access a non-docume... |
| CVE-2024-35099 | CRITICAL | 9.8 | 0.8% | May 14, 2024 | TOTOLINK LR350 V9.3.5u.6698_B20230810 was discovered to contain a stack overflow via the password parameter in the funct... |
| CVE-2024-35049 | CRITICAL | 9.1 | 0.7% | May 14, 2024 | SurveyKing v1.3.1 was discovered to keep users' sessions active after logout. Related to an incomplete fix for CVE-2022-... |
| CVE-2024-34945 | CRITICAL | 9.8 | 0.9% | May 14, 2024 | Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the PPW paramet... |
| CVE-2024-34943 | CRITICAL | 9.8 | 0.9% | May 14, 2024 | Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the page parame... |
| CVE-2024-34706 | CRITICAL | 9.8 | 1.1% | May 14, 2024 | Valtimo is an open source business process and case management platform. When opening a form in Valtimo, the access toke... |
| CVE-2024-34555 | CRITICAL | 10 | 1.2% | May 14, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in URBAN BASE Z-Downloads.This issue affects Z-Downloads: ... |
| CVE-2024-34416 | CRITICAL | 9.1 | 0.8% | May 14, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Pk Favicon Manager.This issue affects Pk Favicon Manage... |
| CVE-2024-34411 | CRITICAL | 9.9 | 0.8% | May 14, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Thomas Scholl canvasio3D Light.This issue affects canva... |
| CVE-2024-34365 | CRITICAL | 9.1 | 1.2% | May 14, 2024 | ** UNSUPPORTED WHEN ASSIGNED ** Improper Input Validation vulnerability in Apache Karaf Cave.This issue affects all vers... |
| CVE-2024-34359 | CRITICAL | 9.6 | 28.4% | May 14, 2024 | llama-cpp-python is the Python bindings for llama.cpp. `llama-cpp-python` depends on class `Llama` in `llama.py` to load... |
| CVE-2024-34340 | CRITICAL | 9.1 | 1.1% | May 14, 2024 | Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, Cacti calls `compat_pa... |
| CVE-2024-34226 | CRITICAL | 9.4 | 0.8% | May 14, 2024 | SQL injection vulnerability in /php-sqlite-vms/?page=manage_visitor&id=1 in SourceCodester Visitor Management System 1.0... |
| CVE-2024-34213 | CRITICAL | 9.8 | 0.9% | May 14, 2024 | TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the SetPortForw... |
| CVE-2024-34209 | CRITICAL | 9.8 | 0.9% | May 14, 2024 | TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setIpPortFi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now