2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1198 | CRITICAL | 9.8 | 0.7% | Feb 3, 2024 | A vulnerability, which was classified as critical, was found in openBI up to 6.0.3. Affected is the function addxinzhi o... |
| CVE-2024-1197 | CRITICAL | 9.8 | 0.6% | Feb 2, 2024 | A vulnerability, which was classified as critical, has been found in SourceCodester Testimonial Page Manager 1.0. This i... |
| CVE-2024-1196 | MEDIUM | 6.1 | 0.5% | Feb 2, 2024 | A vulnerability classified as problematic was found in SourceCodester Testimonial Page Manager 1.0. This vulnerability a... |
| CVE-2024-1195 | MEDIUM | 5.5 | 0.3% | Feb 2, 2024 | A vulnerability classified as critical was found in iTop VPN up to 4.0.0.1. Affected by this vulnerability is an unknown... |
| CVE-2024-23553 | MEDIUM | 5.4 | 0.3% | Feb 2, 2024 | A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform exists due to missing a s... |
| CVE-2024-1194 | MEDIUM | 5.5 | 0.4% | Feb 2, 2024 | A vulnerability classified as problematic has been found in Armcode AlienIP 2.41. Affected is an unknown function of the... |
| CVE-2024-1193 | MEDIUM | 5.5 | 0.3% | Feb 2, 2024 | A vulnerability was found in Navicat 12.0.29. It has been rated as problematic. This issue affects some unknown processi... |
| CVE-2024-1190 | MEDIUM | 5.5 | 0.3% | Feb 2, 2024 | A vulnerability was found in Global Scape CuteFTP 9.3.0.3 and classified as problematic. Affected by this issue is some ... |
| CVE-2024-1189 | HIGH | 7.5 | 0.7% | Feb 2, 2024 | A vulnerability has been found in AMPPS 2.7 and classified as problematic. Affected by this vulnerability is an unknown ... |
| CVE-2024-1188 | MEDIUM | 5.5 | 0.2% | Feb 2, 2024 | A vulnerability, which was classified as problematic, was found in Rizone Soft Notepad3 1.0.2.350. Affected is an unknow... |
| CVE-2024-1187 | MEDIUM | 5.5 | 0.3% | Feb 2, 2024 | A vulnerability, which was classified as problematic, has been found in Munsoft Easy Outlook Express Recovery 2.0. This ... |
| CVE-2024-24560 | MEDIUM | 5.3 | 0.5% | Feb 2, 2024 | Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine. When calls to external contracts are made,... |
| CVE-2024-23635 | MEDIUM | 6.1 | 0.4% | Feb 2, 2024 | AntiSamy is a library for performing fast, configurable cleansing of HTML coming from untrusted sources. Prior to 1.7.5,... |
| CVE-2024-1186 | MEDIUM | 5.5 | 0.4% | Feb 2, 2024 | A vulnerability classified as problematic was found in Munsoft Easy Archive Recovery 2.0. This vulnerability affects unk... |
| CVE-2024-24760 | HIGH | 7.3 | 0.9% | Feb 2, 2024 | mailcow is a dockerized email package, with multiple containers linked in one bridged network. A security vulnerability ... |
| CVE-2024-24757 | CRITICAL | 9.8 | 0.5% | Feb 2, 2024 | open-irs is an issue response robot that reponds to issues in the installed repository. The `.env` file was accidentally... |
| CVE-2024-24470 | HIGH | 8.8 | 0.5% | Feb 2, 2024 | Cross Site Request Forgery vulnerability in flusity-CMS v.2.33 allows a remote attacker to execute arbitrary code via th... |
| CVE-2024-24161 | HIGH | 7.5 | 0.7% | Feb 2, 2024 | MRCMS 3.0 contains an Arbitrary File Read vulnerability in /admin/file/edit.do as the incoming path parameter is not fil... |
| CVE-2024-24160 | MEDIUM | 5.4 | 0.4% | Feb 2, 2024 | MRCMS 3.0 contains a Cross-Site Scripting (XSS) vulnerability via /admin/system/saveinfo.do. |
| CVE-2024-24029 | CRITICAL | 9.8 | 0.8% | Feb 2, 2024 | JFinalCMS 5.0.0 is vulnerable to SQL injection via /admin/content/data. |
| CVE-2024-23831 | HIGH | 7.5 | 0.3% | Feb 2, 2024 | LedgerSMB is a free web-based double-entry accounting system. When a LedgerSMB database administrator has an active sess... |
| CVE-2024-23824 | LOW | 2.7 | 0.6% | Feb 2, 2024 | mailcow is a dockerized email package, with multiple containers linked in one bridged network. The application is vulner... |
| CVE-2024-22108 | CRITICAL | 9.8 | 0.8% | Feb 2, 2024 | An issue was discovered in GTB Central Console 15.17.1-30814.NG. The method setTermsHashAction at /opt/webapp/lib/PureAp... |
| CVE-2024-22107 | HIGH | 7.2 | 2.5% | Feb 2, 2024 | An issue was discovered in GTB Central Console 15.17.1-30814.NG. The method systemSettingsDnsDataAction at /opt/webapp/s... |
| CVE-2024-1185 | MEDIUM | 5.5 | 0.4% | Feb 2, 2024 | A vulnerability classified as problematic has been found in Nsasoft NBMonitor Network Bandwidth Monitor 1.6.5.0. This af... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now