2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-50861MEDIUM6.1The ip_mod_dns_key_form.cgi request in GestioIP v3.5.7 is vulnerable to Stored XSS. An attacker can inject malicious cod...
CVE-2024-50859MEDIUM4.8The ip_import_acl_csv request in GestioIP v3.5.7 is vulnerable to Reflected XSS. When a user uploads an improperly forma...
CVE-2024-50858HIGH8.8Multiple endpoints in GestioIP v3.5.7 are vulnerable to Cross-Site Request Forgery (CSRF). An attacker can execute actio...
CVE-2024-50857MEDIUM4.8The ip_do_job request in GestioIP v3.5.7 is vulnerable to Cross-Site Scripting (XSS). It allows data exfiltration and en...
CVE-2024-48760CRITICAL9.8An issue in GestioIP v3.5.7 allows a remote attacker to execute arbitrary code via the file upload function. The attacke...
CVE-2024-45102MEDIUM6.8A privilege escalation vulnerability was discovered that could allow a valid, authenticated LXCA user to escalate their ...
CVE-2024-10254MEDIUM4.7A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could al...
CVE-2024-10253MEDIUM4.7A potential TOCTOU vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a loc...
CVE-2024-5175——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-55945MEDIUM6.5TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in...
CVE-2024-55924HIGH8TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in...
CVE-2024-55923MEDIUM4.3TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in...
CVE-2024-55922MEDIUM5.4TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in...
CVE-2024-55921HIGH8.8TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in...
CVE-2024-55920MEDIUM4.3TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in...
CVE-2024-55894MEDIUM5.4TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in...
CVE-2024-55893MEDIUM4.3TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user in...
CVE-2024-55892MEDIUM6.1TYPO3 is a free and open source Content Management Framework. Applications that use `TYPO3\CMS\Core\Http\Uri` to parse e...
CVE-2024-55891MEDIUM5.3TYPO3 is a free and open source Content Management Framework. It has been discovered that the install tool password has ...
CVE-2024-53263HIGH8.5Git LFS is a Git extension for versioning large files. When Git LFS requests credentials from Git for a remote host, it ...
CVE-2024-48858HIGH7.5Improper input validation in the PCX image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated att...
CVE-2024-56374HIGH7.5An issue was discovered in Django 5.1 before 5.1.5, 5.0 before 5.0.11, and 4.2 before 4.2.18. Lack of upper-bound limit ...
CVE-2024-52006HIGH7.5Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-...
CVE-2024-50349MEDIUM4.7Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-...
CVE-2024-50338HIGH7.4Git Credential Manager (GCM) is a secure Git credential helper built on .NET that runs on Windows, macOS, and Linux. The...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now