2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-0517HIGH8.8Out of bounds write in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap...
CVE-2024-0599MEDIUM5.4A vulnerability was found in Jspxcms 10.2.0. It has been declared as problematic. Affected by this vulnerability is an u...
CVE-2024-22491MEDIUM5.4A Stored Cross Site Scripting (XSS) vulnerability in beetl-bbs 2.0 allows attackers to run arbitrary code via the post/s...
CVE-2024-0507HIGH8.8An attacker with access to a Management Console user account with the editor role could escalate privileges through a co...
CVE-2024-0200CRITICAL9.8An unsafe reflection vulnerability was identified in GitHub Enterprise Server that could lead to reflection injection. T...
CVE-2024-23347HIGH7.8Prior to v176, when opening a new project Meta Spark Studio would execute scripts defined inside of a package.json file ...
CVE-2024-22628HIGH7.2Budget and Expense Tracker System v1.0 is vulnerable to SQL Injection via /expense_budget/admin/?page=reports/budget&dat...
CVE-2024-22627HIGH7.2Complete Supplier Management System v1.0 is vulnerable to SQL Injection via /Supply_Management_System/admin/edit_distrib...
CVE-2024-22626HIGH7.2Complete Supplier Management System v1.0 is vulnerable to SQL Injection via /Supply_Management_System/admin/edit_retaile...
CVE-2024-22625HIGH7.2Complete Supplier Management System v1.0 is vulnerable to SQL Injection via /Supply_Management_System/admin/edit_categor...
CVE-2024-0579CRITICAL9.8A vulnerability classified as critical was found in Totolink X2000R 1.0.0-B20221212.1452. Affected by this vulnerability...
CVE-2024-0578CRITICAL9.8A vulnerability classified as critical has been found in Totolink LR1200GB 9.1.0u.6619_B20230130. Affected is the functi...
CVE-2024-0577CRITICAL9.8A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130. It has been rated as critical. This issue affects ...
CVE-2024-0576CRITICAL9.8A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130. It has been declared as critical. This vulnerabili...
CVE-2024-0239MEDIUM6.1The Contact Form 7 Connector WordPress plugin before 1.2.3 does not sanitise and escape a parameter before outputting it...
CVE-2024-0238MEDIUM6.1The EventON Premium WordPress plugin before 4.5.6, EventON WordPress plugin before 2.2.8 do not have authorisation in an...
CVE-2024-0237MEDIUM5.3The EventON WordPress plugin through 4.5.8, EventON WordPress plugin before 2.2.7 do not have authorisation in some AJAX...
CVE-2024-0236MEDIUM5.3The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX ac...
CVE-2024-0235MEDIUM5.3The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX ac...
CVE-2024-0233MEDIUM6.1The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not properly sanitise and escape a p...
CVE-2024-0187MEDIUM6.1The Community by PeepSo WordPress plugin before 6.3.1.2 does not sanitise and escape various parameters and generated UR...
CVE-2024-0582HIGH7.8A memory leak flaw was found in the Linux kernel’s io_uring functionality in how a user registers a buffer ring with IOR...
CVE-2024-0575CRITICAL9.8A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130. It has been classified as critical. This affects t...
CVE-2024-0574CRITICAL9.8A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130 and classified as critical. Affected by this issue ...
CVE-2024-0573CRITICAL9.8A vulnerability has been found in Totolink LR1200GB 9.1.0u.6619_B20230130 and classified as critical. Affected by this v...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now