2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-25468HIGH7.5An issue in TOTOLINK X5000R V.9.1.0u.6369_B20230113 allows a remote attacker to cause a denial of service via the host_t...
CVE-2024-25298HIGH7.2An issue was discovered in REDAXO version 5.15.1, allows attackers to execute arbitrary code and obtain sensitive inform...
CVE-2024-25297MEDIUM4.8Cross Site Scripting (XSS) vulnerability in Bludit CMS version 3.15, allows remote attackers to execute arbitrary code a...
CVE-2024-21500MEDIUM6.5All versions of the package github.com/greenpau/caddy-security are vulnerable to Improper Restriction of Excessive Authe...
CVE-2024-21499MEDIUM4.3All versions of the package github.com/greenpau/caddy-security are vulnerable to HTTP Header Injection via the X-Forward...
CVE-2024-21498MEDIUM5.3All versions of the package github.com/greenpau/caddy-security are vulnerable to Server-side Request Forgery (SSRF) via ...
CVE-2024-21497MEDIUM6.1Versions of the package github.com/greenpau/caddy-security are vulnerable to Open Redirect via the redirect_url paramet...
CVE-2024-21496MEDIUM6.1All versions of the package github.com/greenpau/caddy-security are vulnerable to Cross-site Scripting (XSS) via the Refe...
CVE-2024-21495CRITICAL9.8Versions of the package github.com/greenpau/caddy-security before 1.0.42 are vulnerable to Insecure Randomness due to us...
CVE-2024-21494MEDIUM5.4All versions of the package github.com/greenpau/caddy-security are vulnerable to Authentication Bypass by Spoofing via t...
CVE-2024-21493MEDIUM5.3All versions of the package github.com/greenpau/caddy-security are vulnerable to Improper Validation of Array Index when...
CVE-2024-21492HIGH8.1All versions of the package github.com/greenpau/caddy-security are vulnerable to Insufficient Session Expiration due to ...
CVE-2024-22727HIGH8.3Teltonika TRB1-series devices with firmware before TRB1_R_00.07.05.2 allow attackers to exploit a firmware vulnerability...
CVE-2024-20986MEDIUM6.1Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t...
CVE-2024-20984MEDIUM4.4Vulnerability in the MySQL Server product of Oracle MySQL (component: Server : Security : Firewall). Supported versions...
CVE-2024-20982MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20980MEDIUM5.4Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Server). Supported versions that a...
CVE-2024-20978MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20976MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20974MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20972MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20970MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20968MEDIUM4.4Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are aff...
CVE-2024-20966MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20964MEDIUM5.3Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now