2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-21204MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected...
CVE-2024-21203MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: FTS). Supported versions that are affecte...
CVE-2024-21202MEDIUM6.1Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PIA Core Technology). S...
CVE-2024-21201MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-21200MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-21199MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are...
CVE-2024-21198MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affecte...
CVE-2024-21197MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions t...
CVE-2024-21196MEDIUM6.5Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: X Plugin). Supported versions that are af...
CVE-2024-21194MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are...
CVE-2024-21193MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected...
CVE-2024-21192MEDIUM4.4Vulnerability in the Oracle Enterprise Manager for Fusion Middleware product of Oracle Fusion Middleware (component: Web...
CVE-2024-9676MEDIUM6.5A vulnerability was found in Podman, Buildah, and CRI-O. A symlink traversal vulnerability in the containers/storage lib...
CVE-2024-48913MEDIUM5.9Hono, a web framework, prior to version 4.6.5 is vulnerable to bypass of cross-site request forgery (CSRF) middleware by...
CVE-2024-48624MEDIUM5.3In segments\edit.php of DomainMOD below v4.12.0, the segid parameter in the GET request can be exploited to cause a refl...
CVE-2024-48623MEDIUM5.3In queue\index.php of DomainMOD below v4.12.0, the list_id and domain_id parameters in the GET request can be exploited ...
CVE-2024-48622MEDIUM6.6A cross-site scripting (XSS) issue in DomainMOD below v4.12.0 allows remote attackers to inject JavaScript code via admi...
CVE-2024-9979MEDIUM5.3A flaw was found in PyO3. This vulnerability causes a use-after-free issue, potentially leading to memory corruption or ...
CVE-2024-48948MEDIUM4.8The Elliptic package 6.5.7 for Node.js, in its for ECDSA implementation, does not correctly verify valid signatures if t...
CVE-2024-9977MEDIUM5.1A vulnerability, which was classified as critical, was found in MitraStar GPT-2541GNAC BR_g5.6_1.11(WVK.0)b26. Affected ...
CVE-2024-48278MEDIUM5.5Phpgurukul User Registration & Login and User Management System 3.2 is vulnerable to Cross Site Request Forgery (CSRF) v...
CVE-2024-49384MEDIUM4.3Excessive attack surface in acep-collector service due to binding to an unrestricted IP address. The following products ...
CVE-2024-49383MEDIUM4.3Excessive attack surface in acep-importer service due to binding to an unrestricted IP address. The following products a...
CVE-2024-49382MEDIUM4.3Excessive attack surface in archive-server service due to binding to an unrestricted IP address. The following products ...
CVE-2024-47674MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm: avoid leaving partial pfn mappings around in er...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now