2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-23686MEDIUM5.3DependencyCheck for Maven 9.0.0 to 9.0.6, for CLI version 9.0.0 to 9.0.5, and for Ant versions 9.0.0 to 9.0.5, when used...
CVE-2024-0739CRITICAL9.8A vulnerability, which was classified as critical, was found in Hecheng Leadshop up to 1.4.20. Affected is an unknown fu...
CVE-2024-0738CRITICAL9.8A vulnerability, which was classified as critical, has been found in 个人开源 mldong 1.0. This issue affects the function Ex...
CVE-2024-0737HIGH7.5A vulnerability classified as problematic was found in Xlightftpd Xlight FTP Server 1.1. This vulnerability affects unkn...
CVE-2024-23689HIGH8.8Exposure of sensitive information in exceptions in ClichHouse's clickhouse-r2dbc, com.clickhouse:clickhouse-jdbc, and co...
CVE-2024-23685MEDIUM5.3Hard-coded credentials in mod-remote-storage versions under 1.7.2 and from 2.0.0 to 2.0.3 allows unauthorized users to g...
CVE-2024-23684HIGH7.5Inefficient algorithmic complexity in DecodeFromBytes function in com.upokecenter.cbor Java implementation of Concise Bi...
CVE-2024-23683HIGH8.2Artemis Java Test Sandbox versions less than 1.7.6 are vulnerable to a sandbox escape when an attacker crafts a special ...
CVE-2024-23682HIGH8.2Artemis Java Test Sandbox versions before 1.8.0 are vulnerable to a sandbox escape when an attacker includes class files...
CVE-2024-23681HIGH8.2Artemis Java Test Sandbox versions before 1.11.2 are vulnerable to a sandbox escape when an attacker loads untrusted lib...
CVE-2024-23680MEDIUM5.3AWS Encryption SDK for Java versions 2.0.0 to 2.2.0 and less than 1.9.0 incorrectly validates some invalid ECDSA signatu...
CVE-2024-23679CRITICAL9.8Enonic XP versions less than 7.7.4 are vulnerable to a session fixation issue. An remote and unauthenticated attacker ca...
CVE-2024-22421MEDIUM6.5JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Ar...
CVE-2024-22420MEDIUM6.1JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Ar...
CVE-2024-0758MEDIUM6.1MolecularFaces before 0.3.0 is vulnerable to cross site scripting. A remote attacker can execute arbitrary JavaScript in...
CVE-2024-0736HIGH7.5A vulnerability classified as problematic has been found in EFS Easy File Sharing FTP 3.6. This affects an unknown part ...
CVE-2024-0735CRITICAL9.8A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0. It has been rated as critical....
CVE-2024-0734CRITICAL9.8A vulnerability was found in Smsot up to 2.12. It has been declared as critical. Affected by this vulnerability is an un...
CVE-2024-0733CRITICAL9.8A vulnerability was found in Smsot up to 2.12. It has been classified as critical. Affected is an unknown function of th...
CVE-2024-23331HIGH7.5Vite is a frontend tooling framework for javascript. The Vite dev server option `server.fs.deny` can be bypassed on case...
CVE-2024-23329LOW3.7 changedetection.io is an open source tool designed to monitor websites for content changes. In affected versions the AP...
CVE-2024-22211CRITICAL9.8FreeRDP is a set of free and open source remote desktop protocol library and clients. In affected versions an integer ov...
CVE-2024-0732HIGH7.5A vulnerability was found in PCMan FTP Server 2.0.7 and classified as problematic. This issue affects some unknown proce...
CVE-2024-0731HIGH7.5A vulnerability has been found in PCMan FTP Server 2.0.7 and classified as problematic. This vulnerability affects unkno...
CVE-2024-0663——Rejected reason: REJECT: This is a false positive report.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now