2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-35122LOW2.8IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to a file level local denial of service caused by an insufficient authority r...
CVE-2024-45077MEDIUM6.5IBM Maximo Asset Management 7.6.1.3 MXAPIASSET API is vulnerable to unrestricted file upload which allows authenticated ...
CVE-2024-41757MEDIUM5.9IBM Concert Software 1.0.0 and 1.0.1 could allow a remote attacker to obtain sensitive information, caused by the failur...
CVE-2024-40706MEDIUM4.3IBM InfoSphere Information Server 11.7 could allow a remote user to obtain sensitive version information that could aid ...
CVE-2024-40693HIGH8IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the content of the fil...
CVE-2024-25034HIGH8.8IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the type of file in th...
CVE-2024-13698MEDIUM6.5The Jobify - Job Board WordPress Theme for WordPress is vulnerable to unauthorized access and modification of data due t...
CVE-2024-9499HIGH8.6DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Win 98SE Dev Kit installer can lea...
CVE-2024-9498HIGH8.6DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress SDK installer can lead to p...
CVE-2024-9497HIGH8.6DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress 4 SDK installer can lead to...
CVE-2024-9496HIGH8.6DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Dev Kit installer can lead ...
CVE-2024-9495HIGH8.6DLL hijacking vulnerabilities, caused by an uncontrolled search path in the CP210x VCP Windows installer can lead t...
CVE-2024-9494HIGH8.6DLL hijacking vulnerabilities, caused by an uncontrolled search path in the  CP210 VCP Win 2k installer can lead ...
CVE-2024-9493HIGH8.6DLL hijacking vulnerabilities, caused by an uncontrolled search path in the  ToolStick installer can lead to privileg...
CVE-2024-9492HIGH8.6DLL hijacking vulnerabilities, caused by an uncontrolled search path in Flash Programming Utility installer can lead to ...
CVE-2024-9491HIGH8.6DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to pri...
CVE-2024-9490HIGH8.6DLL hijacking vulnerabilities, caused by an uncontrolled search path in Silicon Labs (8-bit) IDE installer can lead to p...
CVE-2024-57184MEDIUM5.5An issue was discovered in GPAC v0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer overflow in gf_m2ts_p...
CVE-2024-41739HIGH8.8IBM Cognos Dashboards 4.0.7 and 5.0.0 on Cloud Pak for Data could allow a remote attacker to perform unauthorized action...
CVE-2024-11913MEDIUM5.4The Activity Plus Reloaded for BuddyPress plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all...
CVE-2024-10324MEDIUM4.3The RomethemeKit For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up t...
CVE-2024-13594MEDIUM6.5The Simple Downloads List plugin for WordPress is vulnerable to SQL Injection via the 'category' attribute of the 'neofi...
CVE-2024-13572MEDIUM5.4The Precious Metals Charts and Widgets for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting v...
CVE-2024-13542MEDIUM5.4The WP Google Street View (with 360° virtual tour) & Google maps + Local SEO plugin for WordPress is vulnerable to Store...
CVE-2024-13409HIGH8.8The Post Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget plugin for WordPress is v...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now