2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27565 | CRITICAL | 9.8 | 0.7% | Mar 5, 2024 | A Server-Side Request Forgery (SSRF) in weixin.php of ChatGPT-wechat-personal commit a0857f6 allows attackers to force t... |
| CVE-2024-26339 | CRITICAL | 9.1 | 0.8% | Mar 5, 2024 | swftools v0.9.2 was discovered to contain a strcpy parameter overlap via /home/swftools/src/swfc+0x48318a. |
| CVE-2024-2048 | CRITICAL | 9.8 | 0.4% | Mar 4, 2024 | Vault and Vault Enterprise (“Vault”) TLS certificate auth method did not correctly validate client certificates when con... |
| CVE-2024-27198 | CRITICAL | 9.8 | 99.9% | Mar 4, 2024 | In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible |
| CVE-2024-22463 | CRITICAL | 9.1 | 0.3% | Mar 4, 2024 | Dell PowerScale OneFS 8.2.x through 9.6.0.x contains a use of a broken or risky cryptographic algorithm vulnerability. A... |
| CVE-2024-20018 | CRITICAL | 9.8 | 1.0% | Mar 4, 2024 | In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local escal... |
| CVE-2024-20017 | CRITICAL | 9.8 | 46.3% | Mar 4, 2024 | In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to remote cod... |
| CVE-2024-2156 | CRITICAL | 9.8 | 0.6% | Mar 4, 2024 | A vulnerability was found in SourceCodester Best POS Management System 1.0. It has been classified as critical. Affected... |
| CVE-2024-2154 | CRITICAL | 9.8 | 0.6% | Mar 4, 2024 | A vulnerability has been found in SourceCodester Online Mobile Management Store 1.0 and classified as critical. This vul... |
| CVE-2024-2153 | CRITICAL | 9.8 | 0.7% | Mar 4, 2024 | A vulnerability, which was classified as critical, was found in SourceCodester Online Mobile Management Store 1.0. This ... |
| CVE-2024-2152 | CRITICAL | 9.8 | 0.6% | Mar 4, 2024 | A vulnerability, which was classified as critical, has been found in SourceCodester Online Mobile Management Store 1.0. ... |
| CVE-2024-2147 | CRITICAL | 9.8 | 0.8% | Mar 3, 2024 | A vulnerability was found in SourceCodester Online Mobile Management Store 1.0. It has been rated as critical. Affected ... |
| CVE-2024-25847 | CRITICAL | 9.8 | 0.5% | Mar 3, 2024 | SQL Injection vulnerability in MyPrestaModules "Product Catalog (CSV, Excel) Import" (simpleimportproduct) modules for P... |
| CVE-2024-24302 | CRITICAL | 9.8 | 0.9% | Mar 3, 2024 | An issue was discovered in Tunis Soft "Product Designer" (productdesigner) module for PrestaShop before version 1.178.36... |
| CVE-2024-27747 | CRITICAL | 9.8 | 23.6% | Mar 1, 2024 | File Upload vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a cra... |
| CVE-2024-27746 | CRITICAL | 9.8 | 12.9% | Mar 1, 2024 | SQL Injection vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a c... |
| CVE-2024-27101 | CRITICAL | 9.1 | 0.5% | Mar 1, 2024 | SpiceDB is an open source, Google Zanzibar-inspired database for creating and managing security-critical application per... |
| CVE-2024-21767 | CRITICAL | 9.4 | 0.6% | Mar 1, 2024 | A remote attacker may be able to bypass access control of Commend WS203VICM by creating a malicious request. |
| CVE-2024-2077 | CRITICAL | 9.8 | 0.7% | Mar 1, 2024 | A vulnerability classified as critical has been found in SourceCodester Simple Online Bidding System 1.0. This affects a... |
| CVE-2024-27298 | CRITICAL | 10 | 1.0% | Mar 1, 2024 | parse-server is a Parse Server for Node.js / Express. This vulnerability allows SQL injection when Parse Server is confi... |
| CVE-2024-1624 | CRITICAL | 9.4 | 2.1% | Mar 1, 2024 | An OS Command Injection vulnerability affecting documentation server on 3DEXPERIENCE from Release 3DEXPERIENCE R2022x th... |
| CVE-2024-2067 | CRITICAL | 9.8 | 0.5% | Mar 1, 2024 | A vulnerability was found in SourceCodester Computer Inventory System 1.0. It has been declared as critical. This vulner... |
| CVE-2024-2057 | CRITICAL | 9.8 | 0.6% | Mar 1, 2024 | A vulnerability was found in LangChain langchain_community 0.0.26. It has been classified as critical. Affected is the f... |
| CVE-2024-25091 | CRITICAL | 9.1 | 0.5% | Mar 1, 2024 | Protection mechanism failure issue exists in RevoWorks SCVX prior to scvimage4.10.21_1013 (when using 'VirusChecker' or ... |
| CVE-2024-25293 | CRITICAL | 9.3 | 1.0% | Mar 1, 2024 | mjml-app versions 3.0.4 and 3.1.0-beta were discovered to contain a remote code execution (RCE) via the href attribute. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now