2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-6068 | HIGH | 7.3 | 0.2% | Nov 14, 2024 | A memory corruption vulnerability exists in the affected products when parsing DFT files. Local threat actors can explo... |
| CVE-2024-50836 | MEDIUM | 4.8 | 0.5% | Nov 14, 2024 | A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/teachers.php in KASHIPARA E-learning Management Sy... |
| CVE-2024-50835 | HIGH | 7.2 | 0.6% | Nov 14, 2024 | A SQL Injection vulnerability was found in /admin/edit_student.php in KASHIPARA E-learning Management System Project 1.0... |
| CVE-2024-50834 | HIGH | 7.2 | 0.6% | Nov 14, 2024 | A SQL Injection was found in /admin/teachers.php in KASHIPARA E-learning Management System Project 1.0 via the firstname... |
| CVE-2024-50833 | CRITICAL | 9.8 | 0.6% | Nov 14, 2024 | A SQL Injection vulnerability was found in /login.php in KASHIPARA E-learning Management System Project 1.0 via the user... |
| CVE-2024-50832 | HIGH | 7.2 | 0.6% | Nov 14, 2024 | A SQL Injection vulnerability was found in /admin/edit_class.php in kashipara E-learning Management System Project 1.0 v... |
| CVE-2024-37285 | HIGH | 7.2 | 1.3% | Nov 14, 2024 | A deserialization issue in Kibana can lead to arbitrary code execution when Kibana attempts to parse a YAML document con... |
| CVE-2024-52505 | MEDIUM | 5.4 | 0.4% | Nov 14, 2024 | matrix-appservice-irc is a Node.js IRC bridge for the Matrix messaging protocol. The provisioning API of the matrix-apps... |
| CVE-2024-52302 | HIGH | 8.7 | 3.2% | Nov 14, 2024 | common-user-management is a robust Spring Boot application featuring user management services designed to control user a... |
| CVE-2024-42188 | MEDIUM | 4.6 | 0.2% | Nov 14, 2024 | HCL Connections is vulnerable to a broken access control vulnerability that may allow an unauthorized user to update dat... |
| CVE-2024-11214 | HIGH | 7.2 | 0.6% | Nov 14, 2024 | A vulnerability has been found in SourceCodester Best Employee Management System 1.0 and classified as critical. This vu... |
| CVE-2024-11213 | HIGH | 7.2 | 0.5% | Nov 14, 2024 | A vulnerability, which was classified as critical, was found in SourceCodester Best Employee Management System 1.0. This... |
| CVE-2024-11136 | HIGH | 8.2 | 0.2% | Nov 14, 2024 | The default TCL Camera application exposes a provider vulnerable to path traversal vulnerability. Malicious application ... |
| CVE-2024-10921 | HIGH | 8.1 | 0.5% | Nov 14, 2024 | An authorized user may trigger crashes or receive the contents of buffer over-reads of Server memory by issuing speciall... |
| CVE-2024-7124 | MEDIUM | 5.3 | 1.0% | Nov 14, 2024 | Improper Neutralization of Input During Web Page Generation vulnerability in DInGO dLibra software in the parameter 'fil... |
| CVE-2024-50838 | MEDIUM | 5.4 | 0.5% | Nov 14, 2024 | A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/department.php in KASHIPARA E-learning Management ... |
| CVE-2024-50837 | MEDIUM | 5.4 | 0.5% | Nov 14, 2024 | A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/admin_user.php in KASHIPARA E-learning Management ... |
| CVE-2024-11212 | HIGH | 8.8 | 0.6% | Nov 14, 2024 | A vulnerability, which was classified as critical, has been found in SourceCodester Best Employee Management System 1.0.... |
| CVE-2024-11211 | HIGH | 7.2 | 0.6% | Nov 14, 2024 | A vulnerability classified as critical has been found in EyouCMS up to 1.6.7. Affected is an unknown function of the com... |
| CVE-2024-11210 | MEDIUM | 5.4 | 0.6% | Nov 14, 2024 | A vulnerability was found in EyouCMS 1.51. It has been rated as critical. This issue affects the function editFile of th... |
| CVE-2024-9633 | HIGH | 7.5 | 0.4% | Nov 14, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.3 before 17.4.2, all versions start... |
| CVE-2024-50843 | MEDIUM | 5.3 | 0.6% | Nov 14, 2024 | A Directory listing issue was found in PHPGurukul User Registration & Login and User Management System 3.2, which allows... |
| CVE-2024-50842 | MEDIUM | 5.4 | 0.4% | Nov 14, 2024 | A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/school_year.php in KASHIPARA E-learning Management... |
| CVE-2024-50841 | MEDIUM | 5.4 | 0.4% | Nov 14, 2024 | A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/calendar_of_events.php in KASHIPARA E-learning Man... |
| CVE-2024-50840 | MEDIUM | 5.4 | 0.4% | Nov 14, 2024 | A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/class.php in KASHIPARA E-learning Management Syste... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now