2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-25004 | HIGH | 7.8 | 1.8% | Feb 9, 2024 | KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the username, occurs due to insuf... |
| CVE-2024-25003 | HIGH | 7.8 | 1.8% | Feb 9, 2024 | KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the hostname, occurs due to insuf... |
| CVE-2024-0229 | HIGH | 7.8 | 1.2% | Feb 9, 2024 | An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a... |
| CVE-2024-1122 | MEDIUM | 5.3 | 0.5% | Feb 9, 2024 | The Event Manager, Events Calendar, Events Tickets for WooCommerce – Eventin plugin for WordPress is vulnerable to unaut... |
| CVE-2024-0842 | HIGH | 7.5 | 1.0% | Feb 9, 2024 | The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to Denial of Service in all version... |
| CVE-2024-0657 | MEDIUM | 4.8 | 0.3% | Feb 9, 2024 | The Internal Link Juicer: SEO Auto Linker for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scriptin... |
| CVE-2024-24819 | HIGH | 8.8 | 0.3% | Feb 9, 2024 | icingaweb2-module-incubator is a working project of bleeding edge Icinga Web 2 libraries. In affected versions the class... |
| CVE-2024-23639 | HIGH | 7.8 | 0.3% | Feb 9, 2024 | Micronaut Framework is a modern, JVM-based, full stack Java framework designed for building modular, easily testable JVM... |
| CVE-2024-22332 | MEDIUM | 6.5 | 0.6% | Feb 9, 2024 | The IBM Integration Bus for z/OS 10.1 through 10.1.0.2 AdminAPI is vulnerable to a denial of service due to file system ... |
| CVE-2024-22318 | MEDIUM | 5.5 | 0.6% | Feb 9, 2024 | IBM i Access Client Solutions (ACS) 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.4 is vulnerable to NT LAN Manager (NTL... |
| CVE-2024-1353 | CRITICAL | 9.8 | 0.7% | Feb 9, 2024 | A vulnerability, which was classified as critical, has been found in PHPEMS up to 1.0. Affected by this issue is the fun... |
| CVE-2024-24829 | MEDIUM | 5.3 | 0.5% | Feb 9, 2024 | Sentry is an error tracking and performance monitoring platform. Sentry’s integration platform provides a way for extern... |
| CVE-2024-24825 | HIGH | 7.5 | 0.5% | Feb 9, 2024 | DIRAC is a distributed resource framework. In affected versions any user could get a token that has been requested by an... |
| CVE-2024-24821 | HIGH | 7.8 | 0.3% | Feb 9, 2024 | Composer is a dependency Manager for the PHP language. In affected versions several files within the local working direc... |
| CVE-2024-24820 | HIGH | 8.3 | 0.4% | Feb 9, 2024 | Icinga Director is a tool designed to make Icinga 2 configuration handling easy. Not any of Icinga Director's configurat... |
| CVE-2024-25107 | MEDIUM | 6.1 | 0.4% | Feb 8, 2024 | WikiDiscover is an extension designed for use with a CreateWiki managed farm to display wikis. On Special:WikiDiscover, ... |
| CVE-2024-25106 | MEDIUM | 6.5 | 0.5% | Feb 8, 2024 | OpenObserve is a observability platform built specifically for logs, metrics, traces, analytics, designed to work at pet... |
| CVE-2024-24830 | HIGH | 8.8 | 0.7% | Feb 8, 2024 | OpenObserve is a observability platform built specifically for logs, metrics, traces, analytics, designed to work at pet... |
| CVE-2024-24393 | CRITICAL | 9.8 | 1.2% | Feb 8, 2024 | File Upload vulnerability index.php in Pichome v.1.1.01 allows a remote attacker to execute arbitrary code via crafted P... |
| CVE-2024-24499 | — | — | — | Feb 8, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-1007. Reason: This candidate is a duplicate of C... |
| CVE-2024-24498 | — | — | — | Feb 8, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-1008. Reason: This candidate is a duplicate of C... |
| CVE-2024-24497 | — | — | — | Feb 8, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-1009. Reason: This candidate is a duplicate of C... |
| CVE-2024-24496 | CRITICAL | 9.8 | 19.5% | Feb 8, 2024 | An issue in Daily Habit Tracker v.1.0 allows a remote attacker to manipulate trackers via the home.php, add-tracker.php,... |
| CVE-2024-24495 | CRITICAL | 9.8 | 1.3% | Feb 8, 2024 | SQL Injection vulnerability in delete-tracker.php in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbit... |
| CVE-2024-24494 | MEDIUM | 6.1 | 25.9% | Feb 8, 2024 | Cross Site Scripting vulnerability in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbitrary code via t... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now