2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-21532 | HIGH | 7.3 | 1.2% | Oct 8, 2024 | All versions of the package ggit are vulnerable to Command Injection via the fetchTags(branch) API, which allows user in... |
| CVE-2024-8927 | HIGH | 7.5 | 1.1% | Oct 8, 2024 | In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, HTTP_REDIRECT_STATUS variable is used to ... |
| CVE-2024-8926 | HIGH | 8.8 | 3.7% | Oct 8, 2024 | In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, when using a certain non-standard configu... |
| CVE-2024-45291 | HIGH | 8.8 | 0.8% | Oct 7, 2024 | PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. It's possible for an attacker to constru... |
| CVE-2024-45290 | HIGH | 7.5 | 0.6% | Oct 7, 2024 | PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. It's possible for an attacker to constru... |
| CVE-2024-45051 | HIGH | 8.2 | 0.4% | Oct 7, 2024 | Discourse is an open source platform for community discussion. A maliciously crafted email address could allow an attack... |
| CVE-2024-43365 | HIGH | 8.2 | 22.5% | Oct 7, 2024 | Cacti is an open source performance and fault management framework. The`consolenewsection` parameter is not properly san... |
| CVE-2024-43364 | HIGH | 8.2 | 34.4% | Oct 7, 2024 | Cacti is an open source performance and fault management framework. The `title` parameter is not properly sanitized when... |
| CVE-2024-43363 | HIGH | 7.2 | 35.8% | Oct 7, 2024 | Cacti is an open source performance and fault management framework. An admin user can create a device with a malicious h... |
| CVE-2024-45293 | HIGH | 7.5 | 2.9% | Oct 7, 2024 | PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. The security scanner responsible for pre... |
| CVE-2024-31449 | HIGH | 8.8 | 4.5% | Oct 7, 2024 | Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua... |
| CVE-2024-47975 | HIGH | 7 | 0.2% | Oct 7, 2024 | Improper access control validation in firmware of some Solidigm DC Products may allow an attacker with physical access t... |
| CVE-2024-47559 | HIGH | 8.8 | 0.5% | Oct 7, 2024 | Authenticated RCE via Path Traversal |
| CVE-2024-47558 | HIGH | 8.8 | 0.5% | Oct 7, 2024 | Authenticated RCE via Path Traversal |
| CVE-2024-44068 | HIGH | 8.1 | 1.0% | Oct 7, 2024 | An issue was discovered in the m2m scaler driver in Samsung Mobile Processor and Wearable Processor Exynos 9820, 9825, 9... |
| CVE-2024-47555 | HIGH | 8.3 | 0.2% | Oct 7, 2024 | Missing Authentication - User & System Configuration |
| CVE-2024-27458 | HIGH | 8.8 | 0.2% | Oct 7, 2024 | A potential security vulnerability has been identified in the HP Hotkey Support software, which might allow local escala... |
| CVE-2024-9570 | HIGH | 8.8 | 3.0% | Oct 7, 2024 | A vulnerability was found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this issue is the function ... |
| CVE-2024-46278 | HIGH | 8.4 | 2.6% | Oct 7, 2024 | Teedy 1.11 is vulnerable to Cross Site Scripting (XSS) via the management console. |
| CVE-2024-46041 | HIGH | 8.8 | 0.3% | Oct 7, 2024 | IoT Haat Smart Plug IH-IN-16A-S v5.16.1 is vulnerable to Authentication Bypass by Capture-replay. |
| CVE-2024-9576 | HIGH | 7.8 | 0.1% | Oct 7, 2024 | Vulnerability in Distro Linux Workbooth v2.5 that allows to escalate privileges to the root user by manipulating the net... |
| CVE-2024-9569 | HIGH | 8.8 | 1.3% | Oct 7, 2024 | A vulnerability has been found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this vulnerability is ... |
| CVE-2024-9568 | HIGH | 8.8 | 1.3% | Oct 7, 2024 | A vulnerability, which was classified as critical, was found in D-Link DIR-619L B1 2.06. Affected is the function formAd... |
| CVE-2024-9567 | HIGH | 8.8 | 1.3% | Oct 7, 2024 | A vulnerability, which was classified as critical, has been found in D-Link DIR-619L B1 2.06. This issue affects the fun... |
| CVE-2024-9566 | HIGH | 8.8 | 1.8% | Oct 7, 2024 | A vulnerability classified as critical was found in D-Link DIR-619L B1 2.06. This vulnerability affects the function for... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now