2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-30506 | HIGH | 7.1 | 0.4% | Mar 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vsourz Digital All... |
| CVE-2024-30504 | HIGH | 7.2 | 0.6% | Mar 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Travel Engine.T... |
| CVE-2024-29890 | HIGH | 8.8 | 0.8% | Mar 29, 2024 | DataLens is a business intelligence and data visualization system. A specifically crafted request allowed the creation o... |
| CVE-2024-28867 | HIGH | 7.4 | 0.6% | Mar 29, 2024 | Swift Prometheus is a Swift client for the Prometheus monitoring system, supporting counters, gauges and histograms. In ... |
| CVE-2024-28405 | HIGH | 7.2 | 0.8% | Mar 29, 2024 | SEMCMS 4.8 is vulnerable to Incorrect Access Control. The code installs SEMCMS_Funtion.php before checking if the admin ... |
| CVE-2024-27619 | HIGH | 7.3 | 1.0% | Mar 29, 2024 | Dlink Dir-3040us A1 1.20b03a hotfix is vulnerable to Buffer Overflow. Any user having read/write access to ftp server ca... |
| CVE-2024-23537 | HIGH | 8.8 | 1.1% | Mar 29, 2024 | Improper Privilege Management vulnerability in Apache Fineract.This issue affects Apache Fineract: <1.8.5. Users are re... |
| CVE-2024-30637 | HIGH | 8.8 | 1.8% | Mar 29, 2024 | Tenda F1202 v1.2.0.20(408) has a command injection vulnerablility in the formWriteFacMac function in the mac parameter. |
| CVE-2024-30634 | HIGH | 8 | 0.7% | Mar 29, 2024 | Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability via the mitInterface parameter in the fromAddressNat funct... |
| CVE-2024-30501 | HIGH | 7.2 | 0.6% | Mar 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPChill Download M... |
| CVE-2024-30500 | HIGH | 8.8 | 0.6% | Mar 29, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in CubeWP CubeWP – All-in-One Dynamic Content Framework.Th... |
| CVE-2024-30499 | HIGH | 8.8 | 0.6% | Mar 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CRM Perks CRM Perk... |
| CVE-2024-30497 | HIGH | 8.8 | 0.6% | Mar 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in I Thirteen Web Sol... |
| CVE-2024-30496 | HIGH | 8.8 | 0.6% | Mar 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BdThemes Element P... |
| CVE-2024-30495 | HIGH | 7.2 | 0.6% | Mar 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Faboba Falang mult... |
| CVE-2024-30494 | HIGH | 7.6 | 0.5% | Mar 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in 沈唁 OSS Aliyun.This... |
| CVE-2024-30491 | HIGH | 8.8 | 32.0% | Mar 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Metagauss ProfileG... |
| CVE-2024-30488 | HIGH | 8.8 | 0.6% | Mar 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Katie Zotpress zot... |
| CVE-2024-30487 | HIGH | 7.6 | 0.5% | Mar 29, 2024 | Missing Authorization vulnerability in Sonaar Music MP3 Audio Player for Music, Radio & Podcast by Sonaar.This issue aff... |
| CVE-2024-30486 | HIGH | 8.8 | 0.6% | Mar 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Max Foundry Media ... |
| CVE-2024-30478 | HIGH | 7.2 | 0.6% | Mar 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bulletin WordPress... |
| CVE-2024-30627 | HIGH | 8.8 | 0.8% | Mar 29, 2024 | Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the deviceId parameter from saveParentControlInfo funct... |
| CVE-2024-30626 | HIGH | 8 | 0.7% | Mar 29, 2024 | Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the schedEndTime parameter from setSchedWifi function. |
| CVE-2024-30625 | HIGH | 8 | 0.7% | Mar 29, 2024 | Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the entrys parameter from fromAddressNat function. |
| CVE-2024-30624 | HIGH | 8.8 | 0.7% | Mar 29, 2024 | Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the urls parameter from saveParentControlInfo function. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now