2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-5194 | HIGH | 7.2 | 3.6% | May 22, 2024 | A vulnerability was found in Arris VAP2500 08.50. It has been declared as critical. Affected by this vulnerability is an... |
| CVE-2024-4157 | HIGH | 8.8 | 0.7% | May 22, 2024 | The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner... |
| CVE-2024-32988 | HIGH | 7.5 | 0.4% | May 22, 2024 | 'OfferBox' App for Android versions 2.0.0 to 2.3.17 and 'OfferBox' App for iOS versions 2.1.7 to 2.6.14 use a hard-coded... |
| CVE-2024-4443 | HIGH | 7.5 | 10.3% | May 22, 2024 | The Business Directory Plugin – Easy Listing Directories for WordPress plugin for WordPress is vulnerable to time-based ... |
| CVE-2024-0453 | HIGH | 7.7 | 0.4% | May 22, 2024 | The AI ChatBot plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check... |
| CVE-2024-0452 | HIGH | 7.7 | 0.4% | May 22, 2024 | The AI ChatBot plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check... |
| CVE-2024-21683 | HIGH | 8.8 | 88.3% | May 21, 2024 | This High severity RCE (Remote Code Execution) vulnerability was introduced in version 5.2 of Confluence Data Center and... |
| CVE-2024-5040 | HIGH | 8.5 | 0.4% | May 21, 2024 | There are multiple ways in LCDS LAquis SCADA for an attacker to access locations outside of their own directory. |
| CVE-2024-35220 | HIGH | 7.4 | 0.4% | May 21, 2024 | @fastify/session is a session plugin for fastify. Requires the @fastify/cookie plugin. When restoring the cookie from th... |
| CVE-2024-31756 | HIGH | 7.8 | 0.1% | May 21, 2024 | An issue in MarvinTest Solutions Hardware Access Driver v.5.0.3.0 and before and fixed in v.5.0.4.0 allows a local attac... |
| CVE-2024-35061 | HIGH | 7.3 | 0.5% | May 21, 2024 | NASA AIT-Core v2.5.2 was discovered to use unencrypted channels to exchange data over the network, allowing attackers to... |
| CVE-2024-35060 | HIGH | 7.5 | 0.5% | May 21, 2024 | An issue in the YAML Python library of NASA AIT-Core v2.5.2 allows attackers to execute arbitrary commands via supplying... |
| CVE-2024-35059 | HIGH | 7.5 | 0.4% | May 21, 2024 | An issue in the Pickle Python library of NASA AIT-Core v2.5.2 allows attackers to execute arbitrary commands. |
| CVE-2024-25724 | HIGH | 7.3 | 0.2% | May 21, 2024 | In RTI Connext Professional 5.3.1 through 6.1.0 before 6.1.1, a buffer overflow in XML parsing from Routing Service, Rec... |
| CVE-2024-35058 | HIGH | 7.5 | 0.4% | May 21, 2024 | An issue in the API wait function of NASA AIT-Core v2.5.2 allows attackers to execute arbitrary code via supplying a cra... |
| CVE-2024-35057 | HIGH | 7.5 | 0.4% | May 21, 2024 | An issue in NASA AIT-Core v2.5.2 allows attackers to execute arbitrary code via a crafted packet. |
| CVE-2024-31757 | HIGH | 7.8 | 0.1% | May 21, 2024 | An issue in TeraByte Unlimited Image for Windows v.3.64.0.0 and before and fixed in v.4.0.0.0 allows a local attacker to... |
| CVE-2024-22274 | HIGH | 7.2 | 2.5% | May 21, 2024 | The vCenter Server contains an authenticated remote code execution vulnerability. A malicious actor with administrative ... |
| CVE-2024-22273 | HIGH | 7.8 | 0.2% | May 21, 2024 | The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulnerability. A malicious... |
| CVE-2024-36052 | HIGH | 7.5 | 0.7% | May 21, 2024 | RARLAB WinRAR before 7.00, on Windows, allows attackers to spoof the screen output via ANSI escape sequences, a differen... |
| CVE-2024-27130 | HIGH | 8.8 | 38.1% | May 21, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-27129 | HIGH | 8.8 | 0.7% | May 21, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-27128 | HIGH | 8.8 | 0.7% | May 21, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-27127 | HIGH | 8.8 | 0.7% | May 21, 2024 | A double free vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner... |
| CVE-2024-21902 | HIGH | 8.1 | 0.4% | May 21, 2024 | An incorrect permission assignment for critical resource vulnerability has been reported to affect several QNAP operatin... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now