2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-8480 | HIGH | 8.8 | 0.9% | Sep 6, 2024 | The Image Optimizer, Resizer and CDN – Sirv plugin for WordPress is vulnerable to unauthorized modification of data due ... |
| CVE-2024-8247 | HIGH | 8.8 | 0.5% | Sep 6, 2024 | The Newsletters plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 4.9.9.2... |
| CVE-2024-42495 | HIGH | 7.5 | 0.3% | Sep 5, 2024 | Credentials to access device configuration were transmitted using an unencrypted protocol. These credentials would allow... |
| CVE-2024-7591 | HIGH | 7.2 | 44.1% | Sep 5, 2024 | Improper Input Validation vulnerability in Progress LoadMaster allows OS Command Injection.This issue affects: * LoadMa... |
| CVE-2024-45401 | HIGH | 7.1 | 0.2% | Sep 5, 2024 | stripe-cli is a command-line tool for the payment processor Stripe. A vulnerability exists in stripe-cli starting in ver... |
| CVE-2024-45175 | HIGH | 8.8 | 0.7% | Sep 5, 2024 | An issue was discovered in za-internet C-MOR Video Surveillance 5.2401. Sensitive information is stored in cleartext. It... |
| CVE-2024-45171 | HIGH | 8.8 | 0.9% | Sep 5, 2024 | An issue was discovered in za-internet C-MOR Video Surveillance 5.2401. Due to improper user input validation, it is pos... |
| CVE-2024-45098 | HIGH | 8.1 | 0.4% | Sep 5, 2024 | IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user to bypass intended access restrictions and conduct resource mod... |
| CVE-2024-45097 | HIGH | 7.1 | 0.3% | Sep 5, 2024 | IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user to bypass intended access restrictions and conduct resource mod... |
| CVE-2024-45178 | HIGH | 7.1 | 1.3% | Sep 5, 2024 | An issue was discovered in za-internet C-MOR Video Surveillance 5.2401. Due to improper user input validation, it is pos... |
| CVE-2024-45173 | HIGH | 8.8 | 0.9% | Sep 5, 2024 | An issue was discovered in za-internet C-MOR Video Surveillance 5.2401. Due to improper privilege management concerning ... |
| CVE-2024-44587 | HIGH | 8.8 | 0.5% | Sep 5, 2024 | itsourcecode Alton Management System 1.0 is vulnerable to SQL Injection in /noncombo_save.php via the "menu" parameter. |
| CVE-2024-8470 | HIGH | 7.5 | 0.5% | Sep 5, 2024 | SQL injection vulnerability, by which an attacker could send a specially designed query through CATEGORY parameter in /j... |
| CVE-2024-8469 | HIGH | 7.5 | 0.5% | Sep 5, 2024 | SQL injection vulnerability, by which an attacker could send a specially designed query through id parameter in /jobport... |
| CVE-2024-8468 | HIGH | 7.5 | 0.5% | Sep 5, 2024 | SQL injection vulnerability, by which an attacker could send a specially designed query through search parameter in /job... |
| CVE-2024-8467 | HIGH | 7.5 | 0.5% | Sep 5, 2024 | SQL injection vulnerability, by which an attacker could send a specially designed query through id parameter in /jobport... |
| CVE-2024-8466 | HIGH | 7.5 | 0.5% | Sep 5, 2024 | SQL injection vulnerability, by which an attacker could send a specially designed query through CATEGORY parameter in /j... |
| CVE-2024-8465 | HIGH | 7.5 | 0.5% | Sep 5, 2024 | SQL injection vulnerability, by which an attacker could send a specially designed query through user_id parameter in /jo... |
| CVE-2024-8464 | HIGH | 7.5 | 0.5% | Sep 5, 2024 | SQL injection vulnerability, by which an attacker could send a specially designed query through JOBREGID parameter in /j... |
| CVE-2024-8463 | HIGH | 8.8 | 0.5% | Sep 5, 2024 | File upload restriction bypass vulnerability in PHPGurukul Job Portal 1.0, the exploitation of which could allow an auth... |
| CVE-2024-7884 | HIGH | 7.5 | 0.7% | Sep 5, 2024 | When a canister method is called via ic_cdk::call* , a new Future CallFuture is created and can be awaited by the calle... |
| CVE-2024-5957 | HIGH | 7.5 | 0.4% | Sep 5, 2024 | This vulnerability allows unauthenticated remote attackers to bypass authentication and gain APIs access of the Manager. |
| CVE-2024-8178 | HIGH | 8.8 | 0.6% | Sep 5, 2024 | The ctl_write_buffer and ctl_read_buffer functions allocated memory to be returned to userspace, without initializing it... |
| CVE-2024-45063 | HIGH | 8.8 | 0.5% | Sep 5, 2024 | The function ctl_write_buffer incorrectly set a flag which resulted in a kernel Use-After-Free when a command finished p... |
| CVE-2024-43110 | HIGH | 8.8 | 0.4% | Sep 5, 2024 | The ctl_request_sense function could expose up to three bytes of the kernel heap to userspace. Malicious software runni... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now