2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-35410 | MEDIUM | 6.2 | 0.3% | Nov 8, 2024 | wac commit 385e1 was discovered to contain a heap overflow via the interpret function at /wac-asan/wa.c. This vulnerabil... |
| CVE-2024-27532 | HIGH | 7.5 | 0.5% | Nov 8, 2024 | wasm-micro-runtime (aka WebAssembly Micro Runtime or WAMR) 06df58f is vulnerable to NULL Pointer Dereference in function... |
| CVE-2024-27530 | HIGH | 8.4 | 0.2% | Nov 8, 2024 | wasm3 139076a contains a Use-After-Free in ForEachModule. |
| CVE-2024-27529 | HIGH | 8.4 | 0.3% | Nov 8, 2024 | wasm3 139076a contains memory leaks in Read_utf8. |
| CVE-2024-27528 | HIGH | 8.4 | 0.2% | Nov 8, 2024 | wasm3 139076a suffers from Invalid Memory Read, leading to DoS and potential Code Execution. |
| CVE-2024-27527 | HIGH | 7.5 | 0.4% | Nov 8, 2024 | wasm3 139076a is vulnerable to Denial of Service (DoS). |
| CVE-2024-11026 | HIGH | 7.4 | 0.6% | Nov 8, 2024 | A vulnerability was found in Intelligent Apps Freenow App 12.10.0 on Android. It has been rated as problematic. Affected... |
| CVE-2024-51157 | MEDIUM | 4.7 | 0.2% | Nov 8, 2024 | 07FLYCMS V1.3.9 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component http://erp.07fly.net:80/... |
| CVE-2024-50809 | HIGH | 8.8 | 0.7% | Nov 8, 2024 | The theme.php file in SDCMS 2.8 has a command execution vulnerability that allows for the execution of system commands |
| CVE-2024-50808 | HIGH | 8.8 | 0.6% | Nov 8, 2024 | SeaCms 13.1 is vulnerable to code injection in the notification module of the member message notification module in the ... |
| CVE-2024-21994 | MEDIUM | 4.3 | 0.3% | Nov 8, 2024 | StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9 are susceptible to a Denial of Service (DoS) vulnerab... |
| CVE-2024-51997 | HIGH | 8.1 | 0.3% | Nov 8, 2024 | Trustee is a set of tools and components for attesting confidential guests and providing secrets to them. The ART (**Att... |
| CVE-2024-51211 | CRITICAL | 9.8 | 2.2% | Nov 8, 2024 | SQL injection vulnerability exists in OS4ED openSIS-Classic Version 9.1, specifically in the resetuserinfo.php file. The... |
| CVE-2024-51055 | MEDIUM | 6.5 | 0.6% | Nov 8, 2024 | An issue Hoosk v1.7.1 allows a remote attacker to execute arbitrary code via a crafted script to the config.php componen... |
| CVE-2024-50811 | CRITICAL | 9.1 | 0.4% | Nov 8, 2024 | hopetree izone lts c011b48 contains a server-side request forgery (SSRF) vulnerability in the active push function as \\... |
| CVE-2024-50810 | MEDIUM | 5.4 | 0.2% | Nov 8, 2024 | hopetree izone lts c011b48 contains a Cross Site Scripting (XSS) vulnerability in the article comment function. In \apps... |
| CVE-2024-44765 | MEDIUM | 6.5 | 0.7% | Nov 8, 2024 | An Improper Authorization (Access Control Misconfiguration) vulnerability in MGT-COMMERCE GmbH CloudPanel v2.0.0 to v2.4... |
| CVE-2024-9841 | MEDIUM | 6.1 | 0.2% | Nov 8, 2024 | A Reflected Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Management Center and ArcS... |
| CVE-2024-51152 | HIGH | 7.2 | 0.9% | Nov 8, 2024 | File Upload vulnerability in Laravel CMS v.1.4.7 and before allows a remote attacker to execute arbitrary code via the s... |
| CVE-2024-51032 | MEDIUM | 5.4 | 0.4% | Nov 8, 2024 | A Cross-site Scripting (XSS) vulnerability in manage_recipient.php of Sourcecodester Toll Tax Management System 1.0 allo... |
| CVE-2024-51031 | MEDIUM | 5.4 | 0.4% | Nov 8, 2024 | A Cross-site Scripting (XSS) vulnerability in manage_account.php in Sourcecodester Cab Management System 1.0 allows remo... |
| CVE-2024-51030 | MEDIUM | 6.5 | 0.7% | Nov 8, 2024 | A SQL injection vulnerability in manage_client.php and view_cab.php of Sourcecodester Cab Management System 1.0 allows r... |
| CVE-2024-40240 | MEDIUM | 6.8 | 0.3% | Nov 8, 2024 | An incorrect access control issue in HomeServe Home Repair' android app - 3.3.4 allows a physically proximate attacker t... |
| CVE-2024-40239 | MEDIUM | 6.8 | 0.3% | Nov 8, 2024 | An incorrect access control issue in Life: Personal Diary, Journal android app 17.5.0 allows a physically proximate atta... |
| CVE-2024-50634 | HIGH | 8.8 | 0.4% | Nov 8, 2024 | A vulnerability in a weak JWT token in Watcharr v1.43.0 and below allows attackers to perform privilege escalation using... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now