2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1578 | MEDIUM | 5.3 | 0.2% | Sep 16, 2024 | The MiCard PLUS Ci and MiCard PLUS BLE reader products developed by rf IDEAS and rebranded by NT-ware have a firmware fa... |
| CVE-2024-8780 | MEDIUM | 6.5 | 0.4% | Sep 16, 2024 | OMFLOW from The SYSCOM Group does not properly restrict the query range of its data query functionality, allowing remote... |
| CVE-2024-8778 | MEDIUM | 6.5 | 0.6% | Sep 16, 2024 | OMFLOW from The SYSCOM Group does not properly validate user input of the download functionality, allowing remote attack... |
| CVE-2024-8776 | MEDIUM | 6.1 | 0.3% | Sep 16, 2024 | SmartRobot from INTUMIT does not properly validate a specific page parameter, allowing unautheticated remote attackers t... |
| CVE-2024-46942 | MEDIUM | 6.5 | 0.4% | Sep 15, 2024 | In OpenDaylight Model-Driven Service Abstraction Layer (MD-SAL) through 13.0.1, a controller with a follower role can co... |
| CVE-2024-46918 | MEDIUM | 4.9 | 0.4% | Sep 15, 2024 | app/Controller/UserLoginProfilesController.php in MISP before 2.4.198 does not prevent an org admin from viewing sensiti... |
| CVE-2024-44059 | MEDIUM | 5.4 | 0.2% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ronald Huereca Cus... |
| CVE-2024-44058 | MEDIUM | 5.4 | 0.3% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreat... |
| CVE-2024-44057 | MEDIUM | 5.4 | 0.3% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreat... |
| CVE-2024-44056 | MEDIUM | 5.4 | 0.3% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreat... |
| CVE-2024-44054 | MEDIUM | 5.4 | 0.3% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreat... |
| CVE-2024-44053 | MEDIUM | 6.1 | 0.3% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Mohammad Ar... |
| CVE-2024-45460 | MEDIUM | 4.8 | 0.2% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in manu225 Flipping C... |
| CVE-2024-45459 | MEDIUM | 6.1 | 0.3% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PickPlugins Produc... |
| CVE-2024-45458 | MEDIUM | 6.1 | 0.3% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spiffy Plugins Spi... |
| CVE-2024-45457 | MEDIUM | 5.4 | 0.2% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spiffy Plugins Spi... |
| CVE-2024-45456 | MEDIUM | 5.4 | 0.2% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in JoomUnited WP Meta... |
| CVE-2024-45455 | MEDIUM | 4.8 | 0.2% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in JoomUnited WP Meta... |
| CVE-2024-44063 | MEDIUM | 5.4 | 0.2% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Happyforms ... |
| CVE-2024-44062 | MEDIUM | 5.4 | 0.3% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Hiroaki Miy... |
| CVE-2024-44060 | MEDIUM | 6.1 | 0.3% | Sep 15, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Jennifer Ha... |
| CVE-2024-8867 | MEDIUM | 5.4 | 0.5% | Sep 15, 2024 | A vulnerability was found in Perfex CRM 3.1.6. It has been declared as problematic. This vulnerability affects unknown c... |
| CVE-2024-8866 | MEDIUM | 6.1 | 0.6% | Sep 15, 2024 | A vulnerability was found in AutoCMS 5.4. It has been classified as problematic. This affects an unknown part of the fil... |
| CVE-2024-8865 | MEDIUM | 4.9 | 0.9% | Sep 15, 2024 | A vulnerability was found in composiohq composio up to 0.5.8 and classified as problematic. Affected by this issue is th... |
| CVE-2024-8863 | MEDIUM | 5.4 | 0.5% | Sep 14, 2024 | A vulnerability, which was classified as problematic, was found in aimhubio aim up to 3.24. Affected is the function dan... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now