2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-35122 | LOW | 2.8 | 0.2% | Jan 24, 2025 | IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to a file level local denial of service caused by an insufficient authority r... |
| CVE-2024-45077 | MEDIUM | 6.5 | 0.3% | Jan 24, 2025 | IBM Maximo Asset Management 7.6.1.3 MXAPIASSET API is vulnerable to unrestricted file upload which allows authenticated ... |
| CVE-2024-41757 | MEDIUM | 5.9 | 0.3% | Jan 24, 2025 | IBM Concert Software 1.0.0 and 1.0.1 could allow a remote attacker to obtain sensitive information, caused by the failur... |
| CVE-2024-40706 | MEDIUM | 4.3 | 0.4% | Jan 24, 2025 | IBM InfoSphere Information Server 11.7 could allow a remote user to obtain sensitive version information that could aid ... |
| CVE-2024-40693 | HIGH | 8 | 0.4% | Jan 24, 2025 | IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the content of the fil... |
| CVE-2024-25034 | HIGH | 8.8 | 0.4% | Jan 24, 2025 | IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the type of file in th... |
| CVE-2024-13698 | MEDIUM | 6.5 | 0.3% | Jan 24, 2025 | The Jobify - Job Board WordPress Theme for WordPress is vulnerable to unauthorized access and modification of data due t... |
| CVE-2024-9499 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Win 98SE Dev Kit installer can lea... |
| CVE-2024-9498 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress SDK installer can lead to p... |
| CVE-2024-9497 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress 4 SDK installer can lead to... |
| CVE-2024-9496 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Dev Kit installer can lead ... |
| CVE-2024-9495 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the CP210x VCP Windows installer can lead t... |
| CVE-2024-9494 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the CP210 VCP Win 2k installer can lead ... |
| CVE-2024-9493 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the ToolStick installer can lead to privileg... |
| CVE-2024-9492 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in Flash Programming Utility installer can lead to ... |
| CVE-2024-9491 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to pri... |
| CVE-2024-9490 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in Silicon Labs (8-bit) IDE installer can lead to p... |
| CVE-2024-57184 | MEDIUM | 5.5 | 0.3% | Jan 24, 2025 | An issue was discovered in GPAC v0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer overflow in gf_m2ts_p... |
| CVE-2024-41739 | HIGH | 8.8 | 0.4% | Jan 24, 2025 | IBM Cognos Dashboards 4.0.7 and 5.0.0 on Cloud Pak for Data could allow a remote attacker to perform unauthorized action... |
| CVE-2024-11913 | MEDIUM | 5.4 | 0.2% | Jan 24, 2025 | The Activity Plus Reloaded for BuddyPress plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all... |
| CVE-2024-10324 | MEDIUM | 4.3 | 0.3% | Jan 24, 2025 | The RomethemeKit For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up t... |
| CVE-2024-13594 | MEDIUM | 6.5 | 0.4% | Jan 24, 2025 | The Simple Downloads List plugin for WordPress is vulnerable to SQL Injection via the 'category' attribute of the 'neofi... |
| CVE-2024-13572 | MEDIUM | 5.4 | 0.2% | Jan 24, 2025 | The Precious Metals Charts and Widgets for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting v... |
| CVE-2024-13542 | MEDIUM | 5.4 | 0.2% | Jan 24, 2025 | The WP Google Street View (with 360° virtual tour) & Google maps + Local SEO plugin for WordPress is vulnerable to Store... |
| CVE-2024-13409 | HIGH | 8.8 | 0.8% | Jan 24, 2025 | The Post Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget plugin for WordPress is v... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now