2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-52897 | MEDIUM | 6.2 | 0.2% | Dec 19, 2024 | IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive infor... |
| CVE-2024-51471 | MEDIUM | 5.3 | 0.3% | Dec 19, 2024 | IBM MQ Appliance 9.3 LTS, 9.3 CD, and 9.4 LTS web console could allow an authenticated user to cause a denial-of-service... |
| CVE-2024-49336 | MEDIUM | 5.4 | 0.2% | Dec 19, 2024 | IBM Security Guardium 11.5 and 12.0 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated... |
| CVE-2024-38819 | HIGH | 7.5 | 54.9% | Dec 19, 2024 | Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to pa... |
| CVE-2024-12794 | CRITICAL | 9.8 | 0.5% | Dec 19, 2024 | A vulnerability, which was classified as critical, was found in Codezips E-Commerce Site 1.0. This affects an unknown pa... |
| CVE-2024-12793 | MEDIUM | 4.3 | 0.5% | Dec 19, 2024 | A vulnerability, which was classified as problematic, has been found in PbootCMS up to 5.2.3. Affected by this issue is ... |
| CVE-2024-12792 | CRITICAL | 9.8 | 0.6% | Dec 19, 2024 | A vulnerability classified as critical was found in Codezips E-Commerce Site 1.0. Affected by this vulnerability is an u... |
| CVE-2024-12791 | CRITICAL | 9.8 | 0.6% | Dec 19, 2024 | A vulnerability was found in Codezips E-Commerce Site 1.0. It has been rated as critical. This issue affects some unknow... |
| CVE-2024-55081 | CRITICAL | 9.8 | 0.8% | Dec 19, 2024 | An XML External Entity (XXE) injection vulnerability in the component /datagrip/upload of Chat2DB v0.3.5 allows attacker... |
| CVE-2024-52896 | MEDIUM | 6.2 | 0.3% | Dec 19, 2024 | IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive infor... |
| CVE-2024-12801 | LOW | 2.4 | 0.2% | Dec 19, 2024 | Server-Side Request Forgery (SSRF) in SaxEventRecorder by QOS.CH logback version 0.1 to 1.3.14 and 1.4.0 to 1.5.12 on t... |
| CVE-2024-12790 | HIGH | 8.2 | 0.5% | Dec 19, 2024 | A vulnerability was found in code-projects Hostel Management Site 1.0. It has been declared as problematic. This vulnera... |
| CVE-2024-12789 | CRITICAL | 9.8 | 0.5% | Dec 19, 2024 | A vulnerability was found in PbootCMS up to 3.2.3. It has been classified as critical. This affects an unknown part of t... |
| CVE-2024-12788 | CRITICAL | 9.8 | 0.8% | Dec 19, 2024 | A vulnerability was found in Codezips Technical Discussion Forum 1.0 and classified as critical. Affected by this issue ... |
| CVE-2024-9154 | HIGH | 8.6 | 0.6% | Dec 19, 2024 | A code injection vulnerability in HMS Networks Ewon Flexy 205 allows executing commands on system level on the device. T... |
| CVE-2024-55082 | HIGH | 7.5 | 0.5% | Dec 19, 2024 | A Server-Side Request Forgery (SSRF) in the endpoint http://{your-server}/url-to-pdf of Stirling-PDF 0.35.1 allows attac... |
| CVE-2024-38864 | LOW | 3.3 | 0.2% | Dec 19, 2024 | Incorrect permissions on the Checkmk Windows Agent's data directory in Checkmk < 2.3.0p23, < 2.2.0p38 and <= 2.1.0p49 (E... |
| CVE-2024-12798 | MEDIUM | 5.9 | 0.4% | Dec 19, 2024 | ACE vulnerability in JaninoEventEvaluator by QOS.CH logback-core upto including version 0.1 to 1.3.14 and 1.4.0 t... |
| CVE-2024-12787 | CRITICAL | 9.8 | 0.6% | Dec 19, 2024 | A vulnerability has been found in 1000 Projects Attendance Tracking Management System 1.0 and classified as critical. Af... |
| CVE-2024-54790 | HIGH | 7.5 | 0.6% | Dec 19, 2024 | A SQL Injection vulnerability was found in /index.php in PHPGurukul Pre-School Enrollment System v1.0, which allows remo... |
| CVE-2024-47093 | MEDIUM | 6.1 | 0.5% | Dec 19, 2024 | Improper neutralization of input in Nagvis before version 1.9.42 which can lead to XSS |
| CVE-2024-25131 | HIGH | 8.8 | 0.8% | Dec 19, 2024 | A flaw was found in the MustGather.managed.openshift.io Custom Defined Resource (CRD) of OpenShift Dedicated. A non-priv... |
| CVE-2024-12786 | HIGH | 8.5 | 0.2% | Dec 19, 2024 | A vulnerability, which was classified as critical, was found in X1a0He Adobe Downloader up to 1.3.1 on macOS. Affected i... |
| CVE-2024-12785 | HIGH | 8.8 | 0.5% | Dec 19, 2024 | A vulnerability was found in itsourcecode Vehicle Management System 1.0. It has been declared as critical. Affected by t... |
| CVE-2024-9102 | MEDIUM | 5 | 0.4% | Dec 19, 2024 | phpLDAPadmin since at least version 1.2.0 through the latest version 1.2.6.7 allows users to export elements from the LD... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now