2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-6068HIGH7.3A memory corruption vulnerability exists in the affected products when parsing DFT files. Local threat actors can explo...
CVE-2024-50836MEDIUM4.8A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/teachers.php in KASHIPARA E-learning Management Sy...
CVE-2024-50835HIGH7.2A SQL Injection vulnerability was found in /admin/edit_student.php in KASHIPARA E-learning Management System Project 1.0...
CVE-2024-50834HIGH7.2A SQL Injection was found in /admin/teachers.php in KASHIPARA E-learning Management System Project 1.0 via the firstname...
CVE-2024-50833CRITICAL9.8A SQL Injection vulnerability was found in /login.php in KASHIPARA E-learning Management System Project 1.0 via the user...
CVE-2024-50832HIGH7.2A SQL Injection vulnerability was found in /admin/edit_class.php in kashipara E-learning Management System Project 1.0 v...
CVE-2024-37285HIGH7.2A deserialization issue in Kibana can lead to arbitrary code execution when Kibana attempts to parse a YAML document con...
CVE-2024-52505MEDIUM5.4matrix-appservice-irc is a Node.js IRC bridge for the Matrix messaging protocol. The provisioning API of the matrix-apps...
CVE-2024-52302HIGH8.7common-user-management is a robust Spring Boot application featuring user management services designed to control user a...
CVE-2024-42188MEDIUM4.6HCL Connections is vulnerable to a broken access control vulnerability that may allow an unauthorized user to update dat...
CVE-2024-11214HIGH7.2A vulnerability has been found in SourceCodester Best Employee Management System 1.0 and classified as critical. This vu...
CVE-2024-11213HIGH7.2A vulnerability, which was classified as critical, was found in SourceCodester Best Employee Management System 1.0. This...
CVE-2024-11136HIGH8.2The default TCL Camera application exposes a provider vulnerable to path traversal vulnerability. Malicious application ...
CVE-2024-10921HIGH8.1An authorized user may trigger crashes or receive the contents of buffer over-reads of Server memory by issuing speciall...
CVE-2024-7124MEDIUM5.3Improper Neutralization of Input During Web Page Generation vulnerability in DInGO dLibra software in the parameter 'fil...
CVE-2024-50838MEDIUM5.4A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/department.php in KASHIPARA E-learning Management ...
CVE-2024-50837MEDIUM5.4A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/admin_user.php in KASHIPARA E-learning Management ...
CVE-2024-11212HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester Best Employee Management System 1.0....
CVE-2024-11211HIGH7.2A vulnerability classified as critical has been found in EyouCMS up to 1.6.7. Affected is an unknown function of the com...
CVE-2024-11210MEDIUM5.4A vulnerability was found in EyouCMS 1.51. It has been rated as critical. This issue affects the function editFile of th...
CVE-2024-9633HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.3 before 17.4.2, all versions start...
CVE-2024-50843MEDIUM5.3A Directory listing issue was found in PHPGurukul User Registration & Login and User Management System 3.2, which allows...
CVE-2024-50842MEDIUM5.4A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/school_year.php in KASHIPARA E-learning Management...
CVE-2024-50841MEDIUM5.4A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/calendar_of_events.php in KASHIPARA E-learning Man...
CVE-2024-50840MEDIUM5.4A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/class.php in KASHIPARA E-learning Management Syste...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now