2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-24870 | MEDIUM | 5.4 | 0.3% | Feb 5, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Michael Dempfle Ad... |
| CVE-2024-24866 | MEDIUM | 6.1 | 0.4% | Feb 5, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Biteship Biteship:... |
| CVE-2024-20016 | MEDIUM | 4.4 | 0.1% | Feb 5, 2024 | In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local denial of service w... |
| CVE-2024-20015 | HIGH | 7.8 | 0.1% | Feb 5, 2024 | In telephony, there is a possible escalation of privilege due to a permissions bypass. This could lead to local escalati... |
| CVE-2024-20013 | MEDIUM | 6.7 | 0.1% | Feb 5, 2024 | In keyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio... |
| CVE-2024-20012 | MEDIUM | 6.7 | 0.1% | Feb 5, 2024 | In keyInstall, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of... |
| CVE-2024-20011 | CRITICAL | 9.8 | 0.5% | Feb 5, 2024 | In alac decoder, there is a possible information disclosure due to an incorrect bounds check. This could lead to remote ... |
| CVE-2024-20010 | MEDIUM | 6.7 | 0.1% | Feb 5, 2024 | In keyInstall, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of... |
| CVE-2024-20009 | HIGH | 8.8 | 0.4% | Feb 5, 2024 | In alac decoder, there is a possible out of bounds write due to an incorrect error handling. This could lead to remote e... |
| CVE-2024-20007 | HIGH | 7.5 | 0.3% | Feb 5, 2024 | In mp3 decoder, there is a possible out of bounds write due to a race condition. This could lead to remote escalation of... |
| CVE-2024-20006 | MEDIUM | 6.7 | 0.2% | Feb 5, 2024 | In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pri... |
| CVE-2024-20004 | HIGH | 7.5 | 1.2% | Feb 5, 2024 | In Modem NL1, there is a possible system crash due to an improper input validation. This could lead to remote denial of ... |
| CVE-2024-20003 | HIGH | 7.5 | 1.1% | Feb 5, 2024 | In Modem NL1, there is a possible system crash due to an improper input validation. This could lead to remote denial of ... |
| CVE-2024-20002 | MEDIUM | 6.7 | 0.1% | Feb 5, 2024 | In TVAPI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
| CVE-2024-20001 | MEDIUM | 6.7 | 0.1% | Feb 5, 2024 | In TVAPI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
| CVE-2024-25089 | CRITICAL | 9.8 | 1.8% | Feb 4, 2024 | Malwarebytes Binisoft Windows Firewall Control before 6.9.9.2 allows remote attackers to execute arbitrary code via gRPC... |
| CVE-2024-25062 | HIGH | 7.5 | 1.4% | Feb 4, 2024 | An issue was discovered in libxml2 before 2.11.7 and 2.12.x before 2.12.5. When using the XML Reader interface with DTD ... |
| CVE-2024-1215 | MEDIUM | 6.1 | 0.6% | Feb 3, 2024 | A vulnerability was found in SourceCodester CRUD without Page Reload 1.0. It has been rated as problematic. Affected by ... |
| CVE-2024-0853 | MEDIUM | 5.3 | 1.1% | Feb 3, 2024 | curl inadvertently kept the SSL session ID for connections in its cache even when the verify status (*OCSP stapling*) te... |
| CVE-2024-1064 | HIGH | 7.5 | 0.8% | Feb 3, 2024 | A host header injection vulnerability in the HTTP handler component of Crafty Controller allows a remote, unauthenticate... |
| CVE-2024-23550 | MEDIUM | 5.5 | 0.2% | Feb 3, 2024 | HCL DevOps Deploy / HCL Launch (UCD) could disclose sensitive user information when installing the Windows agent. |
| CVE-2024-0909 | HIGH | 7.5 | 0.6% | Feb 3, 2024 | The Anonymous Restricted Content plugin for WordPress is vulnerable to information disclosure in all versions up to, and... |
| CVE-2024-0895 | MEDIUM | 5.4 | 0.4% | Feb 3, 2024 | The PDF Flipbook, 3D Flipbook – DearFlip plugin for WordPress is vulnerable to Stored Cross-Site Scripting via outline s... |
| CVE-2024-1200 | MEDIUM | 6.5 | 0.9% | Feb 3, 2024 | A vulnerability was found in Jspxcms 10.2.0 and classified as problematic. Affected by this issue is some unknown functi... |
| CVE-2024-1199 | HIGH | 7.5 | 0.7% | Feb 3, 2024 | A vulnerability has been found in CodeAstro Employee Task Management System 1.0 and classified as problematic. Affected ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now