2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-31525 | HIGH | 7.2 | 0.4% | Mar 5, 2025 | Peppermint Ticket Management 0.4.6 is vulnerable to Incorrect Access Control. A regular registered user is able to eleva... |
| CVE-2024-53458 | HIGH | 7.5 | 0.5% | Mar 5, 2025 | Sysax Multi Server 6.99 is vulnerable to a denial of service (DoS) condition when processing specially crafted SSH packe... |
| CVE-2024-11216 | HIGH | 7.6 | 0.3% | Mar 5, 2025 | Authorization Bypass Through User-Controlled Key, Exposure of Private Personal Information to an Unauthorized Actor vuln... |
| CVE-2024-13471 | HIGH | 7.5 | 0.5% | Mar 5, 2025 | The DesignThemes Core Features plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabi... |
| CVE-2024-13232 | HIGH | 8.8 | 0.4% | Mar 5, 2025 | The WordPress Awesome Import & Export Plugin - Import & Export WordPress Data plugin for WordPress is vulnerable arbitra... |
| CVE-2024-0114 | HIGH | 8.1 | 0.2% | Mar 5, 2025 | NVIDIA Hopper HGX for 8-GPU contains a vulnerability in the HGX Management Controller (HMC) that may allow a malicious a... |
| CVE-2024-10930 | HIGH | 7.8 | 0.4% | Mar 4, 2025 | An Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to perform DLL hijacking an... |
| CVE-2024-9149 | HIGH | 8.6 | 0.3% | Mar 4, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Wind Media E-Comme... |
| CVE-2024-50705 | HIGH | 7.1 | 0.2% | Mar 4, 2025 | Unauthenticated reflected cross-site scripting (XSS) vulnerability in Uniguest Tripleplay before 24.2.1 allows remote at... |
| CVE-2024-48248 | HIGH | 8.6 | 94.4% | Mar 4, 2025 | NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /... |
| CVE-2024-47259 | HIGH | 7.1 | 0.5% | Mar 4, 2025 | Girishunawane, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API dynamicoverlay.cgi did not have a ... |
| CVE-2024-51962 | HIGH | 8.7 | 0.5% | Mar 3, 2025 | A SQL injection vulnerability in ArcGIS Server allows an EDIT operation to modify column properties in a manner that cou... |
| CVE-2024-51961 | HIGH | 7.5 | 0.4% | Mar 3, 2025 | There is a local file inclusion vulnerability in ArcGIS Server 11.3 and below that may allow a remote, unauthenticated a... |
| CVE-2024-51954 | HIGH | 8.5 | 0.3% | Mar 3, 2025 | There is an improper access control issue in ArcGIS Server versions 11.3 and below on Windows and Linux which, under uni... |
| CVE-2024-53388 | HIGH | 8.8 | 0.6% | Mar 3, 2025 | A DOM Clobbering vulnerability in mavo v0.3.2 allows attackers to execute arbitrary code via supplying a crafted HTML el... |
| CVE-2024-53387 | HIGH | 8.8 | 0.6% | Mar 3, 2025 | A DOM Clobbering vulnerability in umeditor v1.2.3 allows attackers to execute arbitrary code via supplying a crafted HTM... |
| CVE-2024-45782 | HIGH | 7.8 | 0.2% | Mar 3, 2025 | A flaw was found in the HFS filesystem. When reading an HFS volume's name at grub_fs_mount(), the HFS filesystem driver ... |
| CVE-2024-41771 | HIGH | 7.5 | 0.4% | Mar 3, 2025 | IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote attacker to download tempo... |
| CVE-2024-41770 | HIGH | 7.5 | 0.4% | Mar 3, 2025 | IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote attacker to download tempo... |
| CVE-2024-8261 | HIGH | 7.5 | 0.4% | Mar 3, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Proliz Software OBS allows Exploiting Incorrectly Conf... |
| CVE-2024-53034 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption occurs during an Escape call if an invalid Kernel Mode CPU event and sync object handle are passed wit... |
| CVE-2024-53033 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption while doing Escape call when user provides valid kernel address in the place of valid user buffer addr... |
| CVE-2024-53032 | HIGH | 7 | 0.1% | Mar 3, 2025 | Memory corruption may occur in keyboard virtual device due to guest VM interaction. |
| CVE-2024-53031 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption while reading a type value from a buffer controlled by the Guest Virtual Machine. |
| CVE-2024-53030 | HIGH | 7.8 | 0.1% | Mar 3, 2025 | Memory corruption while processing input message passed from FE driver. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now