2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-39182 | HIGH | 7.5 | 0.4% | Jul 5, 2024 | An information disclosure vulnerability in ISPmanager v6.98.0 allows attackers to access sensitive details of the root u... |
| CVE-2024-33862 | HIGH | 7.5 | 0.6% | Jul 5, 2024 | A buffer-management vulnerability in OPC Foundation OPCFoundation.NetStandard.Opc.Ua.Core before 1.05.374.54 could allow... |
| CVE-2024-5753 | HIGH | 7.5 | 0.6% | Jul 5, 2024 | vanna-ai/vanna version v0.3.4 is vulnerable to SQL injection in some file-critical functions such as `pg_read_file()`. T... |
| CVE-2024-39696 | HIGH | 8.1 | 0.5% | Jul 5, 2024 | Evmos is a decentralized Ethereum Virtual Machine chain on the Cosmos Network. Prior to version 19.0.0, a user can creat... |
| CVE-2024-39689 | HIGH | 7.5 | 1.0% | Jul 5, 2024 | Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verify... |
| CVE-2024-39023 | HIGH | 8.8 | 0.3% | Jul 5, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via admin/info_deal.php?mudi=ad... |
| CVE-2024-39022 | HIGH | 8.8 | 0.3% | Jul 5, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/infoSys_deal.php?mud... |
| CVE-2024-34361 | HIGH | 8.8 | 2.8% | Jul 5, 2024 | Pi-hole is a DNS sinkhole that protects devices from unwanted content without installing any client-side software. A vul... |
| CVE-2024-39687 | HIGH | 7.2 | 0.6% | Jul 5, 2024 | Fedify is a TypeScript library for building federated server apps powered by ActivityPub and other standards. At present... |
| CVE-2024-39321 | HIGH | 7.5 | 0.6% | Jul 5, 2024 | Traefik is an HTTP reverse proxy and load balancer. Versions prior to 2.11.6, 3.0.4, and 3.1.0-rc3 have a vulnerability ... |
| CVE-2024-37903 | HIGH | 8.2 | 0.5% | Jul 5, 2024 | Mastodon is a self-hosted, federated microblogging platform. Starting in version 2.6.0 and prior to versions 4.1.18 and ... |
| CVE-2024-37767 | HIGH | 7.5 | 0.4% | Jul 5, 2024 | Insecure permissions in the component /api/admin/user of 14Finger v1.1 allows attackers to access all user information v... |
| CVE-2024-27715 | HIGH | 8.2 | 0.4% | Jul 5, 2024 | An issue in Eskooly Free Online School management Software v.3.0 and before allows a remote attacker to escalate privile... |
| CVE-2024-27713 | HIGH | 8.8 | 0.6% | Jul 5, 2024 | An issue in Eskooly Free Online School management Software v.3.0 and before allows a remote attacker to escalate privile... |
| CVE-2024-27711 | HIGH | 8.8 | 0.4% | Jul 5, 2024 | An issue in Eskooly Free Online School management Software v.3.0 and before allows a remote attacker to escalate privile... |
| CVE-2024-39210 | HIGH | 7.5 | 0.8% | Jul 5, 2024 | Best House Rental Management System v1.0 was discovered to contain an arbitrary file read vulnerability via the Page par... |
| CVE-2024-37769 | HIGH | 8.8 | 0.5% | Jul 5, 2024 | Insecure permissions in 14Finger v1.1 allow attackers to escalate privileges from normal user to Administrator via a cra... |
| CVE-2024-39027 | HIGH | 7.5 | 0.4% | Jul 5, 2024 | SeaCMS v12.9 has an unauthorized SQL injection vulnerability. The vulnerability is caused by the SQL injection through t... |
| CVE-2024-6525 | HIGH | 8.8 | 3.1% | Jul 5, 2024 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 up to 20230922. It has been rated as proble... |
| CVE-2024-6524 | HIGH | 8.8 | 0.5% | Jul 5, 2024 | A vulnerability was found in ShopXO up to 6.1.0. It has been declared as critical. Affected by this vulnerability is an ... |
| CVE-2024-6209 | HIGH | 7.5 | 17.2% | Jul 5, 2024 | Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v3.08.01; NEXUS Series v3.08.01 ; MATRIX Series ... |
| CVE-2024-39480 | HIGH | 7.8 | 0.3% | Jul 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: kdb: Fix buffer overflow during tab-complete Curre... |
| CVE-2024-39479 | HIGH | 7.8 | 0.2% | Jul 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/i915/hwmon: Get rid of devm When both hwmon an... |
| CVE-2024-36041 | HIGH | 7.8 | 0.3% | Jul 5, 2024 | KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6.x before 6.0.5.1 allows connections via ... |
| CVE-2024-39943 | HIGH | 8.8 | 48.8% | Jul 4, 2024 | rejetto HFS (aka HTTP File Server) 3 before 0.52.10 on Linux, UNIX, and macOS allows OS command execution by remote auth... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now