2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-25004HIGH7.8KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the username, occurs due to insuf...
CVE-2024-25003HIGH7.8KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the hostname, occurs due to insuf...
CVE-2024-0229HIGH7.8An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a...
CVE-2024-1122MEDIUM5.3The Event Manager, Events Calendar, Events Tickets for WooCommerce – Eventin plugin for WordPress is vulnerable to unaut...
CVE-2024-0842HIGH7.5The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to Denial of Service in all version...
CVE-2024-0657MEDIUM4.8The Internal Link Juicer: SEO Auto Linker for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scriptin...
CVE-2024-24819HIGH8.8icingaweb2-module-incubator is a working project of bleeding edge Icinga Web 2 libraries. In affected versions the class...
CVE-2024-23639HIGH7.8Micronaut Framework is a modern, JVM-based, full stack Java framework designed for building modular, easily testable JVM...
CVE-2024-22332MEDIUM6.5The IBM Integration Bus for z/OS 10.1 through 10.1.0.2 AdminAPI is vulnerable to a denial of service due to file system ...
CVE-2024-22318MEDIUM5.5IBM i Access Client Solutions (ACS) 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.4 is vulnerable to NT LAN Manager (NTL...
CVE-2024-1353CRITICAL9.8A vulnerability, which was classified as critical, has been found in PHPEMS up to 1.0. Affected by this issue is the fun...
CVE-2024-24829MEDIUM5.3Sentry is an error tracking and performance monitoring platform. Sentry’s integration platform provides a way for extern...
CVE-2024-24825HIGH7.5DIRAC is a distributed resource framework. In affected versions any user could get a token that has been requested by an...
CVE-2024-24821HIGH7.8Composer is a dependency Manager for the PHP language. In affected versions several files within the local working direc...
CVE-2024-24820HIGH8.3Icinga Director is a tool designed to make Icinga 2 configuration handling easy. Not any of Icinga Director's configurat...
CVE-2024-25107MEDIUM6.1WikiDiscover is an extension designed for use with a CreateWiki managed farm to display wikis. On Special:WikiDiscover, ...
CVE-2024-25106MEDIUM6.5OpenObserve is a observability platform built specifically for logs, metrics, traces, analytics, designed to work at pet...
CVE-2024-24830HIGH8.8OpenObserve is a observability platform built specifically for logs, metrics, traces, analytics, designed to work at pet...
CVE-2024-24393CRITICAL9.8File Upload vulnerability index.php in Pichome v.1.1.01 allows a remote attacker to execute arbitrary code via crafted P...
CVE-2024-24499Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-1007. Reason: This candidate is a duplicate of C...
CVE-2024-24498Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-1008. Reason: This candidate is a duplicate of C...
CVE-2024-24497Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-1009. Reason: This candidate is a duplicate of C...
CVE-2024-24496CRITICAL9.8An issue in Daily Habit Tracker v.1.0 allows a remote attacker to manipulate trackers via the home.php, add-tracker.php,...
CVE-2024-24495CRITICAL9.8SQL Injection vulnerability in delete-tracker.php in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbit...
CVE-2024-24494MEDIUM6.1Cross Site Scripting vulnerability in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbitrary code via t...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now