2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-48023 | HIGH | 7.1 | 0.2% | Oct 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in rconnect305 Restau... |
| CVE-2024-48021 | HIGH | 7.1 | 0.3% | Oct 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Paterson Con... |
| CVE-2024-49320 | HIGH | 7.1 | 0.3% | Oct 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dennis Encyclopedi... |
| CVE-2024-48043 | HIGH | 7.6 | 0.4% | Oct 17, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ShortPixel ShortPi... |
| CVE-2024-48024 | HIGH | 7.5 | 0.4% | Oct 17, 2024 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Fahad Mahmood Keep Backup Da... |
| CVE-2024-10068 | HIGH | 8.5 | 0.2% | Oct 17, 2024 | A vulnerability was found in OpenSight Software FlashFXP 5.4.0.3970. It has been classified as critical. Affected is an ... |
| CVE-2024-9184 | HIGH | 7.2 | 0.4% | Oct 17, 2024 | The SendPulse Free Web Push plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and... |
| CVE-2024-49391 | HIGH | 7.3 | 0.1% | Oct 17, 2024 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Files ... |
| CVE-2024-49390 | HIGH | 7.3 | 0.2% | Oct 17, 2024 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Files ... |
| CVE-2024-49389 | HIGH | 7.8 | 0.1% | Oct 17, 2024 | Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Files ... |
| CVE-2024-5429 | HIGH | 7.6 | 0.5% | Oct 17, 2024 | The Logo Slider WordPress plugin before 4.1.0 does not validate and escape some of its Slider Settings before outputtin... |
| CVE-2024-9861 | HIGH | 8.1 | 0.6% | Oct 17, 2024 | The Miniorange OTP Verification with Firebase plugin for WordPress is vulnerable to authentication bypass in versions up... |
| CVE-2024-9215 | HIGH | 8.8 | 0.5% | Oct 17, 2024 | The Co-Authors, Multiple Authors and Guest Authors in an Author Box with PublishPress Authors plugin for WordPress is vu... |
| CVE-2024-45766 | HIGH | 8.8 | 0.5% | Oct 17, 2024 | Dell OpenManage Enterprise, version(s) OME 4.1 and prior, contain(s) an Improper Control of Generation of Code ('Code In... |
| CVE-2024-7994 | HIGH | 7.8 | 0.2% | Oct 16, 2024 | A maliciously crafted RFA file, when parsed through Autodesk Revit, can force a Stack-Based Buffer Overflow. A malicious... |
| CVE-2024-7993 | HIGH | 7.8 | 0.2% | Oct 16, 2024 | A maliciously crafted PDF file, when parsed through Autodesk Revit, may force an Out-of-Bounds Write vulnerability. A ma... |
| CVE-2024-48918 | HIGH | 8.1 | 0.4% | Oct 16, 2024 | RDS Light is a simplified version of the Reflective Dialogue System (RDS), a self-reflecting AI framework. Versions prio... |
| CVE-2024-46213 | HIGH | 7.2 | 1.0% | Oct 16, 2024 | REDAXO CMS v2.11.0 was discovered to contain a remote code execution (RCE) vulnerability. |
| CVE-2024-47522 | HIGH | 7.5 | 0.6% | Oct 16, 2024 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr... |
| CVE-2024-47188 | HIGH | 7.5 | 0.3% | Oct 16, 2024 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr... |
| CVE-2024-47187 | HIGH | 7.5 | 0.3% | Oct 16, 2024 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr... |
| CVE-2024-45797 | HIGH | 7.5 | 0.7% | Oct 16, 2024 | LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces. Prior to version 0.5.49, unboun... |
| CVE-2024-45795 | HIGH | 7.5 | 0.5% | Oct 16, 2024 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr... |
| CVE-2024-4690 | HIGH | 8 | 0.4% | Oct 16, 2024 | Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD ... |
| CVE-2024-4189 | HIGH | 8 | 0.4% | Oct 16, 2024 | Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now