2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-1198CRITICAL9.8A vulnerability, which was classified as critical, was found in openBI up to 6.0.3. Affected is the function addxinzhi o...
CVE-2024-1197CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Testimonial Page Manager 1.0. This i...
CVE-2024-1196MEDIUM6.1A vulnerability classified as problematic was found in SourceCodester Testimonial Page Manager 1.0. This vulnerability a...
CVE-2024-1195MEDIUM5.5A vulnerability classified as critical was found in iTop VPN up to 4.0.0.1. Affected by this vulnerability is an unknown...
CVE-2024-23553MEDIUM5.4A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform exists due to missing a s...
CVE-2024-1194MEDIUM5.5A vulnerability classified as problematic has been found in Armcode AlienIP 2.41. Affected is an unknown function of the...
CVE-2024-1193MEDIUM5.5A vulnerability was found in Navicat 12.0.29. It has been rated as problematic. This issue affects some unknown processi...
CVE-2024-1190MEDIUM5.5A vulnerability was found in Global Scape CuteFTP 9.3.0.3 and classified as problematic. Affected by this issue is some ...
CVE-2024-1189HIGH7.5A vulnerability has been found in AMPPS 2.7 and classified as problematic. Affected by this vulnerability is an unknown ...
CVE-2024-1188MEDIUM5.5A vulnerability, which was classified as problematic, was found in Rizone Soft Notepad3 1.0.2.350. Affected is an unknow...
CVE-2024-1187MEDIUM5.5A vulnerability, which was classified as problematic, has been found in Munsoft Easy Outlook Express Recovery 2.0. This ...
CVE-2024-24560MEDIUM5.3Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine. When calls to external contracts are made,...
CVE-2024-23635MEDIUM6.1AntiSamy is a library for performing fast, configurable cleansing of HTML coming from untrusted sources. Prior to 1.7.5,...
CVE-2024-1186MEDIUM5.5A vulnerability classified as problematic was found in Munsoft Easy Archive Recovery 2.0. This vulnerability affects unk...
CVE-2024-24760HIGH7.3mailcow is a dockerized email package, with multiple containers linked in one bridged network. A security vulnerability ...
CVE-2024-24757CRITICAL9.8open-irs is an issue response robot that reponds to issues in the installed repository. The `.env` file was accidentally...
CVE-2024-24470HIGH8.8Cross Site Request Forgery vulnerability in flusity-CMS v.2.33 allows a remote attacker to execute arbitrary code via th...
CVE-2024-24161HIGH7.5MRCMS 3.0 contains an Arbitrary File Read vulnerability in /admin/file/edit.do as the incoming path parameter is not fil...
CVE-2024-24160MEDIUM5.4MRCMS 3.0 contains a Cross-Site Scripting (XSS) vulnerability via /admin/system/saveinfo.do.
CVE-2024-24029CRITICAL9.8JFinalCMS 5.0.0 is vulnerable to SQL injection via /admin/content/data.
CVE-2024-23831HIGH7.5LedgerSMB is a free web-based double-entry accounting system. When a LedgerSMB database administrator has an active sess...
CVE-2024-23824LOW2.7mailcow is a dockerized email package, with multiple containers linked in one bridged network. The application is vulner...
CVE-2024-22108CRITICAL9.8An issue was discovered in GTB Central Console 15.17.1-30814.NG. The method setTermsHashAction at /opt/webapp/lib/PureAp...
CVE-2024-22107HIGH7.2An issue was discovered in GTB Central Console 15.17.1-30814.NG. The method systemSettingsDnsDataAction at /opt/webapp/s...
CVE-2024-1185MEDIUM5.5A vulnerability classified as problematic has been found in Nsasoft NBMonitor Network Bandwidth Monitor 1.6.5.0. This af...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now