2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-21204 | MEDIUM | 4.9 | 0.9% | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected... |
| CVE-2024-21203 | MEDIUM | 4.9 | 0.9% | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: FTS). Supported versions that are affecte... |
| CVE-2024-21202 | MEDIUM | 6.1 | 0.2% | Oct 15, 2024 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PIA Core Technology). S... |
| CVE-2024-21201 | MEDIUM | 4.9 | 0.9% | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a... |
| CVE-2024-21200 | MEDIUM | 4.9 | 0.9% | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a... |
| CVE-2024-21199 | MEDIUM | 4.9 | 0.9% | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are... |
| CVE-2024-21198 | MEDIUM | 4.9 | 0.9% | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affecte... |
| CVE-2024-21197 | MEDIUM | 4.9 | 0.9% | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions t... |
| CVE-2024-21196 | MEDIUM | 6.5 | 0.9% | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: X Plugin). Supported versions that are af... |
| CVE-2024-21194 | MEDIUM | 4.9 | 0.9% | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are... |
| CVE-2024-21193 | MEDIUM | 4.9 | 0.9% | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected... |
| CVE-2024-21192 | MEDIUM | 4.4 | 0.2% | Oct 15, 2024 | Vulnerability in the Oracle Enterprise Manager for Fusion Middleware product of Oracle Fusion Middleware (component: Web... |
| CVE-2024-9676 | MEDIUM | 6.5 | 1.3% | Oct 15, 2024 | A vulnerability was found in Podman, Buildah, and CRI-O. A symlink traversal vulnerability in the containers/storage lib... |
| CVE-2024-48913 | MEDIUM | 5.9 | 0.3% | Oct 15, 2024 | Hono, a web framework, prior to version 4.6.5 is vulnerable to bypass of cross-site request forgery (CSRF) middleware by... |
| CVE-2024-48624 | MEDIUM | 5.3 | 0.2% | Oct 15, 2024 | In segments\edit.php of DomainMOD below v4.12.0, the segid parameter in the GET request can be exploited to cause a refl... |
| CVE-2024-48623 | MEDIUM | 5.3 | 0.2% | Oct 15, 2024 | In queue\index.php of DomainMOD below v4.12.0, the list_id and domain_id parameters in the GET request can be exploited ... |
| CVE-2024-48622 | MEDIUM | 6.6 | 0.3% | Oct 15, 2024 | A cross-site scripting (XSS) issue in DomainMOD below v4.12.0 allows remote attackers to inject JavaScript code via admi... |
| CVE-2024-9979 | MEDIUM | 5.3 | 0.2% | Oct 15, 2024 | A flaw was found in PyO3. This vulnerability causes a use-after-free issue, potentially leading to memory corruption or ... |
| CVE-2024-48948 | MEDIUM | 4.8 | 0.6% | Oct 15, 2024 | The Elliptic package 6.5.7 for Node.js, in its for ECDSA implementation, does not correctly verify valid signatures if t... |
| CVE-2024-9977 | MEDIUM | 5.1 | 22.1% | Oct 15, 2024 | A vulnerability, which was classified as critical, was found in MitraStar GPT-2541GNAC BR_g5.6_1.11(WVK.0)b26. Affected ... |
| CVE-2024-48278 | MEDIUM | 5.5 | 0.2% | Oct 15, 2024 | Phpgurukul User Registration & Login and User Management System 3.2 is vulnerable to Cross Site Request Forgery (CSRF) v... |
| CVE-2024-49384 | MEDIUM | 4.3 | 0.2% | Oct 15, 2024 | Excessive attack surface in acep-collector service due to binding to an unrestricted IP address. The following products ... |
| CVE-2024-49383 | MEDIUM | 4.3 | 0.2% | Oct 15, 2024 | Excessive attack surface in acep-importer service due to binding to an unrestricted IP address. The following products a... |
| CVE-2024-49382 | MEDIUM | 4.3 | 0.2% | Oct 15, 2024 | Excessive attack surface in archive-server service due to binding to an unrestricted IP address. The following products ... |
| CVE-2024-47674 | MEDIUM | 5.5 | 0.2% | Oct 15, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm: avoid leaving partial pfn mappings around in er... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now