2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-13073 | MEDIUM | 4.7 | 0.3% | Sep 4, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft Ta... |
| CVE-2024-13071 | MEDIUM | 4.3 | 0.2% | Sep 4, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft e-... |
| CVE-2024-13068 | HIGH | 7.3 | 0.1% | Sep 3, 2025 | Origin Validation Error vulnerability in Akinsoft LimonDesk allows Forceful Browsing. This issue affects LimonDesk: fro... |
| CVE-2024-13066 | MEDIUM | 4.3 | 0.2% | Sep 3, 2025 | Improper Restriction of Rendered UI Layers or Frames vulnerability in Akinsoft LimonDesk allows iFrame Overlay, CAPEC - ... |
| CVE-2024-43166 | CRITICAL | 9.8 | 0.5% | Sep 3, 2025 | Incorrect Default Permissions vulnerability in Apache DolphinScheduler. This issue affects Apache DolphinScheduler: bef... |
| CVE-2024-43115 | HIGH | 8.8 | 0.5% | Sep 3, 2025 | Improper Input Validation vulnerability in Apache DolphinScheduler. An authenticated user can execute any shell script s... |
| CVE-2024-13065 | MEDIUM | 6.3 | 0.2% | Sep 3, 2025 | Improper Enforcement of Behavioral Workflow, Uncontrolled Resource Consumption vulnerability in Akinsoft MyRezzta allows... |
| CVE-2024-13064 | MEDIUM | 4.3 | 0.2% | Sep 3, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft My... |
| CVE-2024-13063 | MEDIUM | 6.8 | 0.2% | Sep 3, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Akinsoft MyRezzta allows Forceful Browsing. This issu... |
| CVE-2024-32444 | CRITICAL | 9.8 | 0.6% | Sep 3, 2025 | Incorrect Privilege Assignment vulnerability in InspiryThemes RealHomes realhomes allows Privilege Escalation.This issue... |
| CVE-2024-49730 | HIGH | 7.8 | 0.1% | Sep 2, 2025 | In FuseDaemon.cpp, there is a possible out of bounds write due to memory corruption. This could lead to local escalation... |
| CVE-2024-49728 | MEDIUM | 5.5 | 0.1% | Sep 2, 2025 | In generateFileInfo of BluetoothOppSendFileInfo.java, there is a possible cross user media disclosure due to a confused ... |
| CVE-2024-49722 | MEDIUM | 5.5 | 0.1% | Sep 2, 2025 | In showAvatarPicker of EditUserPhotoController.java, there is a possible cross user image leak due to a confused deputy.... |
| CVE-2024-49720 | HIGH | 7.8 | 0.1% | Sep 2, 2025 | In multiple functions of Permissions.java, there is a possible way to override the state of the user's location permissi... |
| CVE-2024-40653 | HIGH | 7.3 | 0.1% | Sep 2, 2025 | In multiple functions of ConnectionServiceWrapper.java, there is a possible way to retain a permission forever in the ba... |
| CVE-2024-51423 | MEDIUM | 6.1 | 0.3% | Sep 2, 2025 | Cross Site Scripting vulnerability in Infor Global HR GHR v.11.23.03.00.21 and before allows a remote attacker to execut... |
| CVE-2024-48705 | MEDIUM | 6.5 | 3.6% | Sep 2, 2025 | Wavlink AC1200 with firmware versions M32A3_V1410_230602 and M32A3_V1410_240222 are vulnerable to a post-authentication ... |
| CVE-2024-12974 | MEDIUM | 4.3 | 0.2% | Sep 2, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft Pr... |
| CVE-2024-58259 | HIGH | 8.2 | 0.5% | Sep 2, 2025 | A vulnerability has been identified within Rancher Manager in which it did not enforce request body size limits on cert... |
| CVE-2024-52284 | HIGH | 7.7 | 0.2% | Sep 2, 2025 | Unauthorized disclosure of sensitive data: Any user with `GET` or `LIST` permissions on `BundleDeployment` resources cou... |
| CVE-2024-12973 | MEDIUM | 4.7 | 0.1% | Sep 2, 2025 | Origin Validation Error vulnerability in Akinsoft OctoCloud allows HTTP Response Splitting, CAPEC - 87 - Forceful Browsi... |
| CVE-2024-12972 | MEDIUM | 4.3 | 0.2% | Sep 2, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft Oc... |
| CVE-2024-28988 | CRITICAL | 9.8 | 36.6% | Sep 1, 2025 | SolarWinds Web Help Desk was found to be susceptible to a Java Deserialization Remote Code Execution vulnerability that,... |
| CVE-2024-12925 | HIGH | 7.3 | 0.1% | Sep 1, 2025 | Improper Validation of Certificate with Host Mismatch vulnerability in Akınsoft QR Menü allows HTTP Response Splitting. ... |
| CVE-2024-12924 | MEDIUM | 6.3 | 0.2% | Sep 1, 2025 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Akınsoft QR Menü allows Forceful Browsing, Phishing... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now