2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4389 | HIGH | 8.8 | 1.0% | Aug 14, 2024 | The Slider and Carousel slider by Depicter plugin for WordPress is vulnerable to arbitrary file uploads due to missing f... |
| CVE-2024-41864 | HIGH | 7.8 | 0.3% | Aug 14, 2024 | Substance3D - Designer versions 13.1.2 and earlier are affected by an out-of-bounds write vulnerability that could resul... |
| CVE-2024-41858 | HIGH | 7.8 | 0.3% | Aug 14, 2024 | InCopy versions 18.5.2, 19.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could resu... |
| CVE-2024-7729 | HIGH | 7.5 | 0.6% | Aug 14, 2024 | The CAYIN Technology CMS lacks proper access control, allowing unauthenticated remote attackers to download arbitrary CG... |
| CVE-2024-7728 | HIGH | 7.2 | 0.7% | Aug 14, 2024 | The specific CGI of the CAYIN Technology CMS does not properly validate user input, allowing a remote attacker with admi... |
| CVE-2024-38653 | HIGH | 7.5 | 92.0% | Aug 14, 2024 | XXE in SmartDeviceServer in Ivanti Avalanche 6.3.1 allows a remote unauthenticated attacker to read arbitrary files on t... |
| CVE-2024-37399 | HIGH | 7.5 | 27.8% | Aug 14, 2024 | A NULL pointer dereference in WLAvalancheService in Ivanti Avalanche 6.3.1 allows a remote unauthenticated attacker to c... |
| CVE-2024-37373 | HIGH | 7.2 | 1.6% | Aug 14, 2024 | Improper input validation in the Central Filestore in Ivanti Avalanche 6.3.1 allows a remote authenticated attacker with... |
| CVE-2024-36136 | HIGH | 7.5 | 2.2% | Aug 14, 2024 | An off-by-one error in WLInfoRailService in Ivanti Avalanche 6.3.1 allows a remote unauthenticated attacker to crash the... |
| CVE-2024-7754 | HIGH | 7.5 | 0.5% | Aug 14, 2024 | A vulnerability was found in SourceCodester Clinics Patient Management System 1.0. It has been rated as critical. This i... |
| CVE-2024-7753 | HIGH | 7.5 | 0.9% | Aug 14, 2024 | A vulnerability was found in SourceCodester Clinics Patient Management System 1.0. It has been declared as problematic. ... |
| CVE-2024-38163 | HIGH | 7.8 | 0.7% | Aug 14, 2024 | Windows Update Stack Elevation of Privilege Vulnerability |
| CVE-2024-7751 | HIGH | 7.5 | 0.5% | Aug 13, 2024 | A vulnerability was found in SourceCodester Clinics Patient Management System 1.0 and classified as critical. Affected b... |
| CVE-2024-7750 | HIGH | 7.5 | 0.5% | Aug 13, 2024 | A vulnerability has been found in SourceCodester Clinics Patient Management System 1.0 and classified as critical. Affec... |
| CVE-2024-7738 | HIGH | 7.8 | 0.3% | Aug 13, 2024 | A vulnerability, which was classified as problematic, has been found in yzane vscode-markdown-pdf 1.5.0. Affected by thi... |
| CVE-2024-7570 | HIGH | 8.1 | 0.5% | Aug 13, 2024 | Improper certificate validation in Ivanti ITSM on-prem and Neurons for ITSM Versions 2023.4 and earlier allows a remote ... |
| CVE-2024-38215 | HIGH | 7.8 | 0.7% | Aug 13, 2024 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
| CVE-2024-38211 | HIGH | 8.2 | 0.9% | Aug 13, 2024 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2024-38201 | HIGH | 7 | 0.6% | Aug 13, 2024 | Azure Stack Hub Elevation of Privilege Vulnerability |
| CVE-2024-38198 | HIGH | 7.5 | 0.8% | Aug 13, 2024 | Windows Print Spooler Elevation of Privilege Vulnerability |
| CVE-2024-38196 | HIGH | 7.8 | 5.5% | Aug 13, 2024 | Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| CVE-2024-38195 | HIGH | 7.8 | 0.5% | Aug 13, 2024 | Azure CycleCloud Remote Code Execution Vulnerability |
| CVE-2024-38193 | HIGH | 7.8 | 27.6% | Aug 13, 2024 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
| CVE-2024-38191 | HIGH | 7.8 | 0.5% | Aug 13, 2024 | Kernel Streaming Service Driver Elevation of Privilege Vulnerability |
| CVE-2024-38189 | HIGH | 8.8 | 7.9% | Aug 13, 2024 | Microsoft Project Remote Code Execution Vulnerability |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now