2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12791 | CRITICAL | 9.8 | 0.6% | Dec 19, 2024 | A vulnerability was found in Codezips E-Commerce Site 1.0. It has been rated as critical. This issue affects some unknow... |
| CVE-2024-55081 | CRITICAL | 9.8 | 0.8% | Dec 19, 2024 | An XML External Entity (XXE) injection vulnerability in the component /datagrip/upload of Chat2DB v0.3.5 allows attacker... |
| CVE-2024-52896 | MEDIUM | 6.2 | 0.3% | Dec 19, 2024 | IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive infor... |
| CVE-2024-12801 | LOW | 2.4 | 0.2% | Dec 19, 2024 | Server-Side Request Forgery (SSRF) in SaxEventRecorder by QOS.CH logback version 0.1 to 1.3.14 and 1.4.0 to 1.5.12 on t... |
| CVE-2024-12790 | HIGH | 8.2 | 0.5% | Dec 19, 2024 | A vulnerability was found in code-projects Hostel Management Site 1.0. It has been declared as problematic. This vulnera... |
| CVE-2024-12789 | CRITICAL | 9.8 | 0.5% | Dec 19, 2024 | A vulnerability was found in PbootCMS up to 3.2.3. It has been classified as critical. This affects an unknown part of t... |
| CVE-2024-12788 | CRITICAL | 9.8 | 0.8% | Dec 19, 2024 | A vulnerability was found in Codezips Technical Discussion Forum 1.0 and classified as critical. Affected by this issue ... |
| CVE-2024-9154 | HIGH | 8.6 | 0.6% | Dec 19, 2024 | A code injection vulnerability in HMS Networks Ewon Flexy 205 allows executing commands on system level on the device. T... |
| CVE-2024-55082 | HIGH | 7.5 | 0.5% | Dec 19, 2024 | A Server-Side Request Forgery (SSRF) in the endpoint http://{your-server}/url-to-pdf of Stirling-PDF 0.35.1 allows attac... |
| CVE-2024-38864 | LOW | 3.3 | 0.2% | Dec 19, 2024 | Incorrect permissions on the Checkmk Windows Agent's data directory in Checkmk < 2.3.0p23, < 2.2.0p38 and <= 2.1.0p49 (E... |
| CVE-2024-12798 | MEDIUM | 5.9 | 0.4% | Dec 19, 2024 | ACE vulnerability in JaninoEventEvaluator by QOS.CH logback-core upto including version 0.1 to 1.3.14 and 1.4.0 t... |
| CVE-2024-12787 | CRITICAL | 9.8 | 0.6% | Dec 19, 2024 | A vulnerability has been found in 1000 Projects Attendance Tracking Management System 1.0 and classified as critical. Af... |
| CVE-2024-54790 | HIGH | 7.5 | 0.6% | Dec 19, 2024 | A SQL Injection vulnerability was found in /index.php in PHPGurukul Pre-School Enrollment System v1.0, which allows remo... |
| CVE-2024-47093 | MEDIUM | 6.1 | 0.5% | Dec 19, 2024 | Improper neutralization of input in Nagvis before version 1.9.42 which can lead to XSS |
| CVE-2024-25131 | HIGH | 8.8 | 0.8% | Dec 19, 2024 | A flaw was found in the MustGather.managed.openshift.io Custom Defined Resource (CRD) of OpenShift Dedicated. A non-priv... |
| CVE-2024-12786 | HIGH | 8.5 | 0.2% | Dec 19, 2024 | A vulnerability, which was classified as critical, was found in X1a0He Adobe Downloader up to 1.3.1 on macOS. Affected i... |
| CVE-2024-12785 | HIGH | 8.8 | 0.5% | Dec 19, 2024 | A vulnerability was found in itsourcecode Vehicle Management System 1.0. It has been declared as critical. Affected by t... |
| CVE-2024-9102 | MEDIUM | 5 | 0.4% | Dec 19, 2024 | phpLDAPadmin since at least version 1.2.0 through the latest version 1.2.6.7 allows users to export elements from the LD... |
| CVE-2024-9101 | LOW | 2.1 | 0.5% | Dec 19, 2024 | A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the l... |
| CVE-2024-12784 | CRITICAL | 9.8 | 0.5% | Dec 19, 2024 | A vulnerability was found in itsourcecode Vehicle Management System 1.0. It has been classified as critical. Affected is... |
| CVE-2024-10244 | CRITICAL | 9.8 | 0.5% | Dec 19, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ISDO Software Web ... |
| CVE-2024-12783 | MEDIUM | 6.1 | 0.4% | Dec 19, 2024 | A vulnerability was found in itsourcecode Vehicle Management System 1.0 and classified as problematic. This issue affect... |
| CVE-2024-12782 | HIGH | 7.3 | 0.7% | Dec 19, 2024 | A vulnerability has been found in Fujifilm Business Innovation Apeos C3070, Apeos C5570 and Apeos C6580 up to 24.8.28 an... |
| CVE-2024-45819 | MEDIUM | 5.5 | 0.3% | Dec 19, 2024 | PVH guests have their ACPI tables constructed by the toolstack. The construction involves building the tables in local ... |
| CVE-2024-45818 | MEDIUM | 6.5 | 0.2% | Dec 19, 2024 | The hypervisor contains code to accelerate VGA memory accesses for HVM guests, when the (virtual) VGA is in "standard" m... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now