2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-23752 | CRITICAL | 9.8 | 1.0% | Jan 22, 2024 | GenerateSDFPipeline in synthetic_dataframe in PandasAI (aka pandas-ai) through 1.5.17 allows attackers to trigger the ge... |
| CVE-2024-23751 | CRITICAL | 9.8 | 0.7% | Jan 22, 2024 | LlamaIndex (aka llama_index) through 0.9.34 allows SQL injection via the Text-to-SQL feature in NLSQLTableQueryEngine, S... |
| CVE-2024-23731 | CRITICAL | 9.8 | 1.1% | Jan 21, 2024 | The OpenAPI loader in Embedchain before 0.1.57 allows attackers to execute arbitrary code, related to the openapi.py yam... |
| CVE-2024-23730 | CRITICAL | 9.8 | 1.2% | Jan 21, 2024 | The OpenAPI and ChatGPT plugin loaders in LlamaHub (aka llama-hub) before 0.0.67 allow attackers to execute arbitrary co... |
| CVE-2024-0769 | CRITICAL | 9.8 | 82.7% | Jan 21, 2024 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DIR-859 1.06B01. It has been rated as critical. Affe... |
| CVE-2024-23687 | CRITICAL | 9.1 | 0.6% | Jan 19, 2024 | Hard-coded credentials in FOLIO mod-data-export-spring versions before 1.5.4 and from 2.0.0 to 2.0.2 allows unauthentica... |
| CVE-2024-0739 | CRITICAL | 9.8 | 0.8% | Jan 19, 2024 | A vulnerability, which was classified as critical, was found in Hecheng Leadshop up to 1.4.20. Affected is an unknown fu... |
| CVE-2024-0738 | CRITICAL | 9.8 | 0.8% | Jan 19, 2024 | A vulnerability, which was classified as critical, has been found in 个人开源 mldong 1.0. This issue affects the function Ex... |
| CVE-2024-23679 | CRITICAL | 9.8 | 0.8% | Jan 19, 2024 | Enonic XP versions less than 7.7.4 are vulnerable to a session fixation issue. An remote and unauthenticated attacker ca... |
| CVE-2024-0735 | CRITICAL | 9.8 | 0.7% | Jan 19, 2024 | A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0. It has been rated as critical.... |
| CVE-2024-0734 | CRITICAL | 9.8 | 0.5% | Jan 19, 2024 | A vulnerability was found in Smsot up to 2.12. It has been declared as critical. Affected by this vulnerability is an un... |
| CVE-2024-0733 | CRITICAL | 9.8 | 0.5% | Jan 19, 2024 | A vulnerability was found in Smsot up to 2.12. It has been classified as critical. Affected is an unknown function of th... |
| CVE-2024-22211 | CRITICAL | 9.8 | 1.1% | Jan 19, 2024 | FreeRDP is a set of free and open source remote desktop protocol library and clients. In affected versions an integer ov... |
| CVE-2024-0730 | CRITICAL | 9.8 | 0.6% | Jan 19, 2024 | A vulnerability, which was classified as critical, was found in Project Worlds Online Time Table Generator 1.0. This aff... |
| CVE-2024-0729 | CRITICAL | 9.8 | 0.6% | Jan 19, 2024 | A vulnerability, which was classified as critical, has been found in ForU CMS up to 2020-06-23. Affected by this issue i... |
| CVE-2024-0728 | CRITICAL | 9.8 | 0.7% | Jan 19, 2024 | A vulnerability classified as problematic was found in ForU CMS up to 2020-06-23. Affected by this vulnerability is an u... |
| CVE-2024-0714 | CRITICAL | 9.8 | 1.6% | Jan 19, 2024 | A vulnerability was found in MiczFlor RPi-Jukebox-RFID up to 2.5.0. It has been rated as critical. Affected by this issu... |
| CVE-2024-0712 | CRITICAL | 9.8 | 3.9% | Jan 19, 2024 | A vulnerability was found in Byzoro Smart S150 Management Platform V31R02B15. It has been classified as critical. Affect... |
| CVE-2024-22415 | CRITICAL | 9.8 | 0.5% | Jan 18, 2024 | jupyter-lsp is a coding assistance tool for JupyterLab (code navigation + hover suggestions + linters + autocompletion +... |
| CVE-2024-22419 | CRITICAL | 9.8 | 0.8% | Jan 18, 2024 | Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine. The `concat` built-in can write over the b... |
| CVE-2024-22212 | CRITICAL | 9.8 | 0.8% | Jan 18, 2024 | Nextcloud Global Site Selector is a tool which allows you to run multiple small Nextcloud instances and redirect users t... |
| CVE-2024-22317 | CRITICAL | 9.1 | 1.0% | Jan 18, 2024 | IBM App Connect Enterprise 11.0.0.1 through 11.0.0.24 and 12.0.1.0 through 12.0.11.0 could allow a remote attacker to ob... |
| CVE-2024-0655 | CRITICAL | 9.8 | 0.7% | Jan 18, 2024 | A vulnerability has been found in Novel-Plus 4.3.0-RC1 and classified as critical. Affected by this vulnerability is an ... |
| CVE-2024-0649 | CRITICAL | 9.8 | 0.5% | Jan 17, 2024 | A vulnerability was found in ZhiHuiYun up to 4.4.13 and classified as critical. This issue affects the function download... |
| CVE-2024-0648 | CRITICAL | 9.8 | 0.7% | Jan 17, 2024 | A vulnerability has been found in Yunyou CMS up to 2.2.6 and classified as critical. This vulnerability affects unknown ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now