2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-44013 | HIGH | 7.5 | 0.5% | Oct 5, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Innate Images LLC VR Cal... |
| CVE-2024-44012 | HIGH | 7.5 | 0.5% | Oct 5, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in wpdev33 WP Newsletter Su... |
| CVE-2024-44011 | HIGH | 7.5 | 0.5% | Oct 5, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ExpressTech Systems WP T... |
| CVE-2024-9532 | HIGH | 8.8 | 1.5% | Oct 5, 2024 | A vulnerability has been found in D-Link DIR-605L 2.13B01 BETA and classified as critical. This vulnerability affects th... |
| CVE-2024-47841 | HIGH | 7.5 | 34.2% | Oct 5, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The Wikimedia Foundation... |
| CVE-2024-47846 | HIGH | 8.8 | 0.3% | Oct 5, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows Cross Site Request ... |
| CVE-2024-47845 | HIGH | 8.2 | 0.4% | Oct 5, 2024 | Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Code ... |
| CVE-2024-47911 | HIGH | 7.2 | 0.4% | Oct 4, 2024 | In SonarSource SonarQube 10.4 through 10.5 before 10.6, a vulnerability was discovered in the authorizations/group-membe... |
| CVE-2024-47910 | HIGH | 7.2 | 0.5% | Oct 4, 2024 | An issue was discovered in SonarSource SonarQube before 9.9.5 LTA and 10.x before 10.5. A SonarQube user with the Admini... |
| CVE-2024-37869 | HIGH | 8.8 | 1.0% | Oct 4, 2024 | File Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbi... |
| CVE-2024-37868 | HIGH | 8.8 | 1.0% | Oct 4, 2024 | File Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbi... |
| CVE-2024-9054 | HIGH | 8.8 | 14.6% | Oct 4, 2024 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'), Exposure of Sensitive Inform... |
| CVE-2024-43684 | HIGH | 8.8 | 0.2% | Oct 4, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Microchip TimeProvider 4100 allows Cross Site Request Forgery, Cross-... |
| CVE-2024-46078 | HIGH | 7.5 | 0.3% | Oct 4, 2024 | itsourcecode Sports Management System Project 1.0 is vulnerable to SQL Injection in the function delete_category of the ... |
| CVE-2024-41512 | HIGH | 8.8 | 0.7% | Oct 4, 2024 | A SQL Injection vulnerability in "ccHandler.aspx" in all versions of CADClick v.1.11.0 and before allows remote attacker... |
| CVE-2024-38040 | HIGH | 7.5 | 0.5% | Oct 4, 2024 | There is a local file inclusion vulnerability in Esri Portal for ArcGIS 11.2 and below that may allow a remote, unauthen... |
| CVE-2024-46486 | HIGH | 8 | 0.8% | Oct 4, 2024 | TP-LINK TL-WDR5620 v2.3 was discovered to contain a remote code execution (RCE) vulnerability via the httpProcDataSrv fu... |
| CVE-2024-47769 | HIGH | 7.5 | 0.8% | Oct 4, 2024 | IDURAR is open source ERP CRM accounting invoicing software. The vulnerability exists in the corePublicRouter.js file. U... |
| CVE-2024-47768 | HIGH | 8.1 | 0.5% | Oct 4, 2024 | Lif Authentication Server is a server used by Lif to do various tasks regarding Lif accounts. This vulnerability has to ... |
| CVE-2024-47183 | HIGH | 8.1 | 0.4% | Oct 4, 2024 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. If the Parse Ser... |
| CVE-2024-9515 | HIGH | 8.8 | 1.3% | Oct 4, 2024 | A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. It has been classified as critical. This affects the function... |
| CVE-2024-9514 | HIGH | 8.8 | 1.4% | Oct 4, 2024 | A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. It has been declared as critical. This vulnerability affects ... |
| CVE-2024-47790 | HIGH | 8.7 | 0.5% | Oct 4, 2024 | ** UNSUPPORTED WHEN ASSIGNED ** This vulnerability exists in D3D Security IP Camera D8801 due to usage of insecure Real-... |
| CVE-2024-47789 | HIGH | 8.7 | 0.3% | Oct 4, 2024 | ** UNSUPPORTED WHEN ASSIGNED ** This vulnerability exists in D3D Security IP Camera D8801 due to usage of weak authentic... |
| CVE-2024-47655 | HIGH | 8.8 | 0.7% | Oct 4, 2024 | This vulnerability exists in the Shilpi Client Dashboard due to improper validation of files being uploaded other than t... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now