2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-53738MEDIUM4.4Server-Side Request Forgery (SSRF) vulnerability in Gabe Livan Asset CleanUp: Page Speed Booster wp-asset-clean-up allow...
CVE-2024-12002MEDIUM6.5A vulnerability classified as problematic was found in Tenda FH451, FH1201, FH1202 and FH1206 up to 20241129. Affected b...
CVE-2024-12001MEDIUM5.4A vulnerability classified as problematic has been found in code-projects Wazifa System 1.0. Affected is an unknown func...
CVE-2024-12000MEDIUM5.4A vulnerability was found in code-projects Blood Bank System 1.0. It has been rated as problematic. This issue affects s...
CVE-2024-11998HIGH7.5A vulnerability was found in code-projects Farmacia 1.0. It has been declared as critical. This vulnerability affects un...
CVE-2024-11997MEDIUM5.4A vulnerability was found in code-projects Farmacia 1.0. It has been classified as problematic. This affects an unknown ...
CVE-2024-11996MEDIUM5.4A vulnerability was found in code-projects Farmacia 1.0 and classified as problematic. Affected by this issue is some un...
CVE-2024-11252MEDIUM6.1The Social Sharing Plugin – Sassy Social Share plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via ...
CVE-2024-43703HIGH8.1Software installed and run as a non-privileged user may conduct improper GPU system calls to achieve unauthorised reads ...
CVE-2024-43702HIGH8.1Software installed and run as a non-privileged user may conduct improper GPU system calls to allow unprivileged access t...
CVE-2024-53623HIGH7.5Incorrect access control in the component l_0_0.xml of TP-Link ARCHER-C7 v5 allows attackers to access sensitive informa...
CVE-2024-54159MEDIUM4.1stalld through 1.19.7 allows local users to cause a denial of service (file overwrite) via a /tmp/rtthrottle symlink att...
CVE-2024-11995MEDIUM6.1A vulnerability has been found in code-projects Farmacia 1.0 and classified as problematic. Affected by this vulnerabili...
CVE-2024-53507CRITICAL9.8A SQL injection vulnerability was discovered in Siyuan 3.1.11 in /getHistoryItems.
CVE-2024-53506CRITICAL9.8A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the ids array parameter in /batchGetBlockAttrs.
CVE-2024-53505CRITICAL9.8A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the id parameter at /getAssetContent.
CVE-2024-53504CRITICAL9.8A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the notebook parameter in /searchHistory.
CVE-2024-36612HIGH7.5Zulip from 8.0 to 8.3 contains a memory leak vulnerability in the handling of popovers.
CVE-2024-36610Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and...
CVE-2024-35371HIGH7.5Ant-Media-Serverv2.8.2 is affected by Improper Output Neutralization for Logs. The vulnerability stems from insufficient...
CVE-2024-35368CRITICAL9.8FFmpeg n7.0 is affected by a Double Free via the rkmpp_retrieve_frame function within libavcodec/rkmppdec.c.
CVE-2024-35367CRITICAL9.1FFmpeg n6.1.1 has an Out-of-bounds Read via libavcodec/ppc/vp8dsp_altivec.c, static const vec_s8 h_subpel_filters_outer
CVE-2024-35366CRITICAL9.1FFmpeg n6.1.1 is Integer Overflow. The vulnerability exists in the parse_options function of sbgdec.c within the libavfo...
CVE-2024-53983MEDIUM5.4The Backstage Scaffolder plugin Houses types and utilities for building scaffolder-related modules. A vulnerability is i...
CVE-2024-53980HIGH7.5RIOT is an open-source microcontroller operating system, designed to match the requirements of Internet of Things (IoT) ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now