2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-47968MEDIUM4.4Improper resource shutdown in middle of certain operations on some Solidigm DC Products may allow an attacker to potenti...
CVE-2024-47818MEDIUM6.5Saltcorn is an extensible, open source, no-code database application builder. A logged-in user with any role can delete ...
CVE-2024-47817MEDIUM6.1Lara-zeus Dynamic Dashboard simple way to manage widgets for your website landing page, and filament dashboard and Lara-...
CVE-2024-47814MEDIUM4.7Vim is an open source, command line text editor. A use-after-free was found in Vim < 9.1.0764. When closing a buffer (vi...
CVE-2024-47782MEDIUM5.4WikiDiscover is an extension designed for use with a CreateWiki managed farm to display wikis. Special:WikiDiscover is a...
CVE-2024-47781MEDIUM6.1CreateWiki is an extension used at Miraheze for requesting & creating wikis. The name of requested wikis is not escaped ...
CVE-2024-47974MEDIUM4.4Race condition during resource shutdown in some Solidigm DC Products may allow an attacker to potentially enable denial ...
CVE-2024-47973MEDIUM5.1In some Solidigm DC Products, a defect in device overprovisioning may provide information disclosure to an attacker.
CVE-2024-47967MEDIUM4.4Improper resource initialization handling in firmware of some Solidigm DC Products may allow an attacker to potentially ...
CVE-2024-47772MEDIUM6.1Discourse is an open source platform for community discussion. An attacker can execute arbitrary JavaScript on users' br...
CVE-2024-47610MEDIUM5.4InvenTree is an Open Source Inventory Management System. In affected versions of InvenTree it is possible for a register...
CVE-2024-45919MEDIUM6.5A security flaw has been discovered in Solvait version 24.4.2 that allows an attacker to elevate their privileges. By ma...
CVE-2024-45297MEDIUM4.3Discourse is an open source platform for community discussion. Users can see topics with a hidden tag if they know the l...
CVE-2024-45060MEDIUM6.1PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. One of the sample scripts in PhpSpreadsh...
CVE-2024-43789MEDIUM4.3Discourse is an open source platform for community discussion. A user can create a post with many replies, and then atte...
CVE-2024-43362MEDIUM5.4Cacti is an open source performance and fault management framework. The `fileurl` parameter is not properly sanitized wh...
CVE-2024-47976MEDIUM6.7Improper access removal handling in firmware of some Solidigm DC Products may allow an attacker with physical access to ...
CVE-2024-47972MEDIUM4Improper resource management in firmware of some Solidigm DC Products may allow an attacker to potentially control the p...
CVE-2024-47971MEDIUM6.5Improper error handling in firmware of some SSD DC Products may allow an attacker to enable denial of service.
CVE-2024-47079MEDIUM6.4Meshtastic is an open source, off-grid, decentralized, mesh network built to run on affordable, low-power devices. Mesht...
CVE-2024-45292MEDIUM5.4PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. `\PhpOffice\PhpSpreadsheet\Writer\Html` ...
CVE-2024-31228MEDIUM6.5Redis is an open source, in-memory database that persists on disk. Authenticated users can trigger a denial-of-service b...
CVE-2024-31227MEDIUM4.4Redis is an open source, in-memory database that persists on disk. An authenticated with sufficient privileges may creat...
CVE-2024-45894MEDIUM4.9BlueCMS 1.6 suffers from Arbitrary File Deletion via the file_name parameter in an /admin/database.php?act=del request.
CVE-2024-44674MEDIUM5.7D-Link COVR-2600R FW101b05 is vulnerable to Buffer Overflow. In the function sub_24E28, the HTTP_REFERER is obtained thr...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now