2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-12553MEDIUM6.5GeoVision GV-ASManager Missing Authorization Information Disclosure Vulnerability. This vulnerability allows remote atta...
CVE-2024-12552HIGH7.8Wacom Center WTabletServicePro Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local ...
CVE-2024-55956CRITICAL9.8In Cleo Harmony before 5.8.0.24, VLTrader before 5.8.0.24, and LexiCom before 5.8.0.24, an unauthenticated user can impo...
CVE-2024-55946HIGH8.7Playloom Engine is an open-source, high-performance game development engine. Engine Beta v0.0.1 has a security vulnerabi...
CVE-2024-12632——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-55956. Reason: This candidate is a duplicate of ...
CVE-2024-55890MEDIUM6.9D-Tale is a visualizer for pandas data structures. Prior to version 3.16.1, users hosting D-Tale publicly can be vulnera...
CVE-2024-47892HIGH7.8Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory...
CVE-2024-46971HIGH7.8Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory...
CVE-2024-9945MEDIUM5.3An information-disclosure vulnerability exists in Fortra's GoAnywhere MFT application prior to version 7.7.0 that allows...
CVE-2024-55887HIGH8.6Ucum-java is a FHIR Java library providing UCUM Services. In versions prior to 1.0.9, XML parsing performed by the UcumE...
CVE-2024-55661HIGH8.8Laravel Pulse is a real-time application performance monitoring tool and dashboard for Laravel applications. A vulnerabi...
CVE-2024-54139CRITICAL9.6Combodo iTop is an open source and web-based IT service management platform. Prior to versions 2.7.11, 3.1.2, and 3.2.0....
CVE-2024-54351HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Thomas K Landis Fancy Roller Scroller fancy-roller-scroller allows St...
CVE-2024-54349MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mashiurz Plain Pos...
CVE-2024-54347HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BAKKBONE Australia...
CVE-2024-54346MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sonalsinha21 Barte...
CVE-2024-54345MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sonalsinha21 Bicyc...
CVE-2024-54344HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fahad Mahmood WP Q...
CVE-2024-54343HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in thehowarde Connect...
CVE-2024-54342HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in STAGGS STAGGS stag...
CVE-2024-54341HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LabelGrid LabelGri...
CVE-2024-54340HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sylviavanos Simple...
CVE-2024-54339HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jbd7 geoFlickr geo...
CVE-2024-54338MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in christer_f Hello E...
CVE-2024-54337HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in DevriX DX Dark Site devrix-dark-site allows Stored XSS.This issue aff...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now