2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9910 | HIGH | 8.8 | 1.5% | Oct 13, 2024 | A vulnerability was found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this issue is the function ... |
| CVE-2024-9909 | HIGH | 8.8 | 2.2% | Oct 13, 2024 | A vulnerability has been found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this vulnerability is ... |
| CVE-2024-6959 | HIGH | 7.1 | 0.2% | Oct 13, 2024 | A vulnerability in parisneo/lollms-webui version 9.8 allows for a Denial of Service (DOS) attack when uploading an audio... |
| CVE-2024-9908 | HIGH | 8.8 | 2.5% | Oct 13, 2024 | A vulnerability, which was classified as critical, was found in D-Link DIR-619L B1 2.06. Affected is the function formSe... |
| CVE-2024-9905 | HIGH | 8.8 | 0.5% | Oct 13, 2024 | A vulnerability, which was classified as critical, has been found in SourceCodester Online Eyewear Shop 1.0. This issue ... |
| CVE-2024-9904 | HIGH | 7.2 | 0.6% | Oct 13, 2024 | A vulnerability classified as critical was found in 07FLYCMS, 07FLY-CMS and 07FlyCRM up to 1.2.0. This vulnerability aff... |
| CVE-2024-9903 | HIGH | 7.2 | 0.6% | Oct 12, 2024 | A vulnerability classified as critical has been found in 07FLYCMS, 07FLY-CMS and 07FlyCRM up to 1.2.0. This affects the ... |
| CVE-2024-49193 | HIGH | 7.5 | 0.7% | Oct 12, 2024 | Zendesk before 2024-07-02 allows remote attackers to read ticket history via e-mail spoofing, because Cc fields are extr... |
| CVE-2024-9894 | HIGH | 8.8 | 0.5% | Oct 12, 2024 | A vulnerability, which was classified as critical, was found in code-projects Blood Bank System 1.0. Affected is an unkn... |
| CVE-2024-8757 | HIGH | 7.2 | 0.5% | Oct 12, 2024 | The WP Post Author – Boost Your Blog's Engagement with Author Box, Social Links, Co-Authors, Guest Authors, Post Ra... |
| CVE-2024-9821 | HIGH | 8.8 | 1.2% | Oct 12, 2024 | The Bot for Telegram on WooCommerce plugin for WordPress is vulnerable to sensitive information disclosure due to missin... |
| CVE-2024-45754 | HIGH | 7.2 | 0.5% | Oct 11, 2024 | An issue was discovered in the centreon-bi-server component in Centreon BI Server 24.04.x before 24.04.3, 23.10.x before... |
| CVE-2024-35522 | HIGH | 7.2 | 1.8% | Oct 11, 2024 | Netgear EX3700 ' AC750 WiFi Range Extender Essentials Edition before 1.0.0.98 contains an authenticated command injectio... |
| CVE-2024-35517 | HIGH | 7.2 | 14.1% | Oct 11, 2024 | Netgear XR1000 v1.0.0.64 is vulnerable to command injection in usb_remote_smb_conf.cgi via the share_name parameter. |
| CVE-2024-48938 | HIGH | 7.5 | 0.6% | Oct 11, 2024 | Znuny before LTS 6.5.1 through 6.5.10 and 7.0.1 through 7.0.16 allows DoS/ReDos via email. Parsing the content of emails... |
| CVE-2024-48788 | HIGH | 7.5 | 0.6% | Oct 11, 2024 | An issue in YESCAM (com.yescom.YesCam.zwave) 1.0.2 allows a remote attacker to obtain sensitive information via the firm... |
| CVE-2024-46468 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | A Server-Side Request Forgery (SSRF) vulnerability exists in the jpress <= v5.1.1, which can be exploited by an attacker... |
| CVE-2024-48777 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | LEDVANCE com.ledvance.smartplus.eu 2.1.10 allows a remote attacker to obtain sensitive information via the firmware upda... |
| CVE-2024-48776 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | An issue in Shelly com.home.shelly 1.0.4 allows a remote attacker to obtain sensitive information via the firmware updat... |
| CVE-2024-48775 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | An issue in Plug n Play Camera com.ezset.delaney 1.2.0 allows a remote attacker to obtain sensitive information via the ... |
| CVE-2024-48774 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | An issue in Fermax Asia Pacific Pte Ltd com.fermax.vida 2.4.6 allows a remote attacker to obtain sensitve information vi... |
| CVE-2024-48773 | HIGH | 7.5 | 0.5% | Oct 11, 2024 | An issue in WoFit v.7.2.3 allows a remote attacker to obtain sensitive information via the firmware update process |
| CVE-2024-48771 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | An issue in almando GmbH Almando Play APP (com.almando.play) 1.8.2 allows a remote attacker to obtain sensitive informat... |
| CVE-2024-48770 | HIGH | 8.2 | 0.4% | Oct 11, 2024 | An issue in Plug n Play Camera com.wisdomcity.zwave 1.1.0 allows a remote attacker to obtain sensitive information via t... |
| CVE-2024-48768 | HIGH | 7.5 | 0.5% | Oct 11, 2024 | An issue in almaodo GmbH appinventor.ai_google.almando_control 2.3.1 allows a remote attacker to obtain sensitive inform... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now