2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-21502HIGH7.5Versions of the package fastecdsa before 2.3.2 are vulnerable to Use of Uninitialized Variable on the stack, via the cur...
CVE-2024-21501MEDIUM5.3Versions of the package sanitize-html before 2.12.1 are vulnerable to Information Exposure when used on the backend and ...
CVE-2024-1810MEDIUM6.1The Archivist – Custom Archive Templates plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘s...
CVE-2024-22395MEDIUM6.3Improper access control vulnerability has been identified in the SMA100 SSL-VPN virtual office portal, which in specific...
CVE-2024-26192HIGH8.2Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
CVE-2024-26188MEDIUM4.3Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2024-25469HIGH7.5SQL Injection vulnerability in CRMEB crmeb_java v.1.3.4 and before allows a remote attacker to obtain sensitive informat...
CVE-2024-24681CRITICAL9.8An issue was discovered in Yealink Configuration Encrypt Tool (AES version) and Yealink Configuration Encrypt Tool (RSA ...
CVE-2024-22988CRITICAL9.8ZKteco ZKBio WDMS before 9.0.2 Build 20250526 allows an attacker to download a database backup via the /files/backup/ co...
CVE-2024-27133CRITICAL9.6Insufficient sanitization in MLflow leads to XSS when running a recipe that uses an untrusted dataset. This issue leads ...
CVE-2024-27132CRITICAL9.6Insufficient sanitization in MLflow leads to XSS when running an untrusted recipe. This issue leads to a client-side RC...
CVE-2024-25730CRITICAL9.8Hitron CODA-4582 and CODA-4589 devices have default PSKs that are generated from 5-digit hex values concatenated with a ...
CVE-2024-24310HIGH8.8In the module "Generate barcode on invoice / delivery slip" (ecgeneratebarcode) from Ether Creation <= 1.2.0 for PrestaS...
CVE-2024-24309HIGH7.5In the module "Survey TMA" (ecomiz_survey_tma) up to version 2.0.0 from Ecomiz for PrestaShop, a guest can download pers...
CVE-2024-21423MEDIUM4.8Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
CVE-2024-1834MEDIUM6.1A vulnerability was found in SourceCodester Simple Student Attendance System 1.0. It has been classified as problematic....
CVE-2024-1833CRITICAL9.8A vulnerability was found in SourceCodester Employee Management System 1.0 and classified as critical. Affected by this ...
CVE-2024-1832CRITICAL9.8A vulnerability has been found in SourceCodester Complete File Management System 1.0 and classified as critical. Affecte...
CVE-2024-1831CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Complete File Management System 1.0. Affe...
CVE-2024-1830CRITICAL9.8A vulnerability was found in code-projects Library System 1.0. It has been rated as critical. Affected by this issue is ...
CVE-2024-27319CRITICAL9.1Versions of the package onnx before and including 1.15.0 are vulnerable to Out-of-bounds Read as the ONNX_ASSERT and ONN...
CVE-2024-27318HIGH7.5Versions of the package onnx before and including 1.15.0 are vulnerable to Directory Traversal as the external_data fiel...
CVE-2024-1829CRITICAL9.8A vulnerability was found in code-projects Library System 1.0. It has been declared as critical. Affected by this vulner...
CVE-2024-1828CRITICAL9.8A vulnerability was found in code-projects Library System 1.0. It has been classified as critical. Affected is an unknow...
CVE-2024-1827CRITICAL9.8A vulnerability was found in code-projects Library System 1.0 and classified as critical. This issue affects some unknow...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now