2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-52958 | HIGH | 7.2 | 0.3% | Nov 27, 2024 | A improper verification of cryptographic signature vulnerability in plugin management in iota C.ai Conversational Platfo... |
| CVE-2024-11219 | HIGH | 7.5 | 0.5% | Nov 27, 2024 | The Otter Blocks – Gutenberg Blocks, Page Builder for Gutenberg Editor & FSE plugin for WordPress is vulnerable to Path ... |
| CVE-2024-11083 | MEDIUM | 5.3 | 0.4% | Nov 27, 2024 | The ProfilePress plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includi... |
| CVE-2024-5921 | HIGH | 8.8 | 1.5% | Nov 27, 2024 | An insufficient certification validation issue in the Palo Alto Networks GlobalProtect app enables attackers to connect ... |
| CVE-2024-53676 | CRITICAL | 9.8 | 51.3% | Nov 27, 2024 | A directory traversal vulnerability in Hewlett Packard Enterprise Insight Remote Support may allow remote code execution... |
| CVE-2024-11820 | MEDIUM | 5.4 | 0.4% | Nov 27, 2024 | A vulnerability, which was classified as problematic, has been found in code-projects Crud Operation System 1.0. This is... |
| CVE-2024-53849 | MEDIUM | 4.8 | 0.2% | Nov 27, 2024 | editorconfig-core-c is theEditorConfig core library written in C (for use by plugins supporting EditorConfig parsing).... |
| CVE-2024-11819 | CRITICAL | 9.8 | 0.6% | Nov 27, 2024 | A vulnerability classified as critical was found in 1000 Projects Portfolio Management System MCA 1.0. This vulnerabilit... |
| CVE-2024-11818 | CRITICAL | 9.8 | 0.6% | Nov 27, 2024 | A vulnerability classified as critical has been found in PHPGurukul User Registration & Login and User Management System... |
| CVE-2024-11817 | CRITICAL | 9.8 | 0.6% | Nov 26, 2024 | A vulnerability was found in PHPGurukul User Registration & Login and User Management System 1.0. It has been rated as c... |
| CVE-2024-53675 | HIGH | 7.5 | 83.9% | Nov 26, 2024 | An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose in... |
| CVE-2024-53674 | HIGH | 7.5 | 47.4% | Nov 26, 2024 | An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose in... |
| CVE-2024-53673 | CRITICAL | 9.8 | 0.7% | Nov 26, 2024 | A java deserialization vulnerability in HPE Remote Insight Support may allow an unauthenticated attacker to execute code... |
| CVE-2024-11622 | HIGH | 7.5 | 1.5% | Nov 26, 2024 | An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose in... |
| CVE-2024-50942 | CRITICAL | 9.8 | 0.6% | Nov 26, 2024 | qiwen-file v1.4.0 was discovered to contain a SQL injection vulnerability via the component /mapper/NoticeMapper.xml. |
| CVE-2024-43784 | MEDIUM | 5.7 | 0.3% | Nov 26, 2024 | lakeFS is an open-source tool that transforms object storage into a Git-like repository. Existing lakeFS users who have ... |
| CVE-2024-11745 | CRITICAL | 9.8 | 1.3% | Nov 26, 2024 | A vulnerability was found in Tenda AC8 16.03.34.09 and classified as critical. Affected by this issue is the function ro... |
| CVE-2024-11744 | CRITICAL | 9.8 | 0.7% | Nov 26, 2024 | A vulnerability has been found in 1000 Projects Portfolio Management System MCA 1.0 and classified as critical. Affected... |
| CVE-2024-8676 | HIGH | 7.4 | 0.8% | Nov 26, 2024 | A vulnerability was found in CRI-O, where it can be requested to take a checkpoint archive of a container and later be a... |
| CVE-2024-49053 | HIGH | 7.6 | 0.7% | Nov 26, 2024 | Microsoft Dynamics 365 Sales Spoofing Vulnerability |
| CVE-2024-49052 | CRITICAL | 9.8 | 0.7% | Nov 26, 2024 | Missing authentication for critical function in Microsoft Azure PolicyWatch allows an unauthorized attacker to elevate p... |
| CVE-2024-49038 | CRITICAL | 9.6 | 1.0% | Nov 26, 2024 | Improper neutralization of input during web page generation ('Cross-site Scripting') in Copilot Studio by an unauthorize... |
| CVE-2024-49035 | CRITICAL | 9.8 | 1.3% | Nov 26, 2024 | An improper access control vulnerability in Partner.Microsoft.com allows an a unauthenticated attacker to elevate privil... |
| CVE-2024-11743 | MEDIUM | 4.3 | 0.3% | Nov 26, 2024 | A vulnerability, which was classified as problematic, was found in SourceCodester Best House Rental Management System 1.... |
| CVE-2024-11742 | MEDIUM | 5.4 | 0.5% | Nov 26, 2024 | A vulnerability, which was classified as problematic, has been found in SourceCodester Best House Rental Management Syst... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now