2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-24397 | MEDIUM | 5.4 | 1.0% | Feb 5, 2024 | Cross Site Scripting vulnerability in Stimulsoft GmbH Stimulsoft Dashboard.JS before v.2024.1.2 allows a remote attacker... |
| CVE-2024-23054 | CRITICAL | 9.8 | 1.7% | Feb 5, 2024 | An issue in Plone Docker Official Image 5.2.13 (5221) open-source software that could allow for remote code execution du... |
| CVE-2024-0323 | CRITICAL | 9.8 | 0.2% | Feb 5, 2024 | The FTP server used on the B&R Automation Runtime supports unsecure encryption mechanisms, such as SSLv3, TLSv1.0 and TL... |
| CVE-2024-24768 | HIGH | 7.5 | 0.3% | Feb 5, 2024 | 1Panel is an open source Linux server operation and maintenance management panel. The HTTPS cookie that comes with the p... |
| CVE-2024-24762 | HIGH | 7.5 | 1.5% | Feb 5, 2024 | `python-multipart` is a streaming multipart parser for Python. When using form data, `python-multipart` uses a Regular E... |
| CVE-2024-23109 | CRITICAL | 9.8 | 3.2% | Feb 5, 2024 | An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet ... |
| CVE-2024-23108 | CRITICAL | 9.8 | 78.4% | Feb 5, 2024 | An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet ... |
| CVE-2024-1225 | CRITICAL | 9.8 | 0.9% | Feb 5, 2024 | A vulnerability classified as critical was found in QiboSoft QiboCMS X1 up to 1.0.6. Affected by this vulnerability is t... |
| CVE-2024-24864 | MEDIUM | 4.7 | 0.2% | Feb 5, 2024 | A race condition was found in the Linux kernel's media/dvb-core in dvbdmx_write() function. This can result in a null po... |
| CVE-2024-24861 | MEDIUM | 6.3 | 0.2% | Feb 5, 2024 | A race condition was found in the Linux kernel's media/xc4000 device driver in xc4000 xc4000_get_frequency() function. T... |
| CVE-2024-24860 | MEDIUM | 5.3 | 0.8% | Feb 5, 2024 | A race condition was found in the Linux kernel's bluetooth device driver in {min,max}_key_size_set() function. This can ... |
| CVE-2024-24859 | MEDIUM | 4.8 | 0.7% | Feb 5, 2024 | A race condition was found in the Linux kernel's net/bluetooth in sniff_{min,max}_interval_set() function. This can resu... |
| CVE-2024-24858 | MEDIUM | 5.3 | 0.3% | Feb 5, 2024 | A race condition was found in the Linux kernel's net/bluetooth in {conn,adv}_{min,max}_interval_set() function. This can... |
| CVE-2024-24857 | MEDIUM | 6.8 | 0.3% | Feb 5, 2024 | A race condition was found in the Linux kernel's net/bluetooth device driver in conn_info_{min,max}_age_set() function. ... |
| CVE-2024-24855 | MEDIUM | 4.7 | 0.2% | Feb 5, 2024 | A race condition was found in the Linux kernel's scsi device driver in lpfc_unregister_fcf_rescan() function. This can r... |
| CVE-2024-23196 | MEDIUM | 4.7 | 0.2% | Feb 5, 2024 | A race condition was found in the Linux kernel's sound/hda device driver in snd_hdac_regmap_sync() function. This can r... |
| CVE-2024-22667 | HIGH | 7.8 | 0.6% | Feb 5, 2024 | Vim before 9.0.2142 has a stack-based buffer overflow because did_set_langmap in map.c calls sprintf to write to the err... |
| CVE-2024-22386 | MEDIUM | 4.7 | 0.2% | Feb 5, 2024 | A race condition was found in the Linux kernel's drm/exynos device driver in exynos_drm_crtc_atomic_disable() function. ... |
| CVE-2024-24865 | MEDIUM | 5.4 | 0.3% | Feb 5, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Noah Kagan Scroll ... |
| CVE-2024-24848 | MEDIUM | 6.1 | 0.3% | Feb 5, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MJS Software PT Si... |
| CVE-2024-24847 | MEDIUM | 6.1 | 0.3% | Feb 5, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jgadbois Calculato... |
| CVE-2024-24846 | MEDIUM | 6.1 | 0.3% | Feb 5, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MightyThemes Might... |
| CVE-2024-24841 | MEDIUM | 4.8 | 0.3% | Feb 5, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dan's Art Add Cust... |
| CVE-2024-24839 | MEDIUM | 5.4 | 0.3% | Feb 5, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Gordon Böhme, Anto... |
| CVE-2024-24838 | MEDIUM | 5.4 | 0.3% | Feb 5, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Five Star Plugins ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now