2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4322 | HIGH | 7.5 | 30.8% | May 16, 2024 | A path traversal vulnerability exists in the parisneo/lollms-webui application, specifically within the `/list_personali... |
| CVE-2024-4321 | HIGH | 7.5 | 0.6% | May 16, 2024 | A Local File Inclusion (LFI) vulnerability exists in the gaizhenbiao/chuanhuchatgpt application, specifically within the... |
| CVE-2024-4181 | HIGH | 8.8 | 2.1% | May 16, 2024 | A command injection vulnerability exists in the RunGptLLM class of the llama_index library, version 0.9.47, used by the ... |
| CVE-2024-3848 | HIGH | 7.5 | 43.3% | May 16, 2024 | A path traversal vulnerability exists in mlflow/mlflow version 2.11.0, identified as a bypass for the previously address... |
| CVE-2024-3435 | HIGH | 8.4 | 0.8% | May 16, 2024 | A path traversal vulnerability exists in the 'save_settings' endpoint of the parisneo/lollms-webui application, affectin... |
| CVE-2024-3403 | HIGH | 7.5 | 1.1% | May 16, 2024 | imartinez/privategpt version 0.2.0 is vulnerable to a local file inclusion vulnerability that allows attackers to read a... |
| CVE-2024-3126 | HIGH | 8.4 | 1.3% | May 16, 2024 | A command injection vulnerability exists in the 'run_xtts_api_server' function of the parisneo/lollms-webui application,... |
| CVE-2024-30307 | HIGH | 7.8 | 0.3% | May 16, 2024 | Substance3D - Painter versions 9.1.2 and earlier are affected by an out-of-bounds write vulnerability that could result ... |
| CVE-2024-30297 | HIGH | 7.8 | 0.3% | May 16, 2024 | Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in ar... |
| CVE-2024-30296 | HIGH | 7.8 | 0.3% | May 16, 2024 | Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in ar... |
| CVE-2024-30295 | HIGH | 7.8 | 0.4% | May 16, 2024 | Animate versions 24.0.2, 23.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability that could result i... |
| CVE-2024-30294 | HIGH | 7.8 | 0.4% | May 16, 2024 | Animate versions 24.0.2, 23.0.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result... |
| CVE-2024-30293 | HIGH | 7.8 | 0.4% | May 16, 2024 | Animate versions 24.0.2, 23.0.5 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could resul... |
| CVE-2024-30282 | HIGH | 7.8 | 0.3% | May 16, 2024 | Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in ar... |
| CVE-2024-30275 | HIGH | 7.8 | 0.4% | May 16, 2024 | Adobe Aero Desktop versions 23.4 and earlier are affected by a Use After Free vulnerability that could result in arbitra... |
| CVE-2024-30274 | HIGH | 7.8 | 0.3% | May 16, 2024 | Substance3D - Painter versions 9.1.2 and earlier are affected by an out-of-bounds write vulnerability that could result ... |
| CVE-2024-20792 | HIGH | 7.8 | 0.4% | May 16, 2024 | Illustrator versions 28.4, 27.9.3 and earlier are affected by a Use After Free vulnerability that could result in arbitr... |
| CVE-2024-20791 | HIGH | 7.8 | 0.3% | May 16, 2024 | Illustrator versions 28.4, 27.9.3 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted... |
| CVE-2024-4844 | HIGH | 7.5 | 0.2% | May 16, 2024 | Hardcoded credentials vulnerability in Trellix ePolicy Orchestrator (ePO) on Premise prior to 5.10 Service Pack 1 Update... |
| CVE-2024-4946 | HIGH | 8.8 | 0.7% | May 16, 2024 | A vulnerability was found in SourceCodester Online Art Gallery Management System 1.0. It has been declared as critical. ... |
| CVE-2024-3643 | HIGH | 8.8 | 0.4% | May 16, 2024 | The Newsletter Popup WordPress plugin through 1.2 does not have CSRF check when deleting list, which could allow attacke... |
| CVE-2024-4930 | HIGH | 8.8 | 0.5% | May 16, 2024 | A vulnerability classified as critical was found in SourceCodester Simple Online Bidding System 1.0. This vulnerability ... |
| CVE-2024-3750 | HIGH | 8.8 | 0.6% | May 16, 2024 | The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to unauthorized modification ... |
| CVE-2024-4923 | HIGH | 8.8 | 0.7% | May 16, 2024 | A vulnerability has been found in Codezips E-Commerce Site 1.0 and classified as critical. This vulnerability affects un... |
| CVE-2024-27244 | HIGH | 7.8 | 0.1% | May 15, 2024 | Insufficient verification of data authenticity in the installer for Zoom Workplace VDI App for Windows may allow an aut... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now