2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-30375 | HIGH | 7.8 | 0.5% | Jun 6, 2024 | Luxion KeyShot Viewer KSP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows rem... |
| CVE-2024-30374 | HIGH | 7.8 | 0.6% | Jun 6, 2024 | Luxion KeyShot Viewer KSP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allow... |
| CVE-2024-30369 | HIGH | 7.8 | 0.3% | Jun 6, 2024 | A10 Thunder ADC Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows loca... |
| CVE-2024-30368 | HIGH | 8.8 | 3.0% | Jun 6, 2024 | A10 Thunder ADC CsrRequestView Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote a... |
| CVE-2024-2914 | HIGH | 8.8 | 0.9% | Jun 6, 2024 | A TarSlip vulnerability exists in the deepjavalibrary/djl, affecting version 0.26.0 and fixed in version 0.27.0. This vu... |
| CVE-2024-1879 | HIGH | 8.8 | 0.5% | Jun 6, 2024 | A Cross-Site Request Forgery (CSRF) vulnerability in significant-gravitas/autogpt version v0.5.0 allows attackers to exe... |
| CVE-2024-36742 | HIGH | 7.5 | 0.4% | Jun 6, 2024 | An issue in the oneflow.scatter_nd parameter OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (... |
| CVE-2024-33655 | HIGH | 7.5 | 1.7% | Jun 6, 2024 | The DNS protocol in RFC 1035 and updates allows remote attackers to cause a denial of service (resource consumption) by ... |
| CVE-2024-37152 | HIGH | 7.5 | 2.3% | Jun 6, 2024 | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. The vulnerability allows unauthorized access t... |
| CVE-2024-35178 | HIGH | 7.5 | 0.7% | Jun 6, 2024 | The Jupyter Server provides the backend for Jupyter web applications. Jupyter Server on Windows has a vulnerability that... |
| CVE-2024-5684 | HIGH | 8.8 | 0.2% | Jun 6, 2024 | An attacker with access to the private network (the charger is connected to) or local access to the Ethernet-Interface c... |
| CVE-2024-5657 | HIGH | 8.1 | 0.8% | Jun 6, 2024 | The CraftCMS plugin Two-Factor Authentication in versions 3.3.1, 3.3.2 and 3.3.3 discloses the password hash of the curr... |
| CVE-2024-5329 | HIGH | 8.8 | 0.5% | Jun 6, 2024 | The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin for WordPress is vulnerable to blind SQL I... |
| CVE-2024-28995 | HIGH | 7.5 | 99.6% | Jun 6, 2024 | SolarWinds Serv-U was susceptible to a directory transversal vulnerability that would allow access to read sensitive fil... |
| CVE-2024-5324 | HIGH | 8.8 | 1.5% | Jun 6, 2024 | Multiple plugins for WordPress utilizing the XootiX Framework are vulnerable to unauthorized modification of data due to... |
| CVE-2024-5179 | HIGH | 8.8 | 0.9% | Jun 6, 2024 | The Cowidgets – Elementor Addons plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and i... |
| CVE-2024-4194 | HIGH | 7.3 | 0.5% | Jun 6, 2024 | The The Album and Image Gallery plus Lightbox plugin for WordPress is vulnerable to arbitrary shortcode execution in all... |
| CVE-2024-36670 | HIGH | 8.8 | 0.3% | Jun 5, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/vpsClass_deal.php?mud... |
| CVE-2024-36669 | HIGH | 8.8 | 0.2% | Jun 5, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/type_deal.php?mudi=ad... |
| CVE-2024-36668 | HIGH | 8.8 | 0.2% | Jun 5, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/type_deal.php?mudi=de... |
| CVE-2024-36667 | HIGH | 8.8 | 0.2% | Jun 5, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/idcProType_deal.php?... |
| CVE-2024-28818 | HIGH | 7.5 | 0.3% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 1080, ... |
| CVE-2024-27382 | HIGH | 7.1 | 0.2% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I... |
| CVE-2024-27379 | HIGH | 7.8 | 0.2% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I... |
| CVE-2024-27378 | HIGH | 7.1 | 0.2% | Jun 5, 2024 | An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now