2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-6975 | HIGH | 8.8 | 0.3% | Jul 31, 2024 | Cato Networks Windows SDP Client Local Privilege Escalation via openssl configuration file. This issue affects SDP Clien... |
| CVE-2024-6974 | HIGH | 7.8 | 0.2% | Jul 31, 2024 | Cato Networks Windows SDP Client Local Privilege Escalation via self-upgradeThis issue affects SDP Client: before 5.10.3... |
| CVE-2024-6973 | HIGH | 8.8 | 0.8% | Jul 31, 2024 | Remote Code Execution in Cato Windows SDP client via crafted URLs. This issue affects Windows SDP Client before 5.10.34. |
| CVE-2024-41950 | HIGH | 7.5 | 1.2% | Jul 31, 2024 | Haystack is an end-to-end LLM framework that allows you to build applications powered by LLMs, Transformer models, vecto... |
| CVE-2024-37901 | HIGH | 8.8 | 1.1% | Jul 31, 2024 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any user with e... |
| CVE-2024-7340 | HIGH | 8.8 | 5.0% | Jul 31, 2024 | The Weave server API allows remote users to fetch files from a specific directory, but due to a lack of input validation... |
| CVE-2024-3083 | HIGH | 8.3 | 0.2% | Jul 31, 2024 | A “CWE-352: Cross-Site Request Forgery (CSRF)” can be exploited by remote attackers to perform state-changing operations... |
| CVE-2024-31202 | HIGH | 7.8 | 0.2% | Jul 31, 2024 | A “CWE-732: Incorrect Permission Assignment for Critical Resource” in the ThermoscanIP installation folder allows a loca... |
| CVE-2024-7308 | HIGH | 8.8 | 0.6% | Jul 31, 2024 | A vulnerability was found in SourceCodester Establishment Billing Management System 1.0 and classified as critical. Affe... |
| CVE-2024-7307 | HIGH | 8.8 | 0.6% | Jul 31, 2024 | A vulnerability has been found in SourceCodester Establishment Billing Management System 1.0 and classified as critical.... |
| CVE-2024-37142 | HIGH | 7.8 | 0.2% | Jul 31, 2024 | Dell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker... |
| CVE-2024-37129 | HIGH | 7.8 | 0.2% | Jul 31, 2024 | Dell Inventory Collector, versions prior to 12.3.0.6 contains a Path Traversal vulnerability. A local authenticated mali... |
| CVE-2024-37127 | HIGH | 7.8 | 0.2% | Jul 31, 2024 | Dell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker... |
| CVE-2024-32857 | HIGH | 7.8 | 0.2% | Jul 31, 2024 | Dell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacke... |
| CVE-2024-7306 | HIGH | 8.8 | 0.6% | Jul 31, 2024 | A vulnerability, which was classified as critical, was found in SourceCodester Establishment Billing Management System 1... |
| CVE-2024-7290 | HIGH | 8.8 | 0.5% | Jul 31, 2024 | A vulnerability classified as critical has been found in SourceCodester Establishment Billing Management System 1.0. Thi... |
| CVE-2024-7289 | HIGH | 8.8 | 0.6% | Jul 31, 2024 | A vulnerability was found in SourceCodester Establishment Billing Management System 1.0. It has been rated as critical. ... |
| CVE-2024-6770 | HIGH | 7.2 | 0.4% | Jul 31, 2024 | The Lifetime free Drag & Drop Contact Form Builder for WordPress VForm plugin for WordPress is vulnerable to Stored Cros... |
| CVE-2024-42381 | HIGH | 8.3 | 0.6% | Jul 31, 2024 | os/linux/elf.rb in Homebrew brew before 4.2.20 uses ldd to load ELF files obtained from untrusted sources, which allows ... |
| CVE-2024-7288 | HIGH | 8.8 | 0.5% | Jul 31, 2024 | A vulnerability was found in SourceCodester Establishment Billing Management System 1.0. It has been declared as critica... |
| CVE-2024-7287 | HIGH | 8.8 | 0.5% | Jul 31, 2024 | A vulnerability was found in SourceCodester Establishment Billing Management System 1.0. It has been classified as criti... |
| CVE-2024-39949 | HIGH | 7.5 | 0.6% | Jul 31, 2024 | A vulnerability has been found in Dahua products. Attackers can send carefully crafted data packets to the interface wit... |
| CVE-2024-39948 | HIGH | 7.5 | 0.6% | Jul 31, 2024 | A vulnerability has been found in Dahua products. Attackers can send carefully crafted data packets to the interface wit... |
| CVE-2024-39946 | HIGH | 7.2 | 0.4% | Jul 31, 2024 | A vulnerability has been found in Dahua products.After obtaining the administrator's username and password, the attacker... |
| CVE-2024-39944 | HIGH | 7.5 | 0.6% | Jul 31, 2024 | A vulnerability has been found in Dahua products.Attackers can send carefully crafted data packets to the interface with... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now