2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4748 | HIGH | 7.8 | 1.1% | Jun 24, 2024 | The CRUDDIY project is vulnerable to shell command injection via sending a crafted POST request to the application serve... |
| CVE-2024-39291 | HIGH | 7.8 | 0.2% | Jun 24, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix buffer size in gfx_v9_4_3_init_ cp_... |
| CVE-2024-38667 | HIGH | 7.8 | 0.2% | Jun 24, 2024 | In the Linux kernel, the following vulnerability has been resolved: riscv: prevent pt_regs corruption for secondary idl... |
| CVE-2024-38664 | HIGH | 7.8 | 0.2% | Jun 24, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm: zynqmp_dpsub: Always register bridge We must ... |
| CVE-2024-38384 | HIGH | 7.8 | 0.2% | Jun 24, 2024 | In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: fix list corruption from reorder of WRI... |
| CVE-2024-34027 | HIGH | 7.8 | 0.2% | Jun 24, 2024 | In the Linux kernel, the following vulnerability has been resolved: f2fs: compress: fix to cover {reserve,release}_comp... |
| CVE-2024-5862 | HIGH | 7.5 | 0.5% | Jun 24, 2024 | Improper Restriction of Excessive Authentication Attempts vulnerability in Mia Technology Inc. Mia-Med Health Aplication... |
| CVE-2024-37111 | HIGH | 7.5 | 0.5% | Jun 24, 2024 | Missing Authorization vulnerability in Membership Software WishList Member X.This issue affects WishList Member X: from ... |
| CVE-2024-37109 | HIGH | 8.8 | 0.5% | Jun 24, 2024 | Improper Control of Generation of Code ('Code Injection') vulnerability in Membership Software WishList Member X allows ... |
| CVE-2024-37107 | HIGH | 8.8 | 0.4% | Jun 24, 2024 | Improper Privilege Management vulnerability in Membership Software WishList Member X allows Privilege Escalation.This is... |
| CVE-2024-37092 | HIGH | 8.8 | 0.5% | Jun 24, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in StylemixThemes Consultin... |
| CVE-2024-37091 | HIGH | 8.8 | 1.2% | Jun 24, 2024 | Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in StylemixThemes Cons... |
| CVE-2024-36496 | HIGH | 7.5 | 0.7% | Jun 24, 2024 | The configuration file is encrypted with a static key derived from a static five-character password which allows an att... |
| CVE-2024-36495 | HIGH | 7.7 | 0.3% | Jun 24, 2024 | The application Faronics WINSelect (Standard + Enterprise) saves its configuration in an encrypted file on the file syst... |
| CVE-2024-24554 | HIGH | 8.2 | 0.2% | Jun 24, 2024 | Bludit uses predictable methods in combination with the MD5 hashing algorithm to generate sensitive tokens such as the A... |
| CVE-2024-24553 | HIGH | 7.5 | 0.2% | Jun 24, 2024 | Bludit uses the SHA-1 hashing algorithm to compute password hashes. Thus, attackers could determine cleartext passwords ... |
| CVE-2024-24552 | HIGH | 8.8 | 0.4% | Jun 24, 2024 | A session fixation vulnerability in Bludit allows an attacker to bypass the server's authentication if they can trick an... |
| CVE-2024-24551 | HIGH | 8.8 | 0.8% | Jun 24, 2024 | A security vulnerability has been identified in Bludit, allowing authenticated attackers to execute arbitrary code throu... |
| CVE-2024-24550 | HIGH | 8.1 | 0.7% | Jun 24, 2024 | A security vulnerability has been identified in Bludit, allowing attackers with knowledge of the API token to upload arb... |
| CVE-2024-6279 | HIGH | 8.8 | 0.5% | Jun 24, 2024 | A vulnerability was found in lahirudanushka School Management System 1.0.0/1.0.1 and classified as critical. Affected by... |
| CVE-2024-6278 | HIGH | 8.8 | 0.6% | Jun 24, 2024 | A vulnerability has been found in lahirudanushka School Management System 1.0.0/1.0.1 and classified as critical. Affect... |
| CVE-2024-6277 | HIGH | 8.8 | 0.6% | Jun 24, 2024 | A vulnerability, which was classified as critical, was found in lahirudanushka School Management System 1.0.0/1.0.1. Aff... |
| CVE-2024-6276 | HIGH | 8.8 | 0.6% | Jun 24, 2024 | A vulnerability, which was classified as critical, has been found in lahirudanushka School Management System 1.0.0/1.0.1... |
| CVE-2024-6275 | HIGH | 8.8 | 0.6% | Jun 24, 2024 | A vulnerability classified as critical was found in lahirudanushka School Management System 1.0.0/1.0.1. This vulnerabil... |
| CVE-2024-6274 | HIGH | 8.8 | 0.5% | Jun 24, 2024 | A vulnerability classified as critical has been found in lahirudanushka School Management System 1.0.0/1.0.1. This affec... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now