2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-0890CRITICAL9.8A vulnerability was found in hongmaple octopus 1.0. It has been classified as critical. Affected is an unknown function ...
CVE-2024-0889HIGH7.5A vulnerability was found in Kmint21 Golden FTP Server 2.02b and classified as problematic. This issue affects some unkn...
CVE-2024-23055MEDIUM6.1An issue in Plone Docker Official Image 5.2.13 (5221) open-source software allows for remote code execution via improper...
CVE-2024-22922CRITICAL9.8An issue in Projectworlds Vistor Management Systemin PHP v.1.0 allows a remtoe attacker to escalate privileges via a cra...
CVE-2024-0888HIGH7.5A vulnerability, which was classified as problematic, was found in BORGChat 1.0.0 Build 438. This affects an unknown par...
CVE-2024-0887HIGH7.5A vulnerability, which was classified as problematic, has been found in Mafiatic Blue Server 1.1. Affected by this issue...
CVE-2024-0886MEDIUM5.5A vulnerability classified as problematic was found in Poikosoft EZ CD Audio Converter 8.0.7. Affected by this vulnerabi...
CVE-2024-24399HIGH7.2An arbitrary file upload vulnerability in LEPTON v7.0.0 allows authenticated attackers to execute arbitrary PHP code by ...
CVE-2024-22639MEDIUM6.1iGalerie v3.0.22 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the Titre (Title) fi...
CVE-2024-22638CRITICAL9.8liveSite v2019.1 was discovered to contain a remote code execution (RCE) vulenrabiity via the component /livesite/edit_d...
CVE-2024-22637MEDIUM6.1Form Tools v3.1.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the component /form...
CVE-2024-22636HIGH8.8PluXml Blog v5.8.9 was discovered to contain a remote code execution (RCE) vulnerability in the Static Pages feature. Th...
CVE-2024-22635MEDIUM6.1WebCalendar v1.3.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the component /Web...
CVE-2024-0885HIGH7.5A vulnerability classified as problematic has been found in SpyCamLizard 1.230. Affected is an unknown function of the c...
CVE-2024-0884CRITICAL9.8A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0. It has been rated as critical....
CVE-2024-23817MEDIUM6.1Dolibarr is an enterprise resource planning (ERP) and customer relationship management (CRM) software package. Version 1...
CVE-2024-23656HIGH7.5Dex is an identity service that uses OpenID Connect to drive authentication for other apps. Dex 2.37.0 serves HTTPS with...
CVE-2024-23655MEDIUM5.3Tuta is an encrypted email service. Starting in version 3.118.12 and prior to version 3.119.10, an attacker is able to s...
CVE-2024-21630MEDIUM4.3Zulip is an open-source team collaboration tool. A vulnerability in version 8.0 is similar to CVE-2023-32677, but applie...
CVE-2024-0883CRITICAL9.8A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0. It has been declared as critic...
CVE-2024-0882HIGH7.5A vulnerability was found in qwdigital LinkWechat 5.1.0. It has been classified as problematic. This affects an unknown ...
CVE-2024-0880HIGH8.8A vulnerability was found in Qidianbang qdbcrm 1.1.0 and classified as problematic. Affected by this issue is some unkno...
CVE-2024-22749HIGH7.8GPAC v2.3 was detected to contain a buffer overflow via the function gf_isom_new_generic_sample_description function in ...
CVE-2024-22529CRITICAL9.8TOTOLINK X2000R_V2 V2.0.0-B20230727.10434 has a command injection vulnerability in the sub_449040 (handle function of fo...
CVE-2024-0822HIGH7.5An authentication bypass vulnerability was found in overt-engine. This flaw allows the creation of users in the system w...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now