2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-33958 | HIGH | 7.5 | 0.4% | Aug 6, 2024 | SQL injection vulnerability in E-Negosyo System affecting version 1.0. An attacker could exploit this vulnerability by s... |
| CVE-2024-33957 | HIGH | 7.5 | 0.4% | Aug 6, 2024 | SQL injection vulnerability in E-Negosyo System affecting version 1.0. An attacker could exploit this vulnerability by s... |
| CVE-2024-41995 | HIGH | 7.5 | 0.5% | Aug 6, 2024 | Initialization of a resource with an insecure default vulnerability exists in JavaTM Platform Ver.12.89 and earlier. If ... |
| CVE-2024-7055 | HIGH | 8.8 | 1.1% | Aug 6, 2024 | A vulnerability was found in FFmpeg up to 7.0.1. It has been classified as critical. This affects the function pnm_decod... |
| CVE-2024-6203 | HIGH | 8.1 | 0.4% | Aug 6, 2024 | HaloITSM versions up to 2.146.1 are affected by a Password Reset Poisoning vulnerability. Poisoned password reset links ... |
| CVE-2024-5709 | HIGH | 8.8 | 1.0% | Aug 6, 2024 | The WPBakery Visual Composer plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and inclu... |
| CVE-2024-7506 | HIGH | 8.8 | 0.7% | Aug 6, 2024 | A vulnerability has been found in itsourcecode Tailoring Management System 1.0 and classified as critical. Affected by t... |
| CVE-2024-7009 | HIGH | 7.1 | 13.9% | Aug 6, 2024 | Unsanitized user-input in Calibre <= 7.15.0 allow users with permissions to perform full-text searches to achieve SQL in... |
| CVE-2024-6781 | HIGH | 7.5 | 62.7% | Aug 6, 2024 | Path traversal in Calibre <= 7.14.0 allow unauthenticated attackers to achieve arbitrary file read. |
| CVE-2024-28962 | HIGH | 7.5 | 0.4% | Aug 6, 2024 | Dell Command | Update, Dell Update, and Alienware Update UWP, versions prior to 5.4, contain an Exposed Dangerous Method... |
| CVE-2024-7497 | HIGH | 8.8 | 0.7% | Aug 6, 2024 | A vulnerability was found in itsourcecode Airline Reservation System 1.0 and classified as critical. This issue affects ... |
| CVE-2024-7496 | HIGH | 8.8 | 0.7% | Aug 6, 2024 | A vulnerability has been found in itsourcecode Airline Reservation System 1.0 and classified as critical. This vulnerabi... |
| CVE-2024-7485 | HIGH | 7.2 | 0.4% | Aug 6, 2024 | The Traffic Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'page' parameter in the 'U... |
| CVE-2024-7484 | HIGH | 7.2 | 0.9% | Aug 6, 2024 | The CRM Perks Forms plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file validation on ... |
| CVE-2024-6315 | HIGH | 8.8 | 1.0% | Aug 6, 2024 | The Blox Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation i... |
| CVE-2024-7547 | HIGH | 7.8 | 0.3% | Aug 6, 2024 | oFono SMS Decoder Stack-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attack... |
| CVE-2024-7546 | HIGH | 7.8 | 0.3% | Aug 6, 2024 | oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker... |
| CVE-2024-7545 | HIGH | 7.8 | 0.3% | Aug 6, 2024 | oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker... |
| CVE-2024-7544 | HIGH | 7.8 | 0.3% | Aug 6, 2024 | oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker... |
| CVE-2024-7543 | HIGH | 7.8 | 0.3% | Aug 6, 2024 | oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker... |
| CVE-2024-7539 | HIGH | 7.8 | 0.3% | Aug 6, 2024 | oFono CUSD Stack-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows local attackers to execut... |
| CVE-2024-7538 | HIGH | 7.8 | 0.3% | Aug 6, 2024 | oFono CUSD AT Command Stack-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows local attacker... |
| CVE-2024-42352 | HIGH | 7.5 | 0.6% | Aug 5, 2024 | Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. `nuxt/icon` pro... |
| CVE-2024-34344 | HIGH | 8.8 | 0.8% | Aug 5, 2024 | Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. Due to the insu... |
| CVE-2024-23657 | HIGH | 8.8 | 1.1% | Aug 5, 2024 | Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. Nuxt Devtools i... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now