2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-22520 | HIGH | 8.2 | 0.6% | Feb 6, 2024 | An issue discovered in Dronetag Drone Scanner 1.5.2 allows attackers to impersonate other drones via transmission of cra... |
| CVE-2024-22519 | HIGH | 8.2 | 0.6% | Feb 6, 2024 | An issue discovered in OpenDroneID OSM 3.5.1 allows attackers to impersonate other drones via transmission of crafted da... |
| CVE-2024-1261 | CRITICAL | 9.8 | 0.6% | Feb 6, 2024 | A vulnerability classified as critical was found in Juanpao JPShop up to 1.5.02. This vulnerability affects the function... |
| CVE-2024-1260 | CRITICAL | 9.8 | 0.6% | Feb 6, 2024 | A vulnerability classified as critical has been found in Juanpao JPShop up to 1.5.02. This affects the function actionIn... |
| CVE-2024-22515 | HIGH | 8.8 | 1.2% | Feb 6, 2024 | Unrestricted File Upload vulnerability in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to upload arbitrary files v... |
| CVE-2024-22514 | HIGH | 8.8 | 1.4% | Feb 6, 2024 | An issue discovered in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to run arbitrary files by restoring a crafted ... |
| CVE-2024-1259 | CRITICAL | 9.8 | 0.7% | Feb 6, 2024 | A vulnerability was found in Juanpao JPShop up to 1.5.02. It has been rated as critical. Affected by this issue is some ... |
| CVE-2024-1258 | MEDIUM | 5.9 | 0.6% | Feb 6, 2024 | A vulnerability was found in Juanpao JPShop up to 1.5.02. It has been declared as problematic. Affected by this vulnerab... |
| CVE-2024-22241 | MEDIUM | 4.8 | 37.8% | Feb 6, 2024 | Aria Operations for Networks contains a cross site scripting vulnerability. A malicious actor with admin privileges can ... |
| CVE-2024-22240 | MEDIUM | 4.9 | 0.6% | Feb 6, 2024 | Aria Operations for Networks contains a local file read vulnerability. A malicious actor with admin privileges may explo... |
| CVE-2024-22239 | HIGH | 7.8 | 0.2% | Feb 6, 2024 | Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Ope... |
| CVE-2024-22238 | MEDIUM | 4.8 | 0.5% | Feb 6, 2024 | Aria Operations for Networks contains a cross site scripting vulnerability. A malicious actor with admin privileges may ... |
| CVE-2024-22237 | HIGH | 7.8 | 0.2% | Feb 6, 2024 | Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Ope... |
| CVE-2024-1257 | MEDIUM | 6.1 | 0.5% | Feb 6, 2024 | A vulnerability was found in Jspxcms 10.2.0. It has been classified as problematic. Affected is an unknown function of t... |
| CVE-2024-1256 | MEDIUM | 4.3 | 0.6% | Feb 6, 2024 | A vulnerability was found in Jspxcms 10.2.0 and classified as problematic. This issue affects some unknown processing of... |
| CVE-2024-1255 | HIGH | 7.5 | 0.6% | Feb 6, 2024 | A vulnerability has been found in sepidz SepidzDigitalMenu up to 7.1.0728.1 and classified as problematic. This vulnerab... |
| CVE-2024-1254 | HIGH | 7.2 | 4.6% | Feb 6, 2024 | A vulnerability, which was classified as critical, was found in Byzoro Smart S20 Management Platform up to 20231120. Thi... |
| CVE-2024-1048 | LOW | 3.3 | 0.3% | Feb 6, 2024 | A flaw was found in the grub2-set-bootflag utility of grub2. After the fix of CVE-2019-14865, grub2-set-bootflag will cr... |
| CVE-2024-22331 | MEDIUM | 5.5 | 0.2% | Feb 6, 2024 | IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.19, 7.1 through 7.1.2.15, 7.2 through 7.2.3.8, 7.3 through 7.3.2.3, and IBM... |
| CVE-2024-1253 | HIGH | 7.2 | 1.7% | Feb 6, 2024 | A vulnerability, which was classified as critical, has been found in Byzoro Smart S40 Management Platform up to 20240126... |
| CVE-2024-1252 | CRITICAL | 9.8 | 0.7% | Feb 6, 2024 | A vulnerability classified as critical was found in Tongda OA 2017 up to 11.9. Affected by this vulnerability is an unkn... |
| CVE-2024-24291 | MEDIUM | 6.1 | 0.4% | Feb 6, 2024 | An issue in the component /member/index/login of yzmcms v7.0 allows attackers to direct users to malicious sites via a c... |
| CVE-2024-24015 | CRITICAL | 9.8 | 0.6% | Feb 6, 2024 | A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass in crafted offset... |
| CVE-2024-24013 | CRITICAL | 9.8 | 0.6% | Feb 6, 2024 | A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass crafted offset, l... |
| CVE-2024-24000 | CRITICAL | 9.8 | 0.6% | Feb 6, 2024 | jshERP v3.3 is vulnerable to Arbitrary File Upload. The jshERP-boot/systemConfig/upload interface does not check the upl... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now