2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-10135 | HIGH | 8.8 | 0.5% | Oct 19, 2024 | A vulnerability was found in ESAFENET CDG 5. It has been classified as critical. This affects the function actionDelNetS... |
| CVE-2024-10134 | HIGH | 8.8 | 0.5% | Oct 19, 2024 | A vulnerability was found in ESAFENET CDG 5 and classified as critical. Affected by this issue is the function connectLo... |
| CVE-2024-10133 | HIGH | 8.8 | 0.5% | Oct 19, 2024 | A vulnerability has been found in ESAFENET CDG 5 and classified as critical. Affected by this vulnerability is the funct... |
| CVE-2024-21536 | HIGH | 7.5 | 1.0% | Oct 19, 2024 | Versions of the package http-proxy-middleware before 2.0.7, from 3.0.0 and before 3.0.3 are vulnerable to Denial of Serv... |
| CVE-2024-10131 | HIGH | 8.8 | 1.1% | Oct 19, 2024 | The `add_llm` function in `llm_app.py` in infiniflow/ragflow version 0.11.0 contains a remote code execution (RCE) vulne... |
| CVE-2024-37404 | HIGH | 8.8 | 67.3% | Oct 18, 2024 | Improper Input Validation in the admin portal of Ivanti Connect Secure before 22.7R2.1 and 9.1R18.9, or Ivanti Policy Se... |
| CVE-2024-29821 | HIGH | 7.8 | 0.2% | Oct 18, 2024 | Ivanti DSM < version 2024.2 allows authenticated users on the local machine to run code with elevated privileges due to ... |
| CVE-2024-29213 | HIGH | 7.8 | 0.2% | Oct 18, 2024 | Ivanti DSM < version 2024.2 allows authenticated users on the local machine to run code with elevated privileges due to ... |
| CVE-2024-10130 | HIGH | 8.8 | 1.0% | Oct 18, 2024 | A vulnerability classified as critical was found in Tenda AC8 16.03.34.06. This vulnerability affects the function formS... |
| CVE-2024-10123 | HIGH | 8.8 | 1.0% | Oct 18, 2024 | A vulnerability was found in Tenda AC8 16.03.34.06. It has been declared as critical. Affected by this vulnerability is ... |
| CVE-2024-49361 | HIGH | 8.1 | 0.7% | Oct 18, 2024 | ACON is a widely-used library of tools for machine learning that focuses on adaptive correlation optimization. A potenti... |
| CVE-2024-9593 | HIGH | 8.3 | 12.5% | Oct 18, 2024 | The Time Clock plugin and Time Clock Pro plugin for WordPress are vulnerable to Remote Code Execution in versions up to,... |
| CVE-2024-48016 | HIGH | 8.8 | 0.2% | Oct 18, 2024 | Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains a Use of a Broken or Risky Cryptographi... |
| CVE-2024-47241 | HIGH | 8.1 | 0.2% | Oct 18, 2024 | Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains an Improper Certificate Validation vuln... |
| CVE-2024-49243 | HIGH | 8.8 | 0.5% | Oct 18, 2024 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2024-4740 | HIGH | 7.5 | 0.3% | Oct 18, 2024 | MXsecurity software versions v1.1.0 and prior are vulnerable because of the use of hard-coded credentials. This vulnerab... |
| CVE-2024-4739 | HIGH | 7.5 | 0.3% | Oct 18, 2024 | The lack of access restriction to a resource from unauthorized users makes MXsecurity software versions v1.1.0 and prior... |
| CVE-2024-47487 | HIGH | 8.8 | 0.4% | Oct 18, 2024 | There is a SQL injection vulnerability in some HikCentral Professional versions. This could allow an authenticated user ... |
| CVE-2024-10079 | HIGH | 8.8 | 0.8% | Oct 18, 2024 | The WP Easy Post Types plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.4.... |
| CVE-2024-9264 | HIGH | 8.8 | 97.8% | Oct 18, 2024 | The SQL Expressions experimental feature of Grafana allows for the evaluation of `duckdb` queries containing user input.... |
| CVE-2024-43596 | HIGH | 8.8 | 1.0% | Oct 17, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2024-43595 | HIGH | 8.8 | 1.0% | Oct 17, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2024-43587 | HIGH | 8.1 | 0.9% | Oct 17, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2024-43579 | HIGH | 8.3 | 0.7% | Oct 17, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2024-43578 | HIGH | 8.3 | 0.7% | Oct 17, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now