2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-43022 | HIGH | 7.5 | 0.9% | Aug 21, 2024 | An issue in the downloader.php component of TOSEI online store management system v4.02, v4.03, and v4.04 allows attacker... |
| CVE-2024-33657 | HIGH | 7.8 | 0.2% | Aug 21, 2024 | This SMM vulnerability affects certain modules, allowing privileged attackers to execute arbitrary code, manipulate stac... |
| CVE-2024-33656 | HIGH | 7.8 | 0.2% | Aug 21, 2024 | The DXE module SmmComputrace contains a vulnerability that allows local attackers to leak stack or global memory. This c... |
| CVE-2024-20375 | HIGH | 7.5 | 0.7% | Aug 21, 2024 | A vulnerability in the SIP call processing function of Cisco Unified Communications Manager (Unified CM) and Cisco Unifi... |
| CVE-2024-7795 | HIGH | 8.8 | 0.5% | Aug 21, 2024 | Autel MaxiCharger AC Elite Business C50 AppAuthenExchangeRandomNum Stack-Based Buffer Overflow Remote Code Execution Vul... |
| CVE-2024-7725 | HIGH | 8.8 | 0.7% | Aug 21, 2024 | Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers... |
| CVE-2024-7724 | HIGH | 8.8 | 0.7% | Aug 21, 2024 | Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers... |
| CVE-2024-7723 | HIGH | 8.8 | 0.7% | Aug 21, 2024 | Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers... |
| CVE-2024-7604 | HIGH | 7.8 | 0.3% | Aug 21, 2024 | Logsign Unified SecOps Platform Incorrect Authorization Authentication Bypass Vulnerability. This vulnerability allows l... |
| CVE-2024-7603 | HIGH | 8.1 | 2.0% | Aug 21, 2024 | Logsign Unified SecOps Platform Directory Traversal Arbitrary Directory Deletion Vulnerability. This vulnerability allow... |
| CVE-2024-7601 | HIGH | 8.1 | 1.6% | Aug 21, 2024 | Logsign Unified SecOps Platform Directory data_export_delete_all Traversal Arbitrary File Deletion Vulnerability. This v... |
| CVE-2024-7600 | HIGH | 8.1 | 2.0% | Aug 21, 2024 | Logsign Unified SecOps Platform Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows rem... |
| CVE-2024-6814 | HIGH | 8.8 | 2.1% | Aug 21, 2024 | NETGEAR ProSAFE Network Management System getFilterString SQL Injection Remote Code Execution Vulnerability. This vulner... |
| CVE-2024-6813 | HIGH | 8.8 | 1.9% | Aug 21, 2024 | NETGEAR ProSAFE Network Management System getSortString SQL Injection Remote Code Execution Vulnerability. This vulnerab... |
| CVE-2024-6812 | HIGH | 7.8 | 0.5% | Aug 21, 2024 | IrfanView WSQ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote att... |
| CVE-2024-6811 | HIGH | 7.8 | 0.5% | Aug 21, 2024 | IrfanView WSQ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote att... |
| CVE-2024-43410 | HIGH | 7.5 | 0.9% | Aug 21, 2024 | Russh is a Rust SSH client & server library. Allocating an untrusted amount of memory allows any unauthenticated user to... |
| CVE-2024-43027 | HIGH | 8 | 1.3% | Aug 21, 2024 | DrayTek Vigor 3900 before v1.5.1.5_Beta, DrayTek Vigor 2960 before v1.5.1.5_Beta and DrayTek Vigor 300B before v1.5.1.5_... |
| CVE-2024-39344 | HIGH | 8.1 | 0.5% | Aug 21, 2024 | An issue was discovered in the Docusign API package 8.142.14 for Salesforce. The Apttus_DocuApi__DocusignAuthentication_... |
| CVE-2024-21690 | HIGH | 8.2 | 0.7% | Aug 21, 2024 | This High severity Reflected XSS and CSRF (Cross-Site Request Forgery) vulnerability was introduced in versions 7.19.0, ... |
| CVE-2024-8007 | HIGH | 8.1 | 0.4% | Aug 21, 2024 | A flaw was found in the openstack-tripleo-common component of the Red Hat OpenStack Platform (RHOSP) director. This vuln... |
| CVE-2024-7885 | HIGH | 7.5 | 2.6% | Aug 21, 2024 | A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses the same StringBuilder instance across ... |
| CVE-2024-37008 | HIGH | 7.8 | 0.2% | Aug 21, 2024 | A maliciously crafted DWG file, when parsed in Revit, can force a stack-based buffer overflow. A malicious actor can lev... |
| CVE-2024-7651 | HIGH | 7.5 | 0.4% | Aug 21, 2024 | The App Builder – Create Native Android & iOS Apps On The Flight plugin for WordPress is vulnerable to limited SQL Injec... |
| CVE-2024-7134 | HIGH | 7.2 | 0.4% | Aug 21, 2024 | The LiquidPoll – Polls, Surveys, NPS and Feedback Reviews plugin for WordPress is vulnerable to Stored Cross-Site Script... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now