2024 CVE Vulnerabilities
39,217 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-7096 | MEDIUM | 5.4 | 0.6% | May 30, 2025 | A privilege escalation vulnerability exists in multiple WSO2 products due to a business logic flaw in SOAP admin service... |
| CVE-2024-53423 | MEDIUM | 5.6 | 0.2% | May 29, 2025 | An issue in Open Network Foundation ONOS v2.7.0 allows attackers to cause a Denial of Service (DoS) via supplying crafte... |
| CVE-2024-22653 | MEDIUM | 4.8 | 0.2% | May 29, 2025 | yasm commit 9defefae was discovered to contain a NULL pointer dereference via the yasm_section_bcs_append function at se... |
| CVE-2024-57338 | MEDIUM | 6.5 | 0.3% | May 28, 2025 | An arbitrary file upload vulnerability in M2Soft CROWNIX Report & ERS v5.x to v5.5.14.1070, v7.x to v7.4.3.960, and v8.x... |
| CVE-2024-57337 | MEDIUM | 6.5 | 0.3% | May 28, 2025 | An arbitrary file upload vulnerability in the opcode 500 functionality of M2Soft CROWNIX Report & ERS v5.x to v5.5.14.10... |
| CVE-2024-57336 | MEDIUM | 6.5 | 0.2% | May 28, 2025 | Incorrect access control in M2Soft CROWNIX Report & ERS affected v7.x to v7.4.3.599 and v8.x to v8.0.3.79 allows unautho... |
| CVE-2024-47057 | MEDIUM | 5.3 | 0.3% | May 28, 2025 | SummaryThis advisory addresses a security vulnerability in Mautic related to the "Forget your password" functionality. T... |
| CVE-2024-47055 | MEDIUM | 4.3 | 0.2% | May 28, 2025 | SummaryThis advisory addresses a security vulnerability in Mautic related to the segment cloning functionality. This vul... |
| CVE-2024-47056 | MEDIUM | 5.1 | 0.1% | May 28, 2025 | SummaryThis advisory addresses a security vulnerability in Mautic where sensitive .env configuration files may be direct... |
| CVE-2024-54020 | MEDIUM | 4.3 | 0.2% | May 28, 2025 | A missing authorization in Fortinet FortiManager versions 7.2.0 through 7.2.1, and versions 7.0.0 through 7.0.7 may allo... |
| CVE-2024-45094 | MEDIUM | 5.4 | 0.2% | May 27, 2025 | IBM DS8900F and DS8A00 Hardware Management Console (HMC) is vulnerable to stored cross-site scripting. This vulnerabilit... |
| CVE-2024-11185 | MEDIUM | 6.5 | 0.2% | May 27, 2025 | On affected platforms running Arista EOS, ingress traffic on Layer 2 ports may, under certain conditions, be improperly ... |
| CVE-2024-49197 | MEDIUM | 6.5 | 0.2% | May 27, 2025 | An issue was discovered in Wi-Fi in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1... |
| CVE-2024-56193 | MEDIUM | 5.1 | 0.1% | May 27, 2025 | There is a possible disclosure of Bluetooth adapter details due to a permissions bypass. This could lead to local inform... |
| CVE-2024-47090 | MEDIUM | 6.1 | 0.2% | May 27, 2025 | Improper neutralization of input in Nagvis before version 1.9.47 which can lead to XSS |
| CVE-2024-13427 | MEDIUM | 6.4 | 0.3% | May 24, 2025 | The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Stored Cross-Site Scri... |
| CVE-2024-51102 | MEDIUM | 4.4 | 0.2% | May 23, 2025 | PHPGURUKUL Student Management System using PHP and MySQL v1 was discovered to contain multiple SQL injection vulnerabili... |
| CVE-2024-51103 | MEDIUM | 6.5 | 0.3% | May 23, 2025 | PHPGURUKUL Student Management System using PHP and MySQL v1 was discovered to contain multiple SQL injection vulnerabili... |
| CVE-2024-51099 | MEDIUM | 6.1 | 0.3% | May 23, 2025 | A reflected cross-site scripting (XSS) vulnerability in the component mcgs/download-medical-cards.php of PHPGURUKUL Medi... |
| CVE-2024-48704 | MEDIUM | 6.1 | 0.2% | May 23, 2025 | Phpgurukul Medical Card Generation System v1.0 is vulnerable to HTML Injection in admin/contactus.php via the parameter ... |
| CVE-2024-51108 | MEDIUM | 5.4 | 0.2% | May 23, 2025 | Multiple stored cross-site scripting (XSS) vulnerabilities in the component /admin/card-bwdates-report.php of PHPGURUKUL... |
| CVE-2024-51107 | MEDIUM | 4.8 | 0.2% | May 23, 2025 | Multiple stored cross-site scripting (XSS) vulnerabilities in the component /mcgs/admin/contactus.php of PHPGURUKUL Medi... |
| CVE-2024-48702 | MEDIUM | 5.4 | 0.2% | May 23, 2025 | PHPGurukul Old Age Home Management System v1.0 is vulnerable to HTML Injection via the searchdata parameter. |
| CVE-2024-5962 | MEDIUM | 6.1 | 0.2% | May 22, 2025 | A reflected cross-site scripting (XSS) vulnerability exists in the authentication endpoint of multiple WSO2 products due... |
| CVE-2024-7487 | MEDIUM | 5.8 | 0.3% | May 22, 2025 | An improper authentication vulnerability exists in WSO2 Identity Server 7.0.0 due to an implementation flaw that allows ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now