2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-10116 | MEDIUM | 5.4 | 0.4% | Nov 23, 2024 | The Twitter Follow Button plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'username' parameter... |
| CVE-2024-41761 | MEDIUM | 5.3 | 0.4% | Nov 23, 2024 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to a denial of serv... |
| CVE-2024-11586 | MEDIUM | 4 | 0.3% | Nov 23, 2024 | Ubuntu's implementation of pulseaudio can be crashed by a malicious program if a bluetooth headset is connected. |
| CVE-2024-0138 | CRITICAL | 9.8 | 0.9% | Nov 23, 2024 | NVIDIA Base Command Manager contains a missing authentication vulnerability in the CMDaemon component. A successful expl... |
| CVE-2024-0122 | HIGH | 7.6 | 0.2% | Nov 23, 2024 | NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an attacker may cause an u... |
| CVE-2024-52034 | CRITICAL | 10 | 1.7% | Nov 22, 2024 | An OS Command Injection vulnerability exists within myPRO Manager. A parameter within a command can be exploited by an u... |
| CVE-2024-50054 | HIGH | 8.7 | 0.7% | Nov 22, 2024 | The back-end does not sufficiently verify the user-controlled filename parameter which makes it possible for an attacker... |
| CVE-2024-47407 | CRITICAL | 10 | 65.6% | Nov 22, 2024 | A parameter within a command does not properly validate input within myPRO Manager which could be exploited by an unauth... |
| CVE-2024-47138 | CRITICAL | 9.8 | 0.8% | Nov 22, 2024 | The administrative interface listens by default on all interfaces on a TCP port and does not require authentication when... |
| CVE-2024-45369 | CRITICAL | 9.2 | 0.6% | Nov 22, 2024 | The web application uses a weak authentication mechanism to verify that a request is coming from an authenticated and au... |
| CVE-2024-11298 | — | — | — | Nov 22, 2024 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r... |
| CVE-2024-11296 | — | — | — | Nov 22, 2024 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r... |
| CVE-2024-9767 | HIGH | 7.8 | 0.4% | Nov 22, 2024 | IrfanView SID File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote atta... |
| CVE-2024-9261 | HIGH | 7.8 | 0.4% | Nov 22, 2024 | IrfanView SID File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows re... |
| CVE-2024-9260 | HIGH | 7.8 | 0.3% | Nov 22, 2024 | IrfanView SID File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote att... |
| CVE-2024-9259 | HIGH | 7.8 | 0.3% | Nov 22, 2024 | IrfanView SID File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote att... |
| CVE-2024-9258 | HIGH | 7.8 | 0.4% | Nov 22, 2024 | IrfanView SID File Parsing Uninitialized Pointer Remote Code Execution Vulnerability. This vulnerability allows remote a... |
| CVE-2024-9256 | HIGH | 7.1 | 0.4% | Nov 22, 2024 | Foxit PDF Reader AcroForm Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote atta... |
| CVE-2024-9255 | HIGH | 7.8 | 0.6% | Nov 22, 2024 | Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attacke... |
| CVE-2024-9254 | HIGH | 8.8 | 0.9% | Nov 22, 2024 | Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attacke... |
| CVE-2024-9253 | HIGH | 7.1 | 0.4% | Nov 22, 2024 | Foxit PDF Reader AcroForm Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote atta... |
| CVE-2024-9252 | HIGH | 7.8 | 0.4% | Nov 22, 2024 | Foxit PDF Reader AcroForm Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attacker... |
| CVE-2024-9251 | HIGH | 7.8 | 0.4% | Nov 22, 2024 | Foxit PDF Reader Annotation Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attack... |
| CVE-2024-9250 | HIGH | 7.8 | 0.6% | Nov 22, 2024 | Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers... |
| CVE-2024-9249 | HIGH | 7.1 | 0.6% | Nov 22, 2024 | Foxit PDF Reader PDF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remo... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now