2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1184 | MEDIUM | 5.5 | 0.4% | Feb 2, 2024 | A vulnerability was found in Nsasoft Network Sleuth 3.0.0.0. It has been rated as problematic. Affected by this issue is... |
| CVE-2024-0269 | HIGH | 8.8 | 5.4% | Feb 2, 2024 | ManageEngine ADAudit Plus versions 7270 and below are vulnerable to the Authenticated SQL injection in File-Summary Dril... |
| CVE-2024-0253 | HIGH | 8.8 | 5.0% | Feb 2, 2024 | ManageEngine ADAudit Plus versions 7270 and below are vulnerable to the Authenticated SQL injection in home Graph-Data. |
| CVE-2024-1201 | HIGH | 7.8 | 0.2% | Feb 2, 2024 | Search path or unquoted item vulnerability in HDD Health affecting versions 4.2.0.112 and earlier. This vulnerability co... |
| CVE-2024-0963 | MEDIUM | 5.4 | 0.5% | Feb 2, 2024 | The Calculated Fields Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's CP_CALCULA... |
| CVE-2024-0844 | HIGH | 7.2 | 0.7% | Feb 2, 2024 | The Popup More Popups, Lightboxes, and more popup modules plugin for WordPress is vulnerable to Local File Inclusion in ... |
| CVE-2024-24388 | MEDIUM | 6.1 | 0.5% | Feb 2, 2024 | Cross-site scripting (XSS) vulnerability in XunRuiCMS versions v4.6.2 and before, allows remote attackers to obtain sens... |
| CVE-2024-23895 | MEDIUM | 6.1 | 0.5% | Feb 2, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-0338 | CRITICAL | 9.8 | 0.5% | Feb 2, 2024 | A buffer overflow vulnerability has been found in XAMPP affecting version 8.2.4 and earlier. An attacker could execute a... |
| CVE-2024-25001 | — | — | — | Feb 2, 2024 | Rejected reason: ** REJECT ** DO NOT USE THIS CVE ID. ConsultIDs: none. Reason: This CVE ID is unused by its CNA. Notes:... |
| CVE-2024-22851 | HIGH | 7.5 | 1.2% | Feb 2, 2024 | Directory Traversal Vulnerability in LiveConfig before v.2.5.2 allows a remote attacker to obtain sensitive information ... |
| CVE-2024-24524 | HIGH | 8.8 | 0.5% | Feb 2, 2024 | Cross Site Request Forgery (CSRF) vulnerability in flusity-CMS v.2.33, allows remote attackers to execute arbitrary code... |
| CVE-2024-23978 | CRITICAL | 9.8 | 0.7% | Feb 2, 2024 | Heap-based buffer overflow vulnerability exists in HOME SPOT CUBE2 V102 and earlier. By processing invalid values, arbit... |
| CVE-2024-21863 | MEDIUM | 6.2 | 0.2% | Feb 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause DOS through improper input. |
| CVE-2024-21860 | HIGH | 8.8 | 0.4% | Feb 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow an adjacent attacker arbitrary code execution in any apps through use a... |
| CVE-2024-21851 | HIGH | 7.8 | 0.2% | Feb 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause heap overflow through integer overflow. |
| CVE-2024-21845 | HIGH | 7.8 | 0.2% | Feb 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause heap overflow through integer overflow. |
| CVE-2024-21780 | HIGH | 7.5 | 0.7% | Feb 2, 2024 | Stack-based buffer overflow vulnerability exists in HOME SPOT CUBE2 V102 and earlier. Processing a specially crafted com... |
| CVE-2024-0285 | MEDIUM | 5.5 | 0.2% | Feb 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause DOS through improper input. |
| CVE-2024-1162 | MEDIUM | 4.3 | 0.2% | Feb 2, 2024 | The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and i... |
| CVE-2024-1143 | MEDIUM | 6.1 | 0.5% | Feb 2, 2024 | Central Dogma versions prior to 0.64.1 is vulnerable to Cross-Site Scripting (XSS), which could allow for the leakage of... |
| CVE-2024-1047 | MEDIUM | 5.3 | 0.6% | Feb 2, 2024 | Multiple plugins and/or themes for WordPress with the ThemeIsle SDK are vulnerable to unauthorized modification of data ... |
| CVE-2024-24482 | CRITICAL | 9.8 | 1.2% | Feb 2, 2024 | Aprktool before 2.9.3 on Windows allows ../ and /.. directory traversal. |
| CVE-2024-21485 | MEDIUM | 5.4 | 1.5% | Feb 2, 2024 | Versions of the package dash-core-components before 2.13.0; versions of the package dash-core-components before 2.0.0; v... |
| CVE-2024-1073 | MEDIUM | 5.4 | 0.5% | Feb 2, 2024 | The SlimStat Analytics plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'filter_array' paramete... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now