2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-8448 | HIGH | 8.8 | 0.5% | Sep 30, 2024 | Certain switch models from PLANET Technology have a hard-coded credential in the specific command-line interface, allowi... |
| CVE-2024-8379 | HIGH | 7.2 | 0.5% | Sep 30, 2024 | The Cost Calculator Builder WordPress plugin before 3.2.29 does not properly sanitise and escape a parameter before usin... |
| CVE-2024-9325 | HIGH | 7.8 | 0.3% | Sep 29, 2024 | A vulnerability classified as critical has been found in Intelbras InControl up to 2.21.56. This affects an unknown part... |
| CVE-2024-9324 | HIGH | 8.8 | 0.6% | Sep 29, 2024 | A vulnerability was found in Intelbras InControl up to 2.21.57. It has been rated as critical. Affected by this issue is... |
| CVE-2024-9319 | HIGH | 8.8 | 0.5% | Sep 29, 2024 | A vulnerability, which was classified as critical, was found in SourceCodester Online Timesheet App 1.0. This affects an... |
| CVE-2024-9317 | HIGH | 8.8 | 0.5% | Sep 28, 2024 | A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerabili... |
| CVE-2024-9316 | HIGH | 7.5 | 0.4% | Sep 28, 2024 | A vulnerability classified as critical has been found in code-projects Blood Bank Management System 1.0. Affected is an ... |
| CVE-2024-9315 | HIGH | 8.8 | 0.5% | Sep 28, 2024 | A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. It has been rated as crit... |
| CVE-2024-23967 | HIGH | 8 | 0.9% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 WebSocket Base64 Decoding Stack-based Buffer Overflow Remote Code Execution Vuln... |
| CVE-2024-23959 | HIGH | 8 | 0.8% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 BLE AppChargingControl Stack-based Buffer Overflow Remote Code Execution Vulnera... |
| CVE-2024-23958 | HIGH | 8.8 | 0.8% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 BLE Hardcoded Credentials Authentication Bypass Vulnerability. This vulnerabilit... |
| CVE-2024-23935 | HIGH | 7.5 | 0.5% | Sep 28, 2024 | Alpine Halo9 DecodeUTF7 Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows netwo... |
| CVE-2024-23923 | HIGH | 8.8 | 0.8% | Sep 28, 2024 | Alpine Halo9 prh_l2_sar_data_ind Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows network-a... |
| CVE-2024-23957 | HIGH | 8.8 | 1.0% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 DLB_HostHeartBeat Stack-based Buffer Overflow Remote Code Execution Vulnerabilit... |
| CVE-2024-23938 | HIGH | 8.8 | 0.9% | Sep 28, 2024 | Silicon Labs Gecko OS Debug Interface Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabilit... |
| CVE-2024-23586 | HIGH | 7.5 | 0.3% | Sep 27, 2024 | HCL Nomad is susceptible to an insufficient session expiration vulnerability. Under certain circumstances, an unauthen... |
| CVE-2024-9293 | HIGH | 8.8 | 0.5% | Sep 27, 2024 | A vulnerability classified as critical was found in skyselang yylAdmin up to 3.0. Affected by this vulnerability is the ... |
| CVE-2024-33369 | HIGH | 8.8 | 1.1% | Sep 27, 2024 | Directory Traversal vulnerability in Plasmoapp RPShare Fabric mod v.1.0.0 allows a remote attacker to execute arbitrary ... |
| CVE-2024-33368 | HIGH | 8.8 | 0.7% | Sep 27, 2024 | An issue in Plasmoapp RPShare Fabric mod v.1.0.0 allows a remote attacker to execute arbitrary code via the build method... |
| CVE-2024-9301 | HIGH | 7.5 | 0.7% | Sep 27, 2024 | A path traversal issue in E2Nest prior to commit 8a41948e553c89c56b14410c6ed395e9cfb9250a |
| CVE-2024-46097 | HIGH | 8.1 | 0.4% | Sep 27, 2024 | TestLink 1.9.20 is vulnerable to Incorrect Access Control in the TestPlan editing section. When a new TestPlan is create... |
| CVE-2024-39364 | HIGH | 7 | 0.2% | Sep 27, 2024 | Advantech ADAM-5630 has built-in commands that can be executed without authenticating the user. These commands allow f... |
| CVE-2024-39275 | HIGH | 8.8 | 0.4% | Sep 27, 2024 | Cookies of authenticated Advantech ADAM-5630 users remain as active valid cookies when a session is closed. Forging req... |
| CVE-2024-28948 | HIGH | 8.8 | 0.2% | Sep 27, 2024 | Advantech ADAM-5630 contains a cross-site request forgery (CSRF) vulnerability. It allows an attacker to partly circumve... |
| CVE-2024-9284 | HIGH | 7.1 | 0.9% | Sep 27, 2024 | A vulnerability was found in TP-LINK TL-WR841ND up to 20240920. It has been rated as critical. Affected by this issue is... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now