2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37311 | HIGH | 8.2 | 0.2% | Aug 23, 2024 | Collabora Online is a collaborative online office suite based on LibreOffice. In affected versions of Collabora Online, ... |
| CVE-2024-5586 | HIGH | 8.8 | 5.2% | Aug 23, 2024 | Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to the authenticated SQL injection in extranet loc... |
| CVE-2024-5556 | HIGH | 8.8 | 4.5% | Aug 23, 2024 | Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in reports modu... |
| CVE-2024-5490 | HIGH | 8.8 | 4.0% | Aug 23, 2024 | Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in aggregate re... |
| CVE-2024-5467 | HIGH | 8.8 | 4.5% | Aug 23, 2024 | Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to the authenticated SQL injection in account lock... |
| CVE-2024-5466 | HIGH | 8.8 | 6.9% | Aug 23, 2024 | Zohocorp ManageEngine OpManager and Remote Monitoring and Management versions 128329 and below are vulnerable to the aut... |
| CVE-2024-36517 | HIGH | 8.8 | 5.3% | Aug 23, 2024 | Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in alerts modul... |
| CVE-2024-36516 | HIGH | 8.8 | 4.4% | Aug 23, 2024 | Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. N... |
| CVE-2024-36515 | HIGH | 8.8 | 4.5% | Aug 23, 2024 | Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. N... |
| CVE-2024-36514 | HIGH | 8.8 | 4.0% | Aug 23, 2024 | Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in file summary... |
| CVE-2024-43883 | HIGH | 7 | 0.2% | Aug 23, 2024 | In the Linux kernel, the following vulnerability has been resolved: usb: vhci-hcd: Do not drop references before new re... |
| CVE-2024-7986 | HIGH | 7.5 | 0.6% | Aug 23, 2024 | A vulnerability exists in the Rockwell Automation ThinManager® ThinServer that allows a threat actor to disclose sensiti... |
| CVE-2024-7258 | HIGH | 8.8 | 0.8% | Aug 23, 2024 | The WooCommerce Google Feed Manager plugin for WordPress is vulnerable to unauthorized loss of data due to a missing cap... |
| CVE-2024-7559 | HIGH | 8.8 | 0.9% | Aug 23, 2024 | The File Manager Pro plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation an... |
| CVE-2024-43477 | HIGH | 7.5 | 1.0% | Aug 23, 2024 | Improper access control in Decentralized Identity Services resulted in a vulnerability that allows an unauthenticated at... |
| CVE-2024-38210 | HIGH | 7.8 | 0.7% | Aug 22, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2024-38209 | HIGH | 7.8 | 0.7% | Aug 22, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2024-8083 | HIGH | 8.8 | 0.6% | Aug 22, 2024 | A vulnerability, which was classified as critical, has been found in SourceCodester Online Computer and Laptop Store 1.0... |
| CVE-2024-45201 | HIGH | 8.8 | 0.5% | Aug 22, 2024 | An issue was discovered in llama_index before 0.10.38. download/integration.py includes an exec call for import {cls_nam... |
| CVE-2024-42599 | HIGH | 8.8 | 1.4% | Aug 22, 2024 | SeaCMS 13.0 has a remote code execution vulnerability. The reason for this vulnerability is that although admin_files.ph... |
| CVE-2024-42418 | HIGH | 7.5 | 0.4% | Aug 22, 2024 | Avtec Outpost uses a default cryptographic key that can be used to decrypt sensitive information. |
| CVE-2024-39776 | HIGH | 7.5 | 0.4% | Aug 22, 2024 | Avtec Outpost stores sensitive information in an insecure location without proper access controls in place. |
| CVE-2024-8088 | HIGH | 8.7 | 1.3% | Aug 22, 2024 | There is a HIGH severity vulnerability affecting the CPython "zipfile" module affecting "zipfile.Path". Note that the mo... |
| CVE-2024-39717 | HIGH | 7.2 | 4.0% | Aug 22, 2024 | The Versa Director GUI provides an option to customize the look and feel of the user interface. This option is only avai... |
| CVE-2024-42767 | HIGH | 7.2 | 0.6% | Aug 22, 2024 | Kashipara Hotel Management System v1.0 is vulnerable to Unrestricted File Upload RCE via /admin/add_room_controller.php. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now