2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-34367 | HIGH | 7.1 | 0.2% | May 6, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Popup Box Team Popup box allows Cross-Site Scripting (XSS).This issue... |
| CVE-2024-33912 | HIGH | 8.8 | 0.4% | May 6, 2024 | Missing Authorization vulnerability in Academy LMS.This issue affects Academy LMS: from n/a through 1.9.16. |
| CVE-2024-34388 | HIGH | 7.5 | 0.6% | May 6, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Scribit GDPR Compliance.This issue affects G... |
| CVE-2024-33410 | HIGH | 8.1 | 0.6% | May 6, 2024 | SQL injection vulnerability in /model/delete_range_grade.php in campcodes Complete Web-Based School Management System 1.... |
| CVE-2024-33406 | HIGH | 7.3 | 0.4% | May 6, 2024 | SQL injection vulnerability in /model/delete_student_grade_subject.php in campcodes Complete Web-Based School Management... |
| CVE-2024-33405 | HIGH | 8.6 | 0.5% | May 6, 2024 | SQL injection vulnerability in add_friends.php in campcodes Complete Web-Based School Management System 1.0 allows attac... |
| CVE-2024-33404 | HIGH | 8.3 | 0.6% | May 6, 2024 | A SQL injection vulnerability in /model/add_student_first_payment.php in campcodes Complete Web-Based School Management ... |
| CVE-2024-32807 | HIGH | 8.5 | 0.6% | May 6, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Brevo Sendinblue for Woo... |
| CVE-2024-34251 | HIGH | 7.5 | 0.8% | May 6, 2024 | An out-of-bound memory read vulnerability was discovered in Bytecode Alliance wasm-micro-runtime v2.0.0 which allows a r... |
| CVE-2024-34246 | HIGH | 7.5 | 0.5% | May 6, 2024 | wasm3 v0.5.0 was discovered to contain an out-of-bound memory read which leads to segmentation fault via the function "m... |
| CVE-2024-34092 | HIGH | 8.8 | 0.4% | May 6, 2024 | An issue was discovered in Archer Platform 6 before 2024.04. Authentication was mishandled because lock did not terminat... |
| CVE-2024-34470 | HIGH | 8.6 | 6.7% | May 6, 2024 | An issue was discovered in HSC Mailinspector 5.2.17-3 through v.5.2.18. An Unauthenticated Path Traversal vulnerability ... |
| CVE-2024-34252 | HIGH | 7.5 | 0.6% | May 6, 2024 | wasm3 v0.5.0 was discovered to contain a global buffer overflow which leads to segmentation fault via the function "Pres... |
| CVE-2024-34069 | HIGH | 7.5 | 3.4% | May 6, 2024 | Werkzeug is a comprehensive WSGI web application library. The debugger in affected versions of Werkzeug can allow an att... |
| CVE-2024-33112 | HIGH | 7.5 | 6.5% | May 6, 2024 | D-Link DIR-845L router v1.01KRb03 and before is vulnerable to Command injection via the hnap_main()func. |
| CVE-2024-32982 | HIGH | 8.2 | 0.7% | May 6, 2024 | Litestar and Starlite is an Asynchronous Server Gateway Interface (ASGI) framework. Prior to 2.8.3, 2.7.2, and 2.6.4, a ... |
| CVE-2024-32972 | HIGH | 7.5 | 0.8% | May 6, 2024 | go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. Prior to 1.13.15, a vulnerable n... |
| CVE-2024-23354 | HIGH | 7.8 | 0.2% | May 6, 2024 | Memory corruption when the IOCTL call is interrupted by a signal. |
| CVE-2024-23351 | HIGH | 7.8 | 0.1% | May 6, 2024 | Memory corruption as GPU registers beyond the last protected range can be accessed through LPAC submissions. |
| CVE-2024-21477 | HIGH | 7.5 | 0.3% | May 6, 2024 | Transient DOS while parsing a protected 802.11az Fine Time Measurement (FTM) frame. |
| CVE-2024-21476 | HIGH | 7.8 | 0.1% | May 6, 2024 | Memory corruption when the channel ID passed by user is not validated and further used. |
| CVE-2024-21475 | HIGH | 7.8 | 0.1% | May 6, 2024 | Memory corruption when the payload received from firmware is not as per the expected protocol size. |
| CVE-2024-21474 | HIGH | 7.8 | 0.1% | May 6, 2024 | Memory corruption when size of buffer from previous call is used without validation or re-initialization. |
| CVE-2024-21471 | HIGH | 7.8 | 0.1% | May 6, 2024 | Memory corruption when IOMMU unmap of a GPU buffer fails in Linux. |
| CVE-2024-4549 | HIGH | 7.5 | 1.1% | May 6, 2024 | A denial of service vulnerability exists in Delta Electronics DIAEnergie v1.10.1.8610 and prior. When processing an 'ICS... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now