2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-51573 | MEDIUM | 6.5 | 0.3% | Nov 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ersatzpole ML Resp... |
| CVE-2024-51572 | MEDIUM | 6.5 | 0.2% | Nov 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in shawfactor LH QR C... |
| CVE-2024-51571 | MEDIUM | 6.5 | 0.2% | Nov 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in masterbip MasterBi... |
| CVE-2024-38826 | MEDIUM | 5.3 | 0.4% | Nov 11, 2024 | Authenticated users can upload specifically crafted files to leak server resources. This behavior can potentially be use... |
| CVE-2024-48939 | HIGH | 7.5 | 0.7% | Nov 11, 2024 | Insufficient validation performed on the REST API License file in Paxton Net2 before 6.07.14023.5015 (SR4) enables use o... |
| CVE-2024-41992 | HIGH | 8.8 | 2.5% | Nov 11, 2024 | Wi-Fi Alliance wfa_dut (in Wi-Fi Test Suite) through 9.0.0 allows OS command injection via 802.11x frames because the sy... |
| CVE-2024-11061 | HIGH | 8.8 | 1.2% | Nov 11, 2024 | A vulnerability classified as critical was found in Tenda AC10 16.03.10.13. Affected by this vulnerability is the functi... |
| CVE-2024-11060 | MEDIUM | 6.3 | 0.3% | Nov 11, 2024 | A vulnerability classified as critical has been found in Jinher Network Collaborative Management Platform 金和数字化智能办公平台 1.... |
| CVE-2024-11059 | CRITICAL | 9.8 | 0.5% | Nov 11, 2024 | A vulnerability was found in Project Worlds Free Download Online Shopping System up to 192.168.1.88. It has been rated a... |
| CVE-2024-11058 | HIGH | 7.2 | 0.5% | Nov 10, 2024 | A vulnerability was found in CodeAstro Real Estate Management System up to 1.0. It has been declared as critical. This v... |
| CVE-2024-46956 | HIGH | 7.8 | 0.4% | Nov 10, 2024 | An issue was discovered in psi/zfile.c in Artifex Ghostscript before 10.04.0. Out-of-bounds data access in filenameforal... |
| CVE-2024-46955 | MEDIUM | 5.5 | 0.3% | Nov 10, 2024 | An issue was discovered in psi/zcolor.c in Artifex Ghostscript before 10.04.0. There is an out-of-bounds read when readi... |
| CVE-2024-46954 | HIGH | 7.8 | 0.5% | Nov 10, 2024 | An issue was discovered in decode_utf8 in base/gp_utf8.c in Artifex Ghostscript before 10.04.0. Overlong UTF-8 encoding ... |
| CVE-2024-46953 | HIGH | 7.8 | 0.4% | Nov 10, 2024 | An issue was discovered in base/gsdevice.c in Artifex Ghostscript before 10.04.0. An integer overflow when parsing the f... |
| CVE-2024-46952 | HIGH | 7.8 | 0.3% | Nov 10, 2024 | An issue was discovered in pdf/pdf_xref.c in Artifex Ghostscript before 10.04.0. There is a buffer overflow during handl... |
| CVE-2024-46951 | HIGH | 7.8 | 0.4% | Nov 10, 2024 | An issue was discovered in psi/zcolor.c in Artifex Ghostscript before 10.04.0. An unchecked Implementation pointer in Pa... |
| CVE-2024-46613 | CRITICAL | 9.8 | 0.5% | Nov 10, 2024 | WeeChat before 4.4.2 has an integer overflow and resultant buffer overflow at core/core-string.c when there are more tha... |
| CVE-2024-11057 | CRITICAL | 9.8 | 0.6% | Nov 10, 2024 | A vulnerability has been found in Codezips Hospital Appointment System 1.0 and classified as critical. Affected by this ... |
| CVE-2024-11056 | HIGH | 8.8 | 1.0% | Nov 10, 2024 | A vulnerability, which was classified as critical, was found in Tenda AC10 16.03.10.13. Affected is the function FUN_004... |
| CVE-2024-11055 | CRITICAL | 9.8 | 0.6% | Nov 10, 2024 | A vulnerability, which was classified as critical, has been found in 1000 Projects Beauty Parlour Management System 1.0.... |
| CVE-2024-10958 | HIGH | 7.3 | 1.6% | Nov 10, 2024 | The The WP Photo Album Plus plugin for WordPress is vulnerable to arbitrary shortcode execution via getshortcodedrendere... |
| CVE-2024-10265 | MEDIUM | 6.1 | 0.4% | Nov 10, 2024 | The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Reflect... |
| CVE-2024-51576 | MEDIUM | 5.4 | 0.2% | Nov 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpza AMP Img Short... |
| CVE-2024-51578 | MEDIUM | 5.4 | 0.2% | Nov 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in lpagg 3D Presentat... |
| CVE-2024-51577 | MEDIUM | 5.4 | 0.2% | Nov 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in neville.lugton bpm... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now