2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-53738 | MEDIUM | 4.4 | 0.3% | Nov 30, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Gabe Livan Asset CleanUp: Page Speed Booster wp-asset-clean-up allow... |
| CVE-2024-12002 | MEDIUM | 6.5 | 0.8% | Nov 30, 2024 | A vulnerability classified as problematic was found in Tenda FH451, FH1201, FH1202 and FH1206 up to 20241129. Affected b... |
| CVE-2024-12001 | MEDIUM | 5.4 | 0.4% | Nov 30, 2024 | A vulnerability classified as problematic has been found in code-projects Wazifa System 1.0. Affected is an unknown func... |
| CVE-2024-12000 | MEDIUM | 5.4 | 0.4% | Nov 30, 2024 | A vulnerability was found in code-projects Blood Bank System 1.0. It has been rated as problematic. This issue affects s... |
| CVE-2024-11998 | HIGH | 7.5 | 0.4% | Nov 30, 2024 | A vulnerability was found in code-projects Farmacia 1.0. It has been declared as critical. This vulnerability affects un... |
| CVE-2024-11997 | MEDIUM | 5.4 | 0.4% | Nov 30, 2024 | A vulnerability was found in code-projects Farmacia 1.0. It has been classified as problematic. This affects an unknown ... |
| CVE-2024-11996 | MEDIUM | 5.4 | 0.4% | Nov 30, 2024 | A vulnerability was found in code-projects Farmacia 1.0 and classified as problematic. Affected by this issue is some un... |
| CVE-2024-11252 | MEDIUM | 6.1 | 0.9% | Nov 30, 2024 | The Social Sharing Plugin – Sassy Social Share plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via ... |
| CVE-2024-43703 | HIGH | 8.1 | 0.4% | Nov 30, 2024 | Software installed and run as a non-privileged user may conduct improper GPU system calls to achieve unauthorised reads ... |
| CVE-2024-43702 | HIGH | 8.1 | 0.3% | Nov 30, 2024 | Software installed and run as a non-privileged user may conduct improper GPU system calls to allow unprivileged access t... |
| CVE-2024-53623 | HIGH | 7.5 | 0.4% | Nov 29, 2024 | Incorrect access control in the component l_0_0.xml of TP-Link ARCHER-C7 v5 allows attackers to access sensitive informa... |
| CVE-2024-54159 | MEDIUM | 4.1 | 0.2% | Nov 29, 2024 | stalld through 1.19.7 allows local users to cause a denial of service (file overwrite) via a /tmp/rtthrottle symlink att... |
| CVE-2024-11995 | MEDIUM | 6.1 | 0.4% | Nov 29, 2024 | A vulnerability has been found in code-projects Farmacia 1.0 and classified as problematic. Affected by this vulnerabili... |
| CVE-2024-53507 | CRITICAL | 9.8 | 0.6% | Nov 29, 2024 | A SQL injection vulnerability was discovered in Siyuan 3.1.11 in /getHistoryItems. |
| CVE-2024-53506 | CRITICAL | 9.8 | 0.5% | Nov 29, 2024 | A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the ids array parameter in /batchGetBlockAttrs. |
| CVE-2024-53505 | CRITICAL | 9.8 | 0.5% | Nov 29, 2024 | A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the id parameter at /getAssetContent. |
| CVE-2024-53504 | CRITICAL | 9.8 | 0.6% | Nov 29, 2024 | A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the notebook parameter in /searchHistory. |
| CVE-2024-36612 | HIGH | 7.5 | 0.6% | Nov 29, 2024 | Zulip from 8.0 to 8.3 contains a memory leak vulnerability in the handling of popovers. |
| CVE-2024-36610 | — | — | — | Nov 29, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and... |
| CVE-2024-35371 | HIGH | 7.5 | 0.5% | Nov 29, 2024 | Ant-Media-Serverv2.8.2 is affected by Improper Output Neutralization for Logs. The vulnerability stems from insufficient... |
| CVE-2024-35368 | CRITICAL | 9.8 | 0.7% | Nov 29, 2024 | FFmpeg n7.0 is affected by a Double Free via the rkmpp_retrieve_frame function within libavcodec/rkmppdec.c. |
| CVE-2024-35367 | CRITICAL | 9.1 | 0.7% | Nov 29, 2024 | FFmpeg n6.1.1 has an Out-of-bounds Read via libavcodec/ppc/vp8dsp_altivec.c, static const vec_s8 h_subpel_filters_outer |
| CVE-2024-35366 | CRITICAL | 9.1 | 0.6% | Nov 29, 2024 | FFmpeg n6.1.1 is Integer Overflow. The vulnerability exists in the parse_options function of sbgdec.c within the libavfo... |
| CVE-2024-53983 | MEDIUM | 5.4 | 0.4% | Nov 29, 2024 | The Backstage Scaffolder plugin Houses types and utilities for building scaffolder-related modules. A vulnerability is i... |
| CVE-2024-53980 | HIGH | 7.5 | 0.7% | Nov 29, 2024 | RIOT is an open-source microcontroller operating system, designed to match the requirements of Internet of Things (IoT) ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now