2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-25846 | CRITICAL | 9.1 | 0.8% | Feb 27, 2024 | In the module "Product Catalog (CSV, Excel) Import" (simpleimportproduct) <= 6.7.0 from MyPrestaModules for PrestaShop, ... |
| CVE-2024-25843 | CRITICAL | 9.8 | 0.6% | Feb 27, 2024 | In the module "Import/Update Bulk Product from any Csv/Excel File Pro" (ba_importer) up to version 1.1.28 from Buy Addon... |
| CVE-2024-1926 | CRITICAL | 9.8 | 0.6% | Feb 27, 2024 | A vulnerability was found in SourceCodester Free and Open Source Inventory Management System 1.0. It has been rated as c... |
| CVE-2024-25400 | CRITICAL | 9.8 | 0.7% | Feb 27, 2024 | Subrion CMS 4.2.1 is vulnerable to SQL Injection via ia.core.mysqli.php. NOTE: this is disputed by multiple third partie... |
| CVE-2024-1923 | CRITICAL | 9.8 | 0.8% | Feb 27, 2024 | A vulnerability was found in SourceCodester Simple Student Attendance System 1.0 and classified as critical. Affected by... |
| CVE-2024-1403 | CRITICAL | 9.8 | 3.3% | Feb 27, 2024 | In OpenEdge Authentication Gateway and AdminServer prior to 11.7.19, 12.2.14, 12.8.1 on all platforms supported by the O... |
| CVE-2024-27905 | CRITICAL | 9.1 | 1.5% | Feb 27, 2024 | ** UNSUPPORTED WHEN ASSIGNED ** Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Auror... |
| CVE-2024-1921 | CRITICAL | 9.8 | 0.6% | Feb 27, 2024 | A vulnerability, which was classified as critical, was found in osuuu LightPicture up to 1.2.2. Affected is an unknown f... |
| CVE-2024-1918 | CRITICAL | 9.8 | 2.3% | Feb 27, 2024 | A vulnerability has been found in Byzoro Smart S42 Management Platform up to 20240219 and classified as critical. Affect... |
| CVE-2024-1698 | CRITICAL | 9.8 | 77.6% | Feb 27, 2024 | The NotificationX – Best FOMO, Social Proof, WooCommerce Sales Popup & Notification Bar Plugin With Elementor plugin for... |
| CVE-2024-24095 | CRITICAL | 9.8 | 0.6% | Feb 27, 2024 | Code-projects Simple Stock System 1.0 is vulnerable to SQL Injection. |
| CVE-2024-25247 | CRITICAL | 9.8 | 0.6% | Feb 26, 2024 | SQL Injection vulnerability in /app/api/controller/Store.php in Niushop B2B2C V5 allows attackers to run arbitrary SQL c... |
| CVE-2024-25751 | CRITICAL | 9.8 | 1.0% | Feb 26, 2024 | A Stack Based Buffer Overflow vulnerability in Tenda AC9 v.3.0 with firmware version v.15.03.06.42_multi allows a remote... |
| CVE-2024-25248 | CRITICAL | 9.8 | 0.6% | Feb 26, 2024 | SQL Injection vulnerability in the orderGoodsDelivery() function in Niushop B2B2C V5 allows attackers to run arbitrary S... |
| CVE-2024-24402 | CRITICAL | 9.8 | 3.4% | Feb 26, 2024 | An issue in Nagios XI 2024R1.01 allows a remote attacker to escalate privileges via a crafted script to the /usr/local/n... |
| CVE-2024-24401 | CRITICAL | 9.8 | 45.9% | Feb 26, 2024 | SQL Injection vulnerability in Nagios XI 2024R1.01 allows a remote attacker to execute arbitrary code via a crafted payl... |
| CVE-2024-27456 | CRITICAL | 9.1 | 0.8% | Feb 26, 2024 | rack-cors (aka Rack CORS Middleware) 2.0.1 has 0666 permissions for the .rb files. |
| CVE-2024-27455 | CRITICAL | 9.1 | 0.6% | Feb 26, 2024 | In the Bentley ALIM Web application, certain configuration settings can cause exposure of a user's ALIM session token wh... |
| CVE-2024-27447 | CRITICAL | 9.8 | 0.8% | Feb 26, 2024 | pretix before 2024.1.1 mishandles file validation. |
| CVE-2024-27444 | CRITICAL | 9.8 | 0.8% | Feb 26, 2024 | langchain_experimental (aka LangChain Experimental) in LangChain before 0.1.8 allows an attacker to bypass the CVE-2023-... |
| CVE-2024-25925 | CRITICAL | 9.8 | 0.6% | Feb 26, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in SYSBASICS WooCommerce Easy Checkout Field Editor, Fees ... |
| CVE-2024-25913 | CRITICAL | 9.8 | 0.6% | Feb 26, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Skymoonlabs MoveTo.This issue affects MoveTo: from n/a ... |
| CVE-2024-23605 | CRITICAL | 9.8 | 1.3% | Feb 26, 2024 | A heap-based buffer overflow vulnerability exists in the GGUF library header.n_kv functionality of llama.cpp Commit 18c2... |
| CVE-2024-23496 | CRITICAL | 9.8 | 1.3% | Feb 26, 2024 | A heap-based buffer overflow vulnerability exists in the GGUF library gguf_fread_str functionality of llama.cpp Commit 1... |
| CVE-2024-21836 | CRITICAL | 9.8 | 1.3% | Feb 26, 2024 | A heap-based buffer overflow vulnerability exists in the GGUF library header.n_tensors functionality of llama.cpp Commit... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now