2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12553 | MEDIUM | 6.5 | 0.6% | Dec 13, 2024 | GeoVision GV-ASManager Missing Authorization Information Disclosure Vulnerability. This vulnerability allows remote atta... |
| CVE-2024-12552 | HIGH | 7.8 | 0.2% | Dec 13, 2024 | Wacom Center WTabletServicePro Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local ... |
| CVE-2024-55956 | CRITICAL | 9.8 | 93.8% | Dec 13, 2024 | In Cleo Harmony before 5.8.0.24, VLTrader before 5.8.0.24, and LexiCom before 5.8.0.24, an unauthenticated user can impo... |
| CVE-2024-55946 | HIGH | 8.7 | 0.4% | Dec 13, 2024 | Playloom Engine is an open-source, high-performance game development engine. Engine Beta v0.0.1 has a security vulnerabi... |
| CVE-2024-12632 | — | — | — | Dec 13, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-55956. Reason: This candidate is a duplicate of ... |
| CVE-2024-55890 | MEDIUM | 6.9 | 1.1% | Dec 13, 2024 | D-Tale is a visualizer for pandas data structures. Prior to version 3.16.1, users hosting D-Tale publicly can be vulnera... |
| CVE-2024-47892 | HIGH | 7.8 | 0.1% | Dec 13, 2024 | Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory... |
| CVE-2024-46971 | HIGH | 7.8 | 0.1% | Dec 13, 2024 | Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory... |
| CVE-2024-9945 | MEDIUM | 5.3 | 0.3% | Dec 13, 2024 | An information-disclosure vulnerability exists in Fortra's GoAnywhere MFT application prior to version 7.7.0 that allows... |
| CVE-2024-55887 | HIGH | 8.6 | 0.5% | Dec 13, 2024 | Ucum-java is a FHIR Java library providing UCUM Services. In versions prior to 1.0.9, XML parsing performed by the UcumE... |
| CVE-2024-55661 | HIGH | 8.8 | 28.6% | Dec 13, 2024 | Laravel Pulse is a real-time application performance monitoring tool and dashboard for Laravel applications. A vulnerabi... |
| CVE-2024-54139 | CRITICAL | 9.6 | 0.2% | Dec 13, 2024 | Combodo iTop is an open source and web-based IT service management platform. Prior to versions 2.7.11, 3.1.2, and 3.2.0.... |
| CVE-2024-54351 | HIGH | 7.1 | 0.2% | Dec 13, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Thomas K Landis Fancy Roller Scroller fancy-roller-scroller allows St... |
| CVE-2024-54349 | MEDIUM | 6.5 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mashiurz Plain Pos... |
| CVE-2024-54347 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BAKKBONE Australia... |
| CVE-2024-54346 | MEDIUM | 6.5 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sonalsinha21 Barte... |
| CVE-2024-54345 | MEDIUM | 6.5 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sonalsinha21 Bicyc... |
| CVE-2024-54344 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fahad Mahmood WP Q... |
| CVE-2024-54343 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in thehowarde Connect... |
| CVE-2024-54342 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in STAGGS STAGGS stag... |
| CVE-2024-54341 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LabelGrid LabelGri... |
| CVE-2024-54340 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sylviavanos Simple... |
| CVE-2024-54339 | HIGH | 7.1 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jbd7 geoFlickr geo... |
| CVE-2024-54338 | MEDIUM | 6.5 | 0.3% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in christer_f Hello E... |
| CVE-2024-54337 | HIGH | 7.1 | 0.2% | Dec 13, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in DevriX DX Dark Site devrix-dark-site allows Stored XSS.This issue aff... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now