2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-6466 | MEDIUM | 5.3 | 0.3% | Jan 21, 2025 | NEC Corporation's WebSAM DeploymentManager v6.0 to v6.80 allows an attacker to reset configurations or restart products ... |
| CVE-2024-13404 | MEDIUM | 6.1 | 0.3% | Jan 21, 2025 | The Link Library plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'searchll' parameter in al... |
| CVE-2024-12104 | HIGH | 7.5 | 0.3% | Jan 21, 2025 | The Visual Website Collaboration, Feedback & Project Management – Atarim plugin for WordPress is vulnerable to unauthori... |
| CVE-2024-12005 | MEDIUM | 6.1 | 0.2% | Jan 21, 2025 | The WP-BibTeX plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.0... |
| CVE-2024-10936 | HIGH | 8.8 | 1.1% | Jan 21, 2025 | The String locator plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.6.... |
| CVE-2024-13536 | MEDIUM | 5.3 | 0.4% | Jan 21, 2025 | The 1003 Mortgage Application plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and incl... |
| CVE-2024-45091 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.24, 7.1 through 7.1.2.10, and 7.2 through 7.2.3.13 stores potentially sensi... |
| CVE-2024-13454 | MEDIUM | 5.3 | 0.1% | Jan 20, 2025 | Weak encryption algorithm in Easy-RSA version 3.0.5 through 3.1.7 allows a local attacker to more easily bruteforce the ... |
| CVE-2024-22349 | LOW | 3.3 | 0.2% | Jan 20, 2025 | IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 allows web pages to be stored locally which c... |
| CVE-2024-22348 | HIGH | 7.5 | 0.4% | Jan 20, 2025 | IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 uses Cross-Origin Resource Sharing (CORS) whi... |
| CVE-2024-22347 | HIGH | 7.5 | 0.3% | Jan 20, 2025 | IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 uses weaker than expected cryptographic algor... |
| CVE-2024-51738 | HIGH | 8.1 | 0.6% | Jan 20, 2025 | Sunshine is a self-hosted game stream host for Moonlight. In 0.23.1 and earlier, Sunshine's pairing protocol implementat... |
| CVE-2024-45647 | CRITICAL | 9.8 | 0.3% | Jan 20, 2025 | IBM Security Verify Access 10.0.0 through 10.0.8 and IBM Security Verify Access Docker 10.0.0 through 10.0.8 could allow... |
| CVE-2024-13176 | MEDIUM | 4.1 | 0.6% | Jan 20, 2025 | Issue summary: A timing side-channel which could potentially allow recovering the private key exists in the ECDSA signat... |
| CVE-2024-13524 | MEDIUM | 4.5 | 0.2% | Jan 20, 2025 | A vulnerability has been found in obsproject OBS Studio up to 30.0.2 on Windows and classified as problematic. Affected ... |
| CVE-2024-41783 | CRITICAL | 9.1 | 0.6% | Jan 19, 2025 | IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow a privileged user to inje... |
| CVE-2024-41743 | HIGH | 7.5 | 0.6% | Jan 19, 2025 | IBM TXSeries for Multiplatforms 10.1 could allow a remote attacker to cause a denial of service using persistent connect... |
| CVE-2024-41742 | HIGH | 7.5 | 0.7% | Jan 19, 2025 | IBM TXSeries for Multiplatforms 10.1 is vulnerable to a denial of service, caused by improper enforcement of the timeout... |
| CVE-2024-38337 | CRITICAL | 9.1 | 0.5% | Jan 19, 2025 | IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow an unauthorized attacker ... |
| CVE-2024-57929 | HIGH | 7.1 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: dm array: fix releasing a faulty array block twice ... |
| CVE-2024-57928 | HIGH | 7.1 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfs: Fix enomem handling in buffered reads If ne... |
| CVE-2024-57927 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: nfs: Fix oops in nfs_netfs_init_request() when copy... |
| CVE-2024-57926 | HIGH | 7.8 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/mediatek: Set private->all_drm_private[i]->drm ... |
| CVE-2024-57925 | HIGH | 7.1 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix a missing return value check bug In the... |
| CVE-2024-57924 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: fs: relax assertions on failure to encode file hand... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now