2024 CVE Vulnerabilities
39,223 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-45850 | HIGH | 8.8 | 0.9% | Sep 12, 2024 | An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24.7.4.1 of the MindsDB platform, when the ... |
| CVE-2024-45849 | HIGH | 8.8 | 0.9% | Sep 12, 2024 | An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24.7.4.1 of the MindsDB platform, when the ... |
| CVE-2024-45848 | HIGH | 8.8 | 0.8% | Sep 12, 2024 | An arbitrary code execution vulnerability exists in versions 23.12.4.0 up to 24.7.4.1 of the MindsDB platform, when the ... |
| CVE-2024-45847 | HIGH | 8.8 | 0.9% | Sep 12, 2024 | An arbitrary code execution vulnerability exists in versions 23.11.4.2 up to 24.7.4.1 of the MindsDB platform, when one ... |
| CVE-2024-45846 | HIGH | 8.8 | 2.1% | Sep 12, 2024 | An arbitrary code execution vulnerability exists in versions 23.10.3.0 up to 24.7.4.1 of the MindsDB platform, when the ... |
| CVE-2024-3306 | HIGH | 7.5 | 0.4% | Sep 12, 2024 | Authorization Bypass Through User-Controlled Key vulnerability in Utarit Information SoliClub allows Exploiting Incorrec... |
| CVE-2024-3305 | HIGH | 7.5 | 0.4% | Sep 12, 2024 | Authorization Bypass Through User-Controlled Key, Missing Authorization vulnerability in Utarit Information SoliClub all... |
| CVE-2024-27321 | HIGH | 7.8 | 0.3% | Sep 12, 2024 | An arbitrary code execution vulnerability exists in versions 0.0.8 and newer of the Refuel Autolabel library because of ... |
| CVE-2024-27320 | HIGH | 7.8 | 0.3% | Sep 12, 2024 | An arbitrary code execution vulnerability exists in versions 0.0.8 and newer of the Refuel Autolabel library because of ... |
| CVE-2024-8749 | HIGH | 7.5 | 0.4% | Sep 12, 2024 | SQL injection vulnerability in idoit pro version 28. This vulnerability could allow an attacker to send a specially craf... |
| CVE-2024-8529 | HIGH | 7.5 | 11.8% | Sep 12, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to SQL Injection via the 'c_fields' parameter o... |
| CVE-2024-8522 | HIGH | 7.5 | 61.4% | Sep 12, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to SQL Injection via the 'c_only_fields' parame... |
| CVE-2024-7766 | HIGH | 7.2 | 0.6% | Sep 12, 2024 | The Adicon Server WordPress plugin through 1.2 does not sanitize and escape a parameter before using it in a SQL stateme... |
| CVE-2024-45624 | HIGH | 7.5 | 0.5% | Sep 12, 2024 | Exposure of sensitive information due to incompatible policies issue exists in Pgpool-II. If a database user accesses a ... |
| CVE-2024-8711 | HIGH | 7.5 | 0.8% | Sep 12, 2024 | A vulnerability, which was classified as problematic, has been found in SourceCodester Food Ordering Management System 1... |
| CVE-2024-8710 | HIGH | 8.8 | 0.6% | Sep 12, 2024 | A vulnerability classified as critical was found in code-projects Inventory Management 1.0. Affected by this vulnerabili... |
| CVE-2024-8709 | HIGH | 8.8 | 0.6% | Sep 12, 2024 | A vulnerability classified as critical has been found in SourceCodester Best House Rental Management System 1.0. Affecte... |
| CVE-2024-37397 | HIGH | 8.2 | 59.3% | Sep 12, 2024 | An External XML Entity (XXE) vulnerability in the provisioning web service of Ivanti EPM before 2022 SU6, or the 2024 Se... |
| CVE-2024-34785 | HIGH | 7.2 | 25.4% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-34783 | HIGH | 7.2 | 43.4% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-34779 | HIGH | 7.2 | 24.0% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-32848 | HIGH | 7.2 | 43.4% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-32846 | HIGH | 7.2 | 2.1% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-32845 | HIGH | 7.2 | 24.0% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-32843 | HIGH | 7.2 | 2.1% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now