2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-24686 | HIGH | 7.8 | 0.5% | May 28, 2024 | Multiple stack-based buffer overflow vulnerabilities exist in the readOFF functionality of libigl v2.5.0. A specially cr... |
| CVE-2024-24685 | HIGH | 7.8 | 0.5% | May 28, 2024 | Multiple stack-based buffer overflow vulnerabilities exist in the readOFF functionality of libigl v2.5.0. A specially cr... |
| CVE-2024-24684 | HIGH | 7.8 | 0.7% | May 28, 2024 | Multiple stack-based buffer overflow vulnerabilities exist in the readOFF functionality of libigl v2.5.0. A specially cr... |
| CVE-2024-23951 | HIGH | 8.8 | 0.9% | May 28, 2024 | Multiple improper array index validation vulnerabilities exist in the readMSH functionality of libigl v2.5.0. A speciall... |
| CVE-2024-23950 | HIGH | 8.8 | 0.9% | May 28, 2024 | Multiple improper array index validation vulnerabilities exist in the readMSH functionality of libigl v2.5.0. A speciall... |
| CVE-2024-23949 | HIGH | 8.8 | 0.9% | May 28, 2024 | Multiple improper array index validation vulnerabilities exist in the readMSH functionality of libigl v2.5.0. A speciall... |
| CVE-2024-23948 | HIGH | 8.8 | 0.9% | May 28, 2024 | Multiple improper array index validation vulnerabilities exist in the readMSH functionality of libigl v2.5.0. A speciall... |
| CVE-2024-23947 | HIGH | 8.8 | 0.9% | May 28, 2024 | Multiple improper array index validation vulnerabilities exist in the readMSH functionality of libigl v2.5.0. A speciall... |
| CVE-2024-22181 | HIGH | 7.8 | 0.4% | May 28, 2024 | An out-of-bounds write vulnerability exists in the readNODE functionality of libigl v2.5.0. A specially crafted .node fi... |
| CVE-2024-5415 | HIGH | 7.1 | 0.3% | May 28, 2024 | A vulnerability have been discovered in PhpMyBackupPro affecting version 2.3 that could allow an attacker to execute XSS... |
| CVE-2024-5414 | HIGH | 7.1 | 0.3% | May 28, 2024 | A vulnerability have been discovered in PhpMyBackupPro affecting version 2.3 that could allow an attacker to execute XSS... |
| CVE-2024-3657 | HIGH | 7.5 | 1.3% | May 28, 2024 | A flaw was found in 389-ds-base. A specially-crafted LDAP query can potentially cause a failure on the directory server,... |
| CVE-2024-5411 | HIGH | 8.8 | 23.4% | May 28, 2024 | Missing input validation and OS command integration of the input in the ORing IAP-420 web-interface allows authenticated... |
| CVE-2024-28886 | HIGH | 8.4 | 0.7% | May 28, 2024 | OS command injection vulnerability exists in UTAU versions prior to v0.4.19. If a user of the product opens a crafted UT... |
| CVE-2024-29078 | HIGH | 7.5 | 0.4% | May 28, 2024 | Incorrect permission assignment for critical resource issue exists in MosP kintai kanri V4.6.6 and earlier, which may al... |
| CVE-2024-36428 | HIGH | 8.1 | 1.7% | May 27, 2024 | OrangeHRM 3.3.3 allows admin/viewProjects sortOrder SQL injection. |
| CVE-2024-36426 | HIGH | 7.5 | 0.3% | May 27, 2024 | In TARGIT Decision Suite 23.2.15007.0 before Autumn 2023, the session token is part of the URL and may be sent in a clea... |
| CVE-2024-29415 | HIGH | 8.1 | 8.3% | May 27, 2024 | The ip package through 2.0.1 for Node.js might allow SSRF because some IP addresses (such as 127.1, 01200034567, 012.1.2... |
| CVE-2024-35182 | HIGH | 8.1 | 1.6% | May 27, 2024 | Meshery is an open source, cloud native manager that enables the design and management of Kubernetes-based infrastructur... |
| CVE-2024-35181 | HIGH | 8.1 | 1.6% | May 27, 2024 | Meshery is an open source, cloud native manager that enables the design and management of Kubernetes-based infrastructur... |
| CVE-2024-35237 | HIGH | 7.5 | 0.5% | May 27, 2024 | MIT IdentiBot is an open-source Discord bot written in Node.js that verifies individuals' affiliations with MIT, grants ... |
| CVE-2024-35231 | HIGH | 8.6 | 0.7% | May 27, 2024 | rack-contrib provides contributed rack middleware and utilities for Rack, a Ruby web server interface. Versions of rack-... |
| CVE-2024-35219 | HIGH | 8.3 | 3.6% | May 27, 2024 | OpenAPI Generator allows generation of API client libraries (SDK generation), server stubs, documentation and configurat... |
| CVE-2024-34477 | HIGH | 7.8 | 0.3% | May 27, 2024 | configureNFS in lib/common/functions.sh in FOG through 1.5.10 allows local users to gain privileges by mounting a crafte... |
| CVE-2024-5035 | HIGH | 8.8 | 3.2% | May 27, 2024 | The affected device expose a network service called "rftest" that is vulnerable to unauthenticated command injection on ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now