2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-46971HIGH7.8Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory...
CVE-2024-9945MEDIUM5.3An information-disclosure vulnerability exists in Fortra's GoAnywhere MFT application prior to version 7.7.0 that allows...
CVE-2024-55887HIGH8.6Ucum-java is a FHIR Java library providing UCUM Services. In versions prior to 1.0.9, XML parsing performed by the UcumE...
CVE-2024-55661HIGH8.8Laravel Pulse is a real-time application performance monitoring tool and dashboard for Laravel applications. A vulnerabi...
CVE-2024-54139CRITICAL9.6Combodo iTop is an open source and web-based IT service management platform. Prior to versions 2.7.11, 3.1.2, and 3.2.0....
CVE-2024-54351HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Thomas K Landis Fancy Roller Scroller fancy-roller-scroller allows St...
CVE-2024-54349MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mashiurz Plain Pos...
CVE-2024-54347HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BAKKBONE Australia...
CVE-2024-54346MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sonalsinha21 Barte...
CVE-2024-54345MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sonalsinha21 Bicyc...
CVE-2024-54344HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fahad Mahmood WP Q...
CVE-2024-54343HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in thehowarde Connect...
CVE-2024-54342HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in STAGGS STAGGS stag...
CVE-2024-54341HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LabelGrid LabelGri...
CVE-2024-54340HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sylviavanos Simple...
CVE-2024-54339HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jbd7 geoFlickr geo...
CVE-2024-54338MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in christer_f Hello E...
CVE-2024-54337HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in DevriX DX Dark Site devrix-dark-site allows Stored XSS.This issue aff...
CVE-2024-54336HIGH8.8Authentication Bypass Using an Alternate Path or Channel vulnerability in Projectopia Projectopia projectopia-core allow...
CVE-2024-54335HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ImmoSoft ImmoToolB...
CVE-2024-54334MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in zeshanb Quran Phra...
CVE-2024-54333HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in silverplugins217 C...
CVE-2024-54330HIGH7.2Server-Side Request Forgery (SSRF) vulnerability in hurraki Hurrakify hurrakify allows Server Side Request Forgery.This ...
CVE-2024-54329HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metup CleverNode R...
CVE-2024-54328HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in linknacional Invoi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now