2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-0517 | HIGH | 8.8 | 21.7% | Jan 16, 2024 | Out of bounds write in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap... |
| CVE-2024-0599 | MEDIUM | 5.4 | 0.5% | Jan 16, 2024 | A vulnerability was found in Jspxcms 10.2.0. It has been declared as problematic. Affected by this vulnerability is an u... |
| CVE-2024-22491 | MEDIUM | 5.4 | 0.4% | Jan 16, 2024 | A Stored Cross Site Scripting (XSS) vulnerability in beetl-bbs 2.0 allows attackers to run arbitrary code via the post/s... |
| CVE-2024-0507 | HIGH | 8.8 | 65.8% | Jan 16, 2024 | An attacker with access to a Management Console user account with the editor role could escalate privileges through a co... |
| CVE-2024-0200 | CRITICAL | 9.8 | 71.7% | Jan 16, 2024 | An unsafe reflection vulnerability was identified in GitHub Enterprise Server that could lead to reflection injection. T... |
| CVE-2024-23347 | HIGH | 7.8 | 0.3% | Jan 16, 2024 | Prior to v176, when opening a new project Meta Spark Studio would execute scripts defined inside of a package.json file ... |
| CVE-2024-22628 | HIGH | 7.2 | 0.6% | Jan 16, 2024 | Budget and Expense Tracker System v1.0 is vulnerable to SQL Injection via /expense_budget/admin/?page=reports/budget&dat... |
| CVE-2024-22627 | HIGH | 7.2 | 0.7% | Jan 16, 2024 | Complete Supplier Management System v1.0 is vulnerable to SQL Injection via /Supply_Management_System/admin/edit_distrib... |
| CVE-2024-22626 | HIGH | 7.2 | 0.7% | Jan 16, 2024 | Complete Supplier Management System v1.0 is vulnerable to SQL Injection via /Supply_Management_System/admin/edit_retaile... |
| CVE-2024-22625 | HIGH | 7.2 | 0.7% | Jan 16, 2024 | Complete Supplier Management System v1.0 is vulnerable to SQL Injection via /Supply_Management_System/admin/edit_categor... |
| CVE-2024-0579 | CRITICAL | 9.8 | 2.7% | Jan 16, 2024 | A vulnerability classified as critical was found in Totolink X2000R 1.0.0-B20221212.1452. Affected by this vulnerability... |
| CVE-2024-0578 | CRITICAL | 9.8 | 1.1% | Jan 16, 2024 | A vulnerability classified as critical has been found in Totolink LR1200GB 9.1.0u.6619_B20230130. Affected is the functi... |
| CVE-2024-0577 | CRITICAL | 9.8 | 1.0% | Jan 16, 2024 | A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130. It has been rated as critical. This issue affects ... |
| CVE-2024-0576 | CRITICAL | 9.8 | 1.0% | Jan 16, 2024 | A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130. It has been declared as critical. This vulnerabili... |
| CVE-2024-0239 | MEDIUM | 6.1 | 0.5% | Jan 16, 2024 | The Contact Form 7 Connector WordPress plugin before 1.2.3 does not sanitise and escape a parameter before outputting it... |
| CVE-2024-0238 | MEDIUM | 6.1 | 0.4% | Jan 16, 2024 | The EventON Premium WordPress plugin before 4.5.6, EventON WordPress plugin before 2.2.8 do not have authorisation in an... |
| CVE-2024-0237 | MEDIUM | 5.3 | 0.4% | Jan 16, 2024 | The EventON WordPress plugin through 4.5.8, EventON WordPress plugin before 2.2.7 do not have authorisation in some AJAX... |
| CVE-2024-0236 | MEDIUM | 5.3 | 0.5% | Jan 16, 2024 | The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX ac... |
| CVE-2024-0235 | MEDIUM | 5.3 | 38.0% | Jan 16, 2024 | The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX ac... |
| CVE-2024-0233 | MEDIUM | 6.1 | 0.4% | Jan 16, 2024 | The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not properly sanitise and escape a p... |
| CVE-2024-0187 | MEDIUM | 6.1 | 0.5% | Jan 16, 2024 | The Community by PeepSo WordPress plugin before 6.3.1.2 does not sanitise and escape various parameters and generated UR... |
| CVE-2024-0582 | HIGH | 7.8 | 12.8% | Jan 16, 2024 | A memory leak flaw was found in the Linux kernel’s io_uring functionality in how a user registers a buffer ring with IOR... |
| CVE-2024-0575 | CRITICAL | 9.8 | 1.1% | Jan 16, 2024 | A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130. It has been classified as critical. This affects t... |
| CVE-2024-0574 | CRITICAL | 9.8 | 1.1% | Jan 16, 2024 | A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130 and classified as critical. Affected by this issue ... |
| CVE-2024-0573 | CRITICAL | 9.8 | 1.1% | Jan 16, 2024 | A vulnerability has been found in Totolink LR1200GB 9.1.0u.6619_B20230130 and classified as critical. Affected by this v... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now