2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27899 | HIGH | 8.8 | 0.4% | Apr 9, 2024 | Self-Registration and Modify your own profile in User Admin Application of NetWeaver AS Java does not enforce proper sec... |
| CVE-2024-23084 | HIGH | 7.5 | 0.8% | Apr 8, 2024 | Apfloat v1.10.1 was discovered to contain an ArrayIndexOutOfBoundsException via the component org.apfloat.internal.Doubl... |
| CVE-2024-27632 | HIGH | 8.8 | 1.3% | Apr 8, 2024 | An issue in GNU Savane v.3.12 and before allows a remote attacker to escalate privileges via the form_id in the form_hea... |
| CVE-2024-0082 | HIGH | 8.2 | 0.2% | Apr 8, 2024 | NVIDIA ChatRTX for Windows contains a vulnerability in the UI, where an attacker can cause improper privilege management... |
| CVE-2024-3466 | HIGH | 8.8 | 0.7% | Apr 8, 2024 | A vulnerability was found in SourceCodester Laundry Management System 1.0. It has been declared as critical. Affected by... |
| CVE-2024-27630 | HIGH | 7.5 | 0.8% | Apr 8, 2024 | Insecure Direct Object Reference (IDOR) in GNU Savane v.3.12 and before allows a remote attacker to delete arbitrary fil... |
| CVE-2024-24279 | HIGH | 8.8 | 0.1% | Apr 8, 2024 | An issue in secdiskapp 1.5.1 (management program for NewQ Fingerprint Encryption Super Speed Flash Disk) allows attacker... |
| CVE-2024-23085 | HIGH | 7.5 | 0.6% | Apr 8, 2024 | Apfloat v1.10.1 was discovered to contain a NullPointerException via the component org.apfloat.internal.DoubleScramble::... |
| CVE-2024-28270 | HIGH | 8.1 | 0.4% | Apr 8, 2024 | An issue discovered in web-flash v3.0 allows attackers to reset passwords for arbitrary users via crafted POST request t... |
| CVE-2024-31442 | HIGH | 8.8 | 0.5% | Apr 8, 2024 | Redon Hub is a Roblox Product Delivery Bot, also known as a Hub. In all hubs before version 1.0.2, all commands are capa... |
| CVE-2024-3442 | HIGH | 8.8 | 0.7% | Apr 8, 2024 | A vulnerability classified as critical has been found in SourceCodester Prison Management System 1.0. This affects an un... |
| CVE-2024-3441 | HIGH | 8.8 | 0.7% | Apr 8, 2024 | A vulnerability was found in SourceCodester Prison Management System 1.0. It has been rated as critical. Affected by thi... |
| CVE-2024-3440 | HIGH | 7.2 | 0.7% | Apr 8, 2024 | A vulnerability was found in SourceCodester Prison Management System 1.0. It has been declared as critical. Affected by ... |
| CVE-2024-28732 | HIGH | 7.5 | 0.8% | Apr 8, 2024 | An issue was discovered in OFPMatch in parser.py in Faucet SDN Ryu version 4.34, allows remote attackers to cause a deni... |
| CVE-2024-31817 | HIGH | 7.5 | 55.3% | Apr 8, 2024 | In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensitive information without authorization through the... |
| CVE-2024-31816 | HIGH | 7.5 | 2.7% | Apr 8, 2024 | In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensitive information without authorization through the... |
| CVE-2024-31814 | HIGH | 8.8 | 8.6% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 allows attackers to bypass login through the Form_Login function. |
| CVE-2024-31813 | HIGH | 8.4 | 0.2% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 does not contain an authentication mechanism by default. |
| CVE-2024-31811 | HIGH | 8 | 1.0% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the lang... |
| CVE-2024-31809 | HIGH | 8.8 | 1.0% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the File... |
| CVE-2024-31808 | HIGH | 8.8 | 0.9% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the webW... |
| CVE-2024-2834 | HIGH | 8.7 | 0.5% | Apr 8, 2024 | A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Management Center and ArcSigh... |
| CVE-2024-28066 | HIGH | 8.8 | 0.5% | Apr 8, 2024 | In Unify CP IP Phone firmware 1.10.4.3, Weak Credentials are used (a hardcoded root password). |
| CVE-2024-26574 | HIGH | 7.8 | 0.3% | Apr 8, 2024 | Insecure Permissions vulnerability in Wondershare Filmora v.13.0.51 allows a local attacker to execute arbitrary code vi... |
| CVE-2024-27897 | HIGH | 7.5 | 0.3% | Apr 8, 2024 | Input verification vulnerability in the call module. Impact: Successful exploitation of this vulnerability may affect se... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now