2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12932 | MEDIUM | 4.6 | 0.4% | Dec 26, 2024 | A vulnerability was found in code-projects Simple Admin Panel 1.0. It has been declared as problematic. Affected by this... |
| CVE-2024-12931 | HIGH | 8.8 | 0.5% | Dec 26, 2024 | A vulnerability was found in code-projects Simple Admin Panel 1.0. It has been classified as critical. Affected is an un... |
| CVE-2024-12930 | MEDIUM | 4.6 | 0.4% | Dec 26, 2024 | A vulnerability was found in code-projects Simple Admin Panel 1.0 and classified as problematic. This issue affects some... |
| CVE-2024-12929 | HIGH | 8.8 | 0.4% | Dec 26, 2024 | A vulnerability has been found in code-projects Student Management System 1.0.00 and classified as critical. This vulner... |
| CVE-2024-12928 | HIGH | 8.8 | 0.4% | Dec 26, 2024 | A vulnerability, which was classified as critical, was found in code-projects Simple Admin Panel 1.0. This affects an un... |
| CVE-2024-12927 | CRITICAL | 9.8 | 0.6% | Dec 25, 2024 | A vulnerability, which was classified as critical, has been found in 1000 Projects Attendance Tracking Management System... |
| CVE-2024-12926 | HIGH | 8.8 | 0.5% | Dec 25, 2024 | A vulnerability classified as critical was found in Codezips Project Management System 1.0. Affected by this vulnerabili... |
| CVE-2024-56430 | LOW | 2.9 | 0.4% | Dec 25, 2024 | OpenFHE through 1.2.3 has a NULL pointer dereference in BinFHEContext::EvalFloor in lib/binfhe-base-scheme.cpp. |
| CVE-2024-56431 | CRITICAL | 9.8 | 1.8% | Dec 25, 2024 | oc_huff_tree_unpack in huffdec.c in libtheora in Theora through 1.0 7180717 has an invalid negative left shift. NOTE: th... |
| CVE-2024-52543 | MEDIUM | 4.4 | 0.2% | Dec 25, 2024 | Dell NativeEdge, version(s) 2.1.0.0, contain(s) a Creation of Temporary File With Insecure Permissions vulnerability. A ... |
| CVE-2024-52534 | MEDIUM | 5.4 | 0.3% | Dec 25, 2024 | Dell ECS, version(s) prior to ECS 3.8.1.3, contain(s) an Authentication Bypass by Capture-replay vulnerability. A low pr... |
| CVE-2024-53291 | HIGH | 7.5 | 0.3% | Dec 25, 2024 | Dell NativeEdge, version(s) 2.1.0.0, contain(s) an Exposure of Sensitive Information Through Metadata vulnerability. An ... |
| CVE-2024-52906 | MEDIUM | 5.5 | 0.1% | Dec 25, 2024 | IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1 could allow a non-privileged local user to exploit a vulnerability in the TCP/IP ... |
| CVE-2024-52535 | HIGH | 8.8 | 0.5% | Dec 25, 2024 | Dell SupportAssist for Home PCs versions 4.6.1 and prior and Dell SupportAssist for Business PCs versions 4.5.0 and prio... |
| CVE-2024-47978 | HIGH | 7.8 | 0.2% | Dec 25, 2024 | Dell NativeEdge, version(s) 2.1.0.0, contain(s) an Execution with Unnecessary Privileges vulnerability. A low privileged... |
| CVE-2024-47102 | MEDIUM | 5.5 | 0.1% | Dec 25, 2024 | IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1 could allow a non-privileged local user to exploit a vulnerability in the AIX perfs... |
| CVE-2024-39727 | CRITICAL | 9.8 | 0.3% | Dec 25, 2024 | IBM Engineering Lifecycle Optimization - Engineering Insights 7.0.2 and 7.0.3 uses a web link with untrusted references ... |
| CVE-2024-39725 | MEDIUM | 5.3 | 0.4% | Dec 25, 2024 | IBM Engineering Lifecycle Optimization - Engineering Insights 7.0.2 and 7.0.3 could allow a remote attacker to obtain se... |
| CVE-2024-8950 | CRITICAL | 9.9 | 0.6% | Dec 25, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Arne Informatics P... |
| CVE-2024-52046 | CRITICAL | 9.8 | 23.9% | Dec 25, 2024 | The ObjectSerializationDecoder in Apache MINA uses Java’s native deserialization protocol to process incoming serialized... |
| CVE-2024-12335 | MEDIUM | 4.3 | 0.4% | Dec 25, 2024 | The Avada (Fusion) Builder plugin for WordPress is vulnerable to Information Exposure in all versions up to, and includi... |
| CVE-2024-11281 | CRITICAL | 9.8 | 1.5% | Dec 25, 2024 | The WooCommerce Point of Sale plugin for WordPress is vulnerable to privilege escalation in all versions up to, and incl... |
| CVE-2024-10862 | MEDIUM | 4.9 | 0.6% | Dec 25, 2024 | The NEX-Forms – Ultimate Form Builder – Contact forms and much more plugin for WordPress is vulnerable to SQL Injection ... |
| CVE-2024-10858 | MEDIUM | 6.1 | 0.3% | Dec 25, 2024 | The Jetpack WordPress plugin before 14.1 does not properly checks the postmessage origin in its 13.x versions, allowing... |
| CVE-2024-12636 | MEDIUM | 4.3 | 0.2% | Dec 25, 2024 | The Privacy Policy Generator, Terms & Conditions Generator WordPress Plugin : WP Legal Pages plugin for WordPress is vul... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now