2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-23686 | MEDIUM | 5.3 | 0.6% | Jan 19, 2024 | DependencyCheck for Maven 9.0.0 to 9.0.6, for CLI version 9.0.0 to 9.0.5, and for Ant versions 9.0.0 to 9.0.5, when used... |
| CVE-2024-0739 | CRITICAL | 9.8 | 0.8% | Jan 19, 2024 | A vulnerability, which was classified as critical, was found in Hecheng Leadshop up to 1.4.20. Affected is an unknown fu... |
| CVE-2024-0738 | CRITICAL | 9.8 | 0.8% | Jan 19, 2024 | A vulnerability, which was classified as critical, has been found in 个人开源 mldong 1.0. This issue affects the function Ex... |
| CVE-2024-0737 | HIGH | 7.5 | 4.2% | Jan 19, 2024 | A vulnerability classified as problematic was found in Xlightftpd Xlight FTP Server 1.1. This vulnerability affects unkn... |
| CVE-2024-23689 | HIGH | 8.8 | 0.7% | Jan 19, 2024 | Exposure of sensitive information in exceptions in ClichHouse's clickhouse-r2dbc, com.clickhouse:clickhouse-jdbc, and co... |
| CVE-2024-23685 | MEDIUM | 5.3 | 0.5% | Jan 19, 2024 | Hard-coded credentials in mod-remote-storage versions under 1.7.2 and from 2.0.0 to 2.0.3 allows unauthorized users to g... |
| CVE-2024-23684 | HIGH | 7.5 | 0.9% | Jan 19, 2024 | Inefficient algorithmic complexity in DecodeFromBytes function in com.upokecenter.cbor Java implementation of Concise Bi... |
| CVE-2024-23683 | HIGH | 8.2 | 0.4% | Jan 19, 2024 | Artemis Java Test Sandbox versions less than 1.7.6 are vulnerable to a sandbox escape when an attacker crafts a special ... |
| CVE-2024-23682 | HIGH | 8.2 | 0.4% | Jan 19, 2024 | Artemis Java Test Sandbox versions before 1.8.0 are vulnerable to a sandbox escape when an attacker includes class files... |
| CVE-2024-23681 | HIGH | 8.2 | 0.3% | Jan 19, 2024 | Artemis Java Test Sandbox versions before 1.11.2 are vulnerable to a sandbox escape when an attacker loads untrusted lib... |
| CVE-2024-23680 | MEDIUM | 5.3 | 0.2% | Jan 19, 2024 | AWS Encryption SDK for Java versions 2.0.0 to 2.2.0 and less than 1.9.0 incorrectly validates some invalid ECDSA signatu... |
| CVE-2024-23679 | CRITICAL | 9.8 | 0.8% | Jan 19, 2024 | Enonic XP versions less than 7.7.4 are vulnerable to a session fixation issue. An remote and unauthenticated attacker ca... |
| CVE-2024-22421 | MEDIUM | 6.5 | 0.7% | Jan 19, 2024 | JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Ar... |
| CVE-2024-22420 | MEDIUM | 6.1 | 0.6% | Jan 19, 2024 | JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Ar... |
| CVE-2024-0758 | MEDIUM | 6.1 | 0.6% | Jan 19, 2024 | MolecularFaces before 0.3.0 is vulnerable to cross site scripting. A remote attacker can execute arbitrary JavaScript in... |
| CVE-2024-0736 | HIGH | 7.5 | 1.0% | Jan 19, 2024 | A vulnerability classified as problematic has been found in EFS Easy File Sharing FTP 3.6. This affects an unknown part ... |
| CVE-2024-0735 | CRITICAL | 9.8 | 0.7% | Jan 19, 2024 | A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0. It has been rated as critical.... |
| CVE-2024-0734 | CRITICAL | 9.8 | 0.5% | Jan 19, 2024 | A vulnerability was found in Smsot up to 2.12. It has been declared as critical. Affected by this vulnerability is an un... |
| CVE-2024-0733 | CRITICAL | 9.8 | 0.5% | Jan 19, 2024 | A vulnerability was found in Smsot up to 2.12. It has been classified as critical. Affected is an unknown function of th... |
| CVE-2024-23331 | HIGH | 7.5 | 0.8% | Jan 19, 2024 | Vite is a frontend tooling framework for javascript. The Vite dev server option `server.fs.deny` can be bypassed on case... |
| CVE-2024-23329 | LOW | 3.7 | 0.6% | Jan 19, 2024 | changedetection.io is an open source tool designed to monitor websites for content changes. In affected versions the AP... |
| CVE-2024-22211 | CRITICAL | 9.8 | 1.1% | Jan 19, 2024 | FreeRDP is a set of free and open source remote desktop protocol library and clients. In affected versions an integer ov... |
| CVE-2024-0732 | HIGH | 7.5 | 1.1% | Jan 19, 2024 | A vulnerability was found in PCMan FTP Server 2.0.7 and classified as problematic. This issue affects some unknown proce... |
| CVE-2024-0731 | HIGH | 7.5 | 1.1% | Jan 19, 2024 | A vulnerability has been found in PCMan FTP Server 2.0.7 and classified as problematic. This vulnerability affects unkno... |
| CVE-2024-0663 | — | — | — | Jan 19, 2024 | Rejected reason: REJECT: This is a false positive report. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now