2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-12791CRITICAL9.8A vulnerability was found in Codezips E-Commerce Site 1.0. It has been rated as critical. This issue affects some unknow...
CVE-2024-55081CRITICAL9.8An XML External Entity (XXE) injection vulnerability in the component /datagrip/upload of Chat2DB v0.3.5 allows attacker...
CVE-2024-52896MEDIUM6.2IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive infor...
CVE-2024-12801LOW2.4Server-Side Request Forgery (SSRF) in SaxEventRecorder by QOS.CH logback version 0.1 to 1.3.14 and 1.4.0 to 1.5.12  on t...
CVE-2024-12790HIGH8.2A vulnerability was found in code-projects Hostel Management Site 1.0. It has been declared as problematic. This vulnera...
CVE-2024-12789CRITICAL9.8A vulnerability was found in PbootCMS up to 3.2.3. It has been classified as critical. This affects an unknown part of t...
CVE-2024-12788CRITICAL9.8A vulnerability was found in Codezips Technical Discussion Forum 1.0 and classified as critical. Affected by this issue ...
CVE-2024-9154HIGH8.6A code injection vulnerability in HMS Networks Ewon Flexy 205 allows executing commands on system level on the device. T...
CVE-2024-55082HIGH7.5A Server-Side Request Forgery (SSRF) in the endpoint http://{your-server}/url-to-pdf of Stirling-PDF 0.35.1 allows attac...
CVE-2024-38864LOW3.3Incorrect permissions on the Checkmk Windows Agent's data directory in Checkmk < 2.3.0p23, < 2.2.0p38 and <= 2.1.0p49 (E...
CVE-2024-12798MEDIUM5.9ACE vulnerability in JaninoEventEvaluator by QOS.CH logback-core upto including version 0.1 to 1.3.14 and 1.4.0 t...
CVE-2024-12787CRITICAL9.8A vulnerability has been found in 1000 Projects Attendance Tracking Management System 1.0 and classified as critical. Af...
CVE-2024-54790HIGH7.5A SQL Injection vulnerability was found in /index.php in PHPGurukul Pre-School Enrollment System v1.0, which allows remo...
CVE-2024-47093MEDIUM6.1Improper neutralization of input in Nagvis before version 1.9.42 which can lead to XSS
CVE-2024-25131HIGH8.8A flaw was found in the MustGather.managed.openshift.io Custom Defined Resource (CRD) of OpenShift Dedicated. A non-priv...
CVE-2024-12786HIGH8.5A vulnerability, which was classified as critical, was found in X1a0He Adobe Downloader up to 1.3.1 on macOS. Affected i...
CVE-2024-12785HIGH8.8A vulnerability was found in itsourcecode Vehicle Management System 1.0. It has been declared as critical. Affected by t...
CVE-2024-9102MEDIUM5phpLDAPadmin since at least version 1.2.0 through the latest version 1.2.6.7 allows users to export elements from the LD...
CVE-2024-9101LOW2.1A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the l...
CVE-2024-12784CRITICAL9.8A vulnerability was found in itsourcecode Vehicle Management System 1.0. It has been classified as critical. Affected is...
CVE-2024-10244CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ISDO Software Web ...
CVE-2024-12783MEDIUM6.1A vulnerability was found in itsourcecode Vehicle Management System 1.0 and classified as problematic. This issue affect...
CVE-2024-12782HIGH7.3A vulnerability has been found in Fujifilm Business Innovation Apeos C3070, Apeos C5570 and Apeos C6580 up to 24.8.28 an...
CVE-2024-45819MEDIUM5.5PVH guests have their ACPI tables constructed by the toolstack. The construction involves building the tables in local ...
CVE-2024-45818MEDIUM6.5The hypervisor contains code to accelerate VGA memory accesses for HVM guests, when the (virtual) VGA is in "standard" m...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now