2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-49657 | HIGH | 7.7 | 0.4% | Oct 23, 2024 | Missing Authorization vulnerability in Renata Bracichowicz 3D Work In Progress renee-work-in-progress allows Exploiting ... |
| CVE-2024-49675 | HIGH | 8.8 | 0.5% | Oct 23, 2024 | Authentication Bypass Using an Alternate Path or Channel vulnerability in Vitalii iBryl Switch User ibryl-switch-user al... |
| CVE-2024-47904 | HIGH | 8.5 | 0.2% | Oct 23, 2024 | A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fir... |
| CVE-2024-10290 | HIGH | 7.5 | 0.6% | Oct 23, 2024 | A vulnerability, which was classified as problematic, was found in ZZCMS 2023. This affects an unknown part of the file ... |
| CVE-2024-10283 | HIGH | 8.8 | 0.8% | Oct 23, 2024 | A vulnerability, which was classified as critical, has been found in Tenda RX9 and RX9 Pro 22.03.02.20. Affected by this... |
| CVE-2024-10282 | HIGH | 8.8 | 1.1% | Oct 23, 2024 | A vulnerability classified as critical was found in Tenda RX9 and RX9 Pro 22.03.02.10/22.03.02.20. Affected by this vuln... |
| CVE-2024-10281 | HIGH | 8.8 | 0.9% | Oct 23, 2024 | A vulnerability classified as critical has been found in Tenda RX9 and RX9 Pro 22.03.02.10/22.03.02.20. Affected is the ... |
| CVE-2024-10280 | HIGH | 7.5 | 0.8% | Oct 23, 2024 | A vulnerability was found in Tenda AC6, AC7, AC8, AC9, AC10, AC10U, AC15, AC18, AC500 and AC1206 up to 20241022. It has ... |
| CVE-2024-50066 | HIGH | 7 | 0.2% | Oct 23, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm/mremap: fix move_normal_pmd/retract_page_tables ... |
| CVE-2024-9927 | HIGH | 7.2 | 0.5% | Oct 23, 2024 | The WooCommerce Order Proposal plugin for WordPress is vulnerable to privilege escalation via order proposal in all vers... |
| CVE-2024-7587 | HIGH | 7.8 | 0.2% | Oct 22, 2024 | Incorrect Default Permissions vulnerability in GenBroker32, which is included in the installers for Mitsubishi Electric ... |
| CVE-2024-48657 | HIGH | 7.2 | 0.9% | Oct 22, 2024 | SQL Injection vulnerability in hospital management system in php with source code v.1.0.0 allows a remote attacker to ex... |
| CVE-2024-46482 | HIGH | 8.2 | 0.3% | Oct 22, 2024 | An arbitrary file upload vulnerability in the Ticket Generation function of Ladybird Web Solution Faveo-Helpdesk v2.0.3 ... |
| CVE-2024-44331 | HIGH | 7.5 | 0.7% | Oct 22, 2024 | Incorrect Access Control in GStreamer RTSP server 1.25.0 in gst-rtsp-server/rtsp-media.c allows remote attackers to caus... |
| CVE-2024-43812 | HIGH | 8.6 | 0.2% | Oct 22, 2024 | Kieback & Peter's DDC4000 series has an insufficiently protected credentials vulnerability, which may allow an unauthent... |
| CVE-2024-42643 | HIGH | 7.5 | 0.6% | Oct 22, 2024 | Integer Overflow in fast_ping.c in SmartDNS Release46 allows remote attackers to cause a Denial of Service via misaligne... |
| CVE-2024-31029 | HIGH | 8.2 | 0.5% | Oct 22, 2024 | An issue in the server_handle_regular function of the test_coap_server.c file within the FreeCoAP project allows remote ... |
| CVE-2024-10231 | HIGH | 8.8 | 0.5% | Oct 22, 2024 | Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2024-10230 | HIGH | 8.8 | 0.6% | Oct 22, 2024 | Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2024-10229 | HIGH | 8.1 | 0.5% | Oct 22, 2024 | Inappropriate implementation in Extensions in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to bypass s... |
| CVE-2024-48903 | HIGH | 7.8 | 0.7% | Oct 22, 2024 | An improper access control vulnerability in Trend Micro Deep Security Agent 20 could allow a local attacker to escalate ... |
| CVE-2024-45334 | HIGH | 7.8 | 0.1% | Oct 22, 2024 | Trend Micro Antivirus One versions 3.10.4 and below (Consumer) is vulnerable to an Arbitrary Configuration Update that c... |
| CVE-2024-41183 | HIGH | 7.8 | 1.0% | Oct 22, 2024 | Trend Micro VPN, version 5.8.1012 and below is vulnerable to an arbitrary file overwrite under specific conditions that ... |
| CVE-2024-39753 | HIGH | 7.5 | 2.0% | Oct 22, 2024 | An modOSCE SQL Injection vulnerability in Trend Micro Apex One could allow a remote attacker to execute arbitrary code o... |
| CVE-2024-9287 | HIGH | 7.8 | 0.6% | Oct 22, 2024 | A vulnerability has been found in the CPython `venv` module and CLI where path names provided when creating a virtual en... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now