2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41699 | HIGH | 7.5 | 0.3% | Aug 20, 2024 | Priority – CWE-552: Files or Directories Accessible to External Parties |
| CVE-2024-41698 | HIGH | 7.5 | 0.3% | Aug 20, 2024 | Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor |
| CVE-2024-28829 | HIGH | 7.8 | 0.2% | Aug 20, 2024 | Least privilege violation and reliance on untrusted inputs in the mk_informix Checkmk agent plugin before Checkmk 2.3.0p... |
| CVE-2024-21689 | HIGH | 8 | 2.7% | Aug 20, 2024 | This High severity RCE (Remote Code Execution) vulnerability CVE-2024-21689 was introduced in versions 9.1.0, 9.2.0, 9.... |
| CVE-2024-43688 | HIGH | 7.3 | 0.5% | Aug 20, 2024 | cron/entry.c in vixie cron before 9cc8ab1, as used in OpenBSD 7.4 and 7.5, allows a heap-based buffer underflow and memo... |
| CVE-2024-7780 | HIGH | 7.2 | 0.5% | Aug 20, 2024 | The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form buil... |
| CVE-2024-7702 | HIGH | 7.2 | 0.5% | Aug 20, 2024 | The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form buil... |
| CVE-2024-38810 | HIGH | 7.5 | 0.4% | Aug 20, 2024 | Missing Authorization When Using @AuthorizeReturnObject in Spring Security 6.3.0 and 6.3.1 allows attacker to render sec... |
| CVE-2024-7949 | HIGH | 8.8 | 0.5% | Aug 20, 2024 | A vulnerability, which was classified as critical, was found in SourceCodester Online Graduate Tracer System up to 1.0. ... |
| CVE-2024-7944 | HIGH | 8.8 | 0.5% | Aug 20, 2024 | A vulnerability was found in itsourcecode Laravel Property Management System 1.0. It has been classified as critical. Af... |
| CVE-2024-7827 | HIGH | 8.8 | 0.5% | Aug 20, 2024 | The Shopping Cart & eCommerce Store plugin for WordPress is vulnerable to boolean-based SQL Injection via the ‘model_num... |
| CVE-2024-7943 | HIGH | 8.8 | 0.7% | Aug 20, 2024 | A vulnerability was found in itsourcecode Laravel Property Management System 1.0 and classified as critical. This issue ... |
| CVE-2024-7305 | HIGH | 7.8 | 0.2% | Aug 20, 2024 | A maliciously crafted DWF file, when parsed in AdDwfPdk.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write v... |
| CVE-2024-7931 | HIGH | 8.8 | 0.6% | Aug 19, 2024 | A vulnerability was found in SourceCodester Online Graduate Tracer System 1.0 and classified as critical. This issue aff... |
| CVE-2024-7930 | HIGH | 8.8 | 0.6% | Aug 19, 2024 | A vulnerability has been found in SourceCodester Clinics Patient Management System 1.0 and classified as critical. This ... |
| CVE-2024-7928 | HIGH | 7.5 | 16.9% | Aug 19, 2024 | A vulnerability, which was classified as problematic, has been found in FastAdmin up to 1.3.3.20220121. Affected by this... |
| CVE-2024-7927 | HIGH | 7.5 | 0.9% | Aug 19, 2024 | A vulnerability classified as critical was found in ZZCMS 2023. Affected by this vulnerability is an unknown functionali... |
| CVE-2024-7926 | HIGH | 7.5 | 0.9% | Aug 19, 2024 | A vulnerability classified as critical has been found in ZZCMS 2023. Affected is an unknown function of the file /admin/... |
| CVE-2024-43345 | HIGH | 7.5 | 0.5% | Aug 19, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in PluginOps Landing Page B... |
| CVE-2024-7592 | HIGH | 7.5 | 2.3% | Aug 19, 2024 | There is a LOW severity vulnerability affecting CPython, specifically the 'http.cookies' standard library module. When... |
| CVE-2024-7925 | HIGH | 7.5 | 0.6% | Aug 19, 2024 | A vulnerability was found in ZZCMS 2023. It has been rated as problematic. This issue affects some unknown processing of... |
| CVE-2024-7924 | HIGH | 7.5 | 1.4% | Aug 19, 2024 | A vulnerability was found in ZZCMS 2023. It has been declared as critical. This vulnerability affects unknown code of th... |
| CVE-2024-43271 | HIGH | 8.5 | 0.6% | Aug 19, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Themelocation Woo Produc... |
| CVE-2024-43256 | HIGH | 7.1 | 0.4% | Aug 19, 2024 | Missing Authorization vulnerability in nouthemes Leopard - WordPress offload media allows Accessing Functionality Not Pr... |
| CVE-2024-43249 | HIGH | 8.8 | 1.0% | Aug 19, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Bit Apps Bit Form Pro allows Command Injection.This iss... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now