2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-42738 | HIGH | 8.8 | 1.6% | Aug 13, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42737 | HIGH | 8.8 | 1.7% | Aug 13, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42736 | HIGH | 7.8 | 1.6% | Aug 13, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-5849 | HIGH | 7.1 | 0.4% | Aug 13, 2024 | An unauthenticated remote attacker may use a reflected XSS vulnerability to obtain information from a user or reboot the... |
| CVE-2024-38502 | HIGH | 7.1 | 0.3% | Aug 13, 2024 | An unauthenticated remote attacker may use stored XSS vulnerability to obtain information from a user or reboot the affe... |
| CVE-2024-43140 | HIGH | 8.8 | 0.6% | Aug 13, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in G5Theme Ultimate Bootstr... |
| CVE-2024-43138 | HIGH | 8.8 | 0.6% | Aug 13, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in MagePeople Team Event Ma... |
| CVE-2024-37287 | HIGH | 7.2 | 1.6% | Aug 13, 2024 | A flaw allowing arbitrary code execution was discovered in Kibana. An attacker with access to ML and Alerting connector ... |
| CVE-2024-35124 | HIGH | 7.5 | 0.5% | Aug 13, 2024 | A vulnerability in the combination of the OpenBMC's FW1050.00 through FW1050.10, FW1030.00 through FW1030.50, and FW1020... |
| CVE-2024-43135 | HIGH | 8.8 | 0.5% | Aug 13, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Themewinter WPCafe allow... |
| CVE-2024-43131 | HIGH | 7.5 | 0.5% | Aug 13, 2024 | Incorrect Authorization vulnerability in WPWeb Docket (WooCommerce Collections / Wishlist / Watchlist) allows Accessing ... |
| CVE-2024-43129 | HIGH | 8.8 | 0.6% | Aug 13, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPDeveloper BetterDocs a... |
| CVE-2024-43128 | HIGH | 7.3 | 0.3% | Aug 13, 2024 | Improper Control of Generation of Code ('Code Injection') vulnerability in WC Product Table WooCommerce Product Table Li... |
| CVE-2024-43121 | HIGH | 7.2 | 0.5% | Aug 13, 2024 | Improper Privilege Management vulnerability in realmag777 HUSKY allows Privilege Escalation.This issue affects HUSKY: fr... |
| CVE-2024-40697 | HIGH | 7.5 | 0.5% | Aug 13, 2024 | IBM Common Licensing 9.0 does not require that users should have strong passwords by default, which makes it easier for ... |
| CVE-2024-38787 | HIGH | 7.5 | 0.4% | Aug 13, 2024 | Insertion of Sensitive Information Into Sent Data vulnerability in Javier Carazo Import and export users and customers i... |
| CVE-2024-38749 | HIGH | 7.5 | 0.4% | Aug 13, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Olive Themes Olive One Click Demo Import all... |
| CVE-2024-38747 | HIGH | 7.5 | 0.4% | Aug 13, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in HitPay Payment Solutions Pte Ltd HitPay Paym... |
| CVE-2024-38724 | HIGH | 7.1 | 0.2% | Aug 13, 2024 | Cross-Site Request Forgery (CSRF), Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scrip... |
| CVE-2024-38699 | HIGH | 7.5 | 0.4% | Aug 13, 2024 | Missing Authorization vulnerability in WP Swings Wallet System for WooCommerce allows Accessing Functionality Not Proper... |
| CVE-2024-37935 | HIGH | 7.5 | 0.4% | Aug 13, 2024 | Missing Authorization vulnerability in anhvnit Woocommerce OpenPos allows Accessing Functionality Not Properly Constrain... |
| CVE-2024-41977 | HIGH | 8 | 0.4% | Aug 13, 2024 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.1), RUGGEDCOM... |
| CVE-2024-41976 | HIGH | 8.8 | 0.8% | Aug 13, 2024 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.1), RUGGEDCOM... |
| CVE-2024-41939 | HIGH | 8.8 | 0.5% | Aug 13, 2024 | A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly enfor... |
| CVE-2024-41908 | HIGH | 7.8 | 0.2% | Aug 13, 2024 | A vulnerability has been identified in NX (All versions < V2406.3000). The affected applications contains an out of boun... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now