2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-10093 | HIGH | 7.8 | 0.2% | Oct 17, 2024 | A vulnerability, which was classified as critical, was found in VSO ConvertXtoDvd 7.0.0.83. Affected is an unknown funct... |
| CVE-2024-33453 | HIGH | 8.1 | 1.0% | Oct 17, 2024 | Buffer Overflow vulnerability in esp-idf v.5.1 allows a remote attacker to obtain sensitive information via the external... |
| CVE-2024-30875 | HIGH | 7.1 | 0.8% | Oct 17, 2024 | Cross Site Scripting vulnerability in JavaScript Library jquery-ui v.1.13.1 allows a remote attacker to obtain sensitive... |
| CVE-2024-48924 | HIGH | 8.7 | 0.4% | Oct 17, 2024 | ### Impact When this library is used to deserialize messagepack data from an untrusted source, there is a risk of a den... |
| CVE-2024-49283 | HIGH | 7.1 | 0.3% | Oct 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VillaTheme CURCY w... |
| CVE-2024-49278 | HIGH | 7.1 | 0.3% | Oct 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in omnipressteam Omni... |
| CVE-2024-49276 | HIGH | 7.1 | 0.3% | Oct 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in cliogrow Clio Grow... |
| CVE-2024-49248 | HIGH | 7.1 | 0.3% | Oct 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spacetime Ad Inser... |
| CVE-2024-7755 | HIGH | 8.2 | 0.3% | Oct 17, 2024 | The EWON FLEXY 202 transmits credentials using a weak encoding method base64. An attacker who is present in the network ... |
| CVE-2024-49316 | HIGH | 7.1 | 0.3% | Oct 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in zodiac Akismet hta... |
| CVE-2024-49309 | HIGH | 7.1 | 0.3% | Oct 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in omarfolghe Digital... |
| CVE-2024-49308 | HIGH | 7.1 | 0.3% | Oct 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Toast Plugins Anim... |
| CVE-2024-10100 | HIGH | 7.5 | 0.6% | Oct 17, 2024 | A path traversal vulnerability exists in binary-husky/gpt_academic version 3.83. The vulnerability is due to improper ha... |
| CVE-2024-49317 | HIGH | 7.5 | 0.5% | Oct 17, 2024 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2024-49313 | HIGH | 7.1 | 0.2% | Oct 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in rudestan VKontakte Wall Post vkontakte-wall-post allows Stored XSS.Th... |
| CVE-2024-49312 | HIGH | 8.6 | 0.2% | Oct 17, 2024 | Server-Side Request Forgery (SSRF) vulnerability in WisdmLabs Edwiser Bridge edwiser-bridge.This issue affects Edwiser B... |
| CVE-2024-49299 | HIGH | 7.6 | 0.4% | Oct 17, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Surfer Surfer surf... |
| CVE-2024-49297 | HIGH | 8.5 | 0.4% | Oct 17, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in zohocrm Zoho CRM L... |
| CVE-2024-49287 | HIGH | 7.5 | 0.6% | Oct 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in mh6webentwicklung PDF-Re... |
| CVE-2024-49285 | HIGH | 7.5 | 0.5% | Oct 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Jeroen Berkvens SSV Mail... |
| CVE-2024-49244 | HIGH | 8.5 | 0.4% | Oct 17, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in vrinsoft CSV Produ... |
| CVE-2024-49235 | HIGH | 7.5 | 0.4% | Oct 17, 2024 | Insertion of Sensitive Information Into Sent Data vulnerability in videowhisper Contact Forms, Live Support, CRM, Video ... |
| CVE-2024-49219 | HIGH | 8.8 | 0.4% | Oct 17, 2024 | Incorrect Privilege Assignment vulnerability in themexpo RS-Members rs-members allows Privilege Escalation.This issue af... |
| CVE-2024-48638 | HIGH | 8 | 2.1% | Oct 17, 2024 | D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via th... |
| CVE-2024-48637 | HIGH | 8 | 2.1% | Oct 17, 2024 | D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via th... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now