2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-50861 | MEDIUM | 6.1 | 0.8% | Jan 14, 2025 | The ip_mod_dns_key_form.cgi request in GestioIP v3.5.7 is vulnerable to Stored XSS. An attacker can inject malicious cod... |
| CVE-2024-50859 | MEDIUM | 4.8 | 0.8% | Jan 14, 2025 | The ip_import_acl_csv request in GestioIP v3.5.7 is vulnerable to Reflected XSS. When a user uploads an improperly forma... |
| CVE-2024-50858 | HIGH | 8.8 | 1.7% | Jan 14, 2025 | Multiple endpoints in GestioIP v3.5.7 are vulnerable to Cross-Site Request Forgery (CSRF). An attacker can execute actio... |
| CVE-2024-50857 | MEDIUM | 4.8 | 1.2% | Jan 14, 2025 | The ip_do_job request in GestioIP v3.5.7 is vulnerable to Cross-Site Scripting (XSS). It allows data exfiltration and en... |
| CVE-2024-48760 | CRITICAL | 9.8 | 45.1% | Jan 14, 2025 | An issue in GestioIP v3.5.7 allows a remote attacker to execute arbitrary code via the file upload function. The attacke... |
| CVE-2024-45102 | MEDIUM | 6.8 | 0.2% | Jan 14, 2025 | A privilege escalation vulnerability was discovered that could allow a valid, authenticated LXCA user to escalate their ... |
| CVE-2024-10254 | MEDIUM | 4.7 | 0.1% | Jan 14, 2025 | A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could al... |
| CVE-2024-10253 | MEDIUM | 4.7 | 0.1% | Jan 14, 2025 | A potential TOCTOU vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a loc... |
| CVE-2024-5175 | — | — | — | Jan 14, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-55945 | MEDIUM | 6.5 | 0.2% | Jan 14, 2025 | TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in... |
| CVE-2024-55924 | HIGH | 8 | 0.3% | Jan 14, 2025 | TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in... |
| CVE-2024-55923 | MEDIUM | 4.3 | 0.2% | Jan 14, 2025 | TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in... |
| CVE-2024-55922 | MEDIUM | 5.4 | 0.2% | Jan 14, 2025 | TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in... |
| CVE-2024-55921 | HIGH | 8.8 | 0.4% | Jan 14, 2025 | TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in... |
| CVE-2024-55920 | MEDIUM | 4.3 | 0.2% | Jan 14, 2025 | TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in... |
| CVE-2024-55894 | MEDIUM | 5.4 | 0.2% | Jan 14, 2025 | TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in... |
| CVE-2024-55893 | MEDIUM | 4.3 | 0.2% | Jan 14, 2025 | TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in... |
| CVE-2024-55892 | MEDIUM | 6.1 | 0.2% | Jan 14, 2025 | TYPO3 is a free and open source Content Management Framework. Applications that use `TYPO3\CMS\Core\Http\Uri` to parse e... |
| CVE-2024-55891 | MEDIUM | 5.3 | 0.3% | Jan 14, 2025 | TYPO3 is a free and open source Content Management Framework. It has been discovered that the install tool password has ... |
| CVE-2024-53263 | HIGH | 8.5 | 1.0% | Jan 14, 2025 | Git LFS is a Git extension for versioning large files. When Git LFS requests credentials from Git for a remote host, it ... |
| CVE-2024-48858 | HIGH | 7.5 | 0.6% | Jan 14, 2025 | Improper input validation in the PCX image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated att... |
| CVE-2024-56374 | HIGH | 7.5 | 1.9% | Jan 14, 2025 | An issue was discovered in Django 5.1 before 5.1.5, 5.0 before 5.0.11, and 4.2 before 4.2.18. Lack of upper-bound limit ... |
| CVE-2024-52006 | HIGH | 7.5 | 1.0% | Jan 14, 2025 | Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-... |
| CVE-2024-50349 | MEDIUM | 4.7 | 0.6% | Jan 14, 2025 | Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-... |
| CVE-2024-50338 | HIGH | 7.4 | 3.1% | Jan 14, 2025 | Git Credential Manager (GCM) is a secure Git credential helper built on .NET that runs on Windows, macOS, and Linux. The... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now