2024 CVE Vulnerabilities
39,220 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-49761 | HIGH | 7.5 | 1.4% | Oct 28, 2024 | REXML is an XML toolkit for Ruby. The REXML gem before 3.3.9 has a ReDoS vulnerability when it parses an XML that has ma... |
| CVE-2024-45802 | HIGH | 7.5 | 45.3% | Oct 28, 2024 | Squid is an open source caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to Input Validation, Premat... |
| CVE-2024-10455 | HIGH | 7.5 | 0.4% | Oct 28, 2024 | Reachable Assertion in BPv7 parser in µD3TN v0.14.0 allows attacker to disrupt service via malformed Extension Block |
| CVE-2024-50574 | HIGH | 7.5 | 0.6% | Oct 28, 2024 | In JetBrains YouTrack before 2024.3.47707 potential ReDoS exploit was possible via email header parsing in Helpdesk func... |
| CVE-2024-50488 | HIGH | 8.8 | 0.9% | Oct 28, 2024 | Authentication Bypass Using an Alternate Path or Channel vulnerability in yespbs Token Login token-login allows Authenti... |
| CVE-2024-10447 | HIGH | 8.8 | 0.5% | Oct 28, 2024 | A vulnerability classified as critical was found in Project Worlds Online Time Table Generator 1.0. Affected by this vul... |
| CVE-2024-50442 | HIGH | 7.2 | 0.5% | Oct 28, 2024 | Improper Restriction of XML External Entity Reference vulnerability in WP Royal Royal Elementor Addons royal-elementor-a... |
| CVE-2024-50416 | HIGH | 8.8 | 0.5% | Oct 28, 2024 | Deserialization of Untrusted Data vulnerability in WPClever WPC Shop as a Customer for WooCommerce wpc-shop-as-customer ... |
| CVE-2024-50408 | HIGH | 8.8 | 0.5% | Oct 28, 2024 | Deserialization of Untrusted Data vulnerability in Bob Namaste! LMS namaste-lms allows Object Injection.This issue affec... |
| CVE-2024-48074 | HIGH | 8 | 0.7% | Oct 28, 2024 | An authorized RCE vulnerability exists in the DrayTek Vigor2960 router version 1.4.4, where an attacker can place a mali... |
| CVE-2024-10446 | HIGH | 7.2 | 0.5% | Oct 28, 2024 | A vulnerability classified as critical has been found in Project Worlds Online Time Table Generator 1.0. Affected is an ... |
| CVE-2024-9162 | HIGH | 7.2 | 2.7% | Oct 28, 2024 | The All-in-One WP Migration and Backup plugin for WordPress is vulnerable to arbitrary PHP Code Injection due to missing... |
| CVE-2024-10439 | HIGH | 7.5 | 0.4% | Oct 28, 2024 | The eHRD CTMS from Sunnet has an Insecure Direct Object Reference (IDOR) vulnerability, allowing unauthenticated remote ... |
| CVE-2024-10438 | HIGH | 7.5 | 0.5% | Oct 28, 2024 | The eHRD CTMS from Sunnet has an Authentication Bypass vulnerability, allowing unauthenticated remote attackers to bypas... |
| CVE-2024-50067 | HIGH | 7.8 | 0.2% | Oct 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: uprobe: avoid out-of-bounds memory access of fetchi... |
| CVE-2024-50616 | HIGH | 8.8 | 0.4% | Oct 27, 2024 | Ironman PowerShell Universal 5.x before 5.0.12 allows an authenticated attacker to elevate their privileges and view job... |
| CVE-2024-50611 | HIGH | 7.2 | 0.8% | Oct 27, 2024 | CycloneDX cdxgen through 10.10.7, when run against an untrusted codebase, may execute code contained within build-relate... |
| CVE-2024-10429 | HIGH | 7.2 | 17.2% | Oct 27, 2024 | A vulnerability classified as critical has been found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. Affected... |
| CVE-2024-10428 | HIGH | 7.2 | 14.1% | Oct 27, 2024 | A vulnerability was found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. It has been rated as critical. This ... |
| CVE-2024-10417 | HIGH | 8.8 | 0.5% | Oct 27, 2024 | A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been classified as critical. Affecte... |
| CVE-2024-10416 | HIGH | 8.8 | 0.5% | Oct 27, 2024 | A vulnerability was found in code-projects Blood Bank Management System 1.0 and classified as critical. This issue affec... |
| CVE-2024-10415 | HIGH | 8.8 | 0.6% | Oct 27, 2024 | A vulnerability has been found in code-projects Blood Bank Management System 1.0 and classified as critical. This vulner... |
| CVE-2024-10411 | HIGH | 7.2 | 0.4% | Oct 27, 2024 | A vulnerability was found in SourceCodester Online Hotel Reservation System 1.0. It has been classified as critical. Aff... |
| CVE-2024-10410 | HIGH | 7.2 | 1.1% | Oct 27, 2024 | A vulnerability classified as critical was found in SourceCodester Online Hotel Reservation System 1.0. Affected by this... |
| CVE-2024-10409 | HIGH | 8.8 | 0.5% | Oct 27, 2024 | A vulnerability was found in code-projects Blood Bank Management 1.0 and classified as critical. This issue affects some... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now