2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-10351 | HIGH | 8.8 | 0.8% | Oct 25, 2024 | A vulnerability was found in Tenda RX9 Pro 22.03.02.20. It has been rated as critical. This issue affects the function s... |
| CVE-2024-49359 | HIGH | 7.5 | 1.0% | Oct 24, 2024 | ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all ... |
| CVE-2024-49357 | HIGH | 7.5 | 20.6% | Oct 24, 2024 | ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all ... |
| CVE-2024-7763 | HIGH | 7.5 | 0.6% | Oct 24, 2024 | In WhatsUp Gold versions released before 2024.0.0, an Authentication Bypass issue exists which allows an attacker to o... |
| CVE-2024-48931 | HIGH | 7.5 | 0.7% | Oct 24, 2024 | ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all ... |
| CVE-2024-48423 | HIGH | 7.8 | 0.3% | Oct 24, 2024 | An issue in assimp v.5.4.3 allows a local attacker to execute arbitrary code via the CallbackToLogRedirector function wi... |
| CVE-2024-48208 | HIGH | 8.6 | 1.5% | Oct 24, 2024 | pure-ftpd before 1.0.52 is vulnerable to Buffer Overflow. There is an out of bounds read in the domlsd() function of the... |
| CVE-2024-47881 | HIGH | 8.8 | 0.7% | Oct 24, 2024 | OpenRefine is a free, open source tool for working with messy data. Starting in version 3.4-beta and prior to version 3.... |
| CVE-2024-47879 | HIGH | 8.8 | 0.4% | Oct 24, 2024 | OpenRefine is a free, open source tool for working with messy data. Prior to version 3.8.3, lack of cross-site request f... |
| CVE-2024-45263 | HIGH | 8.8 | 0.3% | Oct 24, 2024 | An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The upl... |
| CVE-2024-45262 | HIGH | 8.8 | 0.6% | Oct 24, 2024 | An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The par... |
| CVE-2024-45261 | HIGH | 8 | 0.5% | Oct 24, 2024 | An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The SID... |
| CVE-2024-45260 | HIGH | 8 | 3.9% | Oct 24, 2024 | An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. Users w... |
| CVE-2024-10327 | HIGH | 8.1 | 0.6% | Oct 24, 2024 | A vulnerability in Okta Verify for iOS versions 9.25.1 (beta) and 9.27.0 (including beta) allows push notification respo... |
| CVE-2024-45242 | HIGH | 7.8 | 34.7% | Oct 24, 2024 | EnGenius ENH1350EXT A8J-ENH1350EXT devices through 3.9.3.2_c1.9.51 allow (blind) OS Command Injection via shell metachar... |
| CVE-2024-48454 | HIGH | 7.2 | 0.9% | Oct 24, 2024 | An issue in SourceCodester Purchase Order Management System v1.0 allows a remote attacker to execute arbitrary code via ... |
| CVE-2024-48427 | HIGH | 8.8 | 0.9% | Oct 24, 2024 | A SQL injection vulnerability in Sourcecodester Packers and Movers Management System v1.0 allows remote authenticated us... |
| CVE-2024-48142 | HIGH | 7.5 | 0.4% | Oct 24, 2024 | A prompt injection vulnerability in the chatbox of Butterfly Effect Limited Monica ChatGPT AI Assistant v2.4.0 allows at... |
| CVE-2024-48141 | HIGH | 7.5 | 0.4% | Oct 24, 2024 | A prompt injection vulnerability in the chatbox of Zhipu AI CodeGeeX v2.17.0 allows attackers to access and exfiltrate a... |
| CVE-2024-48140 | HIGH | 7.5 | 0.4% | Oct 24, 2024 | A prompt injection vulnerability in the chatbox of Butterfly Effect Limited Monica Your AI Copilot powered by ChatGPT4 v... |
| CVE-2024-48139 | HIGH | 7.5 | 0.5% | Oct 24, 2024 | A prompt injection vulnerability in the chatbox of Blackbox AI v1.3.95 allows attackers to access and exfiltrate all pre... |
| CVE-2024-48441 | HIGH | 8.8 | 1.6% | Oct 24, 2024 | Wuhan Tianyu Information Industry Co., Ltd Tianyu CPE Router CommonCPExCPETS_v3.2.468.11.04_P4 was discovered to contain... |
| CVE-2024-48440 | HIGH | 8.8 | 1.6% | Oct 24, 2024 | Shenzhen Tuoshi Network Communications Co.,Ltd 5G CPE Router NR500-EA RG500UEAABxCOMSLICv3.2.2543.12.18 was discovered t... |
| CVE-2024-10338 | HIGH | 7.2 | 0.4% | Oct 24, 2024 | A vulnerability classified as critical was found in SourceCodeHero Clothes Recommendation System 1.0. Affected by this v... |
| CVE-2024-10337 | HIGH | 7.2 | 0.4% | Oct 24, 2024 | A vulnerability classified as critical has been found in SourceCodeHero Clothes Recommendation System 1.0. Affected is a... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now