2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-54234 | CRITICAL | 9.3 | 0.5% | Dec 13, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wp-buy Limit Login... |
| CVE-2024-54233 | HIGH | 7.1 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in overclokk Advanced... |
| CVE-2024-54231 | HIGH | 7.1 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Anzar Ahmed Ni Woo... |
| CVE-2024-47984 | MEDIUM | 6.5 | 0.5% | Dec 13, 2024 | Dell RecoverPoint for Virtual Machines 6.0.x contains Denial of Service vulnerability. A User with Remote access could p... |
| CVE-2024-28980 | CRITICAL | 9.8 | 0.5% | Dec 13, 2024 | Dell RecoverPoint for VMs, version(s) 6.0.x contain(s) a Use of a Broken or Risky Cryptographic Algorithm vulnerability ... |
| CVE-2024-24902 | MEDIUM | 5.5 | 0.2% | Dec 13, 2024 | Dell RecoverPoint for Virtual Machines 6.0.x contains an Improper access control vulnerability. A low privileged local a... |
| CVE-2024-55889 | HIGH | 7.2 | 2.1% | Dec 13, 2024 | phpMyFAQ is an open source FAQ web application. Prior to version 3.2.10, a vulnerability exists in the FAQ Record compon... |
| CVE-2024-48008 | MEDIUM | 6.5 | 0.6% | Dec 13, 2024 | Dell RecoverPoint for Virtual Machines 6.0.x contains a OS Command Injection vulnerability. An Low privileged remote att... |
| CVE-2024-48007 | CRITICAL | 9.8 | 0.4% | Dec 13, 2024 | Dell RecoverPoint for Virtual Machines 6.0.x contains use of hard-coded credentials vulnerability. A Remote unauthentica... |
| CVE-2024-38488 | CRITICAL | 9.8 | 0.3% | Dec 13, 2024 | Dell RecoverPoint for Virtual Machines 6.0.x contains a vulnerability. An improper Restriction of Excessive Authenticati... |
| CVE-2024-22461 | HIGH | 8.8 | 0.7% | Dec 13, 2024 | Dell RecoverPoint for Virtual Machines 6.0.x contains an OS Command injection vulnerability. A low privileged remote att... |
| CVE-2024-11986 | CRITICAL | 9.6 | 0.6% | Dec 13, 2024 | Improper input handling in the 'Host Header' allows an unauthenticated attacker to store a payload in web application lo... |
| CVE-2024-9608 | MEDIUM | 6.1 | 0.3% | Dec 13, 2024 | The MyParcel plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg withou... |
| CVE-2024-21577 | CRITICAL | 10 | 0.6% | Dec 13, 2024 | ComfyUI-Ace-Nodes is vulnerable to Code Injection. The ACE_ExpressionEval node contains an eval() in its entrypoint func... |
| CVE-2024-21576 | CRITICAL | 10 | 0.5% | Dec 13, 2024 | ComfyUI-Bmad-Nodes is vulnerable to Code Injection. The issue stems from a validation bypass in the BuildColorRangeHSVAd... |
| CVE-2024-11827 | MEDIUM | 6.4 | 0.3% | Dec 13, 2024 | The Out of the Block: OpenStreetMap plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's o... |
| CVE-2024-52066 | HIGH | 7.8 | 0.3% | Dec 13, 2024 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Routin... |
| CVE-2024-52065 | HIGH | 7.1 | 0.2% | Dec 13, 2024 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional on non-... |
| CVE-2024-52064 | HIGH | 7.1 | 0.2% | Dec 13, 2024 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Core L... |
| CVE-2024-52063 | HIGH | 8.6 | 0.3% | Dec 13, 2024 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Core L... |
| CVE-2024-52062 | HIGH | 7.8 | 0.2% | Dec 13, 2024 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Core L... |
| CVE-2024-52061 | CRITICAL | 9.8 | 0.4% | Dec 13, 2024 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Core L... |
| CVE-2024-52060 | HIGH | 7.8 | 0.3% | Dec 13, 2024 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Routin... |
| CVE-2024-52059 | HIGH | 7.8 | 0.2% | Dec 13, 2024 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Heap-based Buffer Overflow, Integer Overflow or ... |
| CVE-2024-52058 | HIGH | 7.8 | 0.6% | Dec 13, 2024 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in RTI Connext ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now