2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-24832 | HIGH | 7.5 | 0.4% | Mar 23, 2024 | Missing Authorization vulnerability in Metagauss EventPrime.This issue affects EventPrime: from n/a through 3.3.9. |
| CVE-2024-2025 | HIGH | 8.8 | 0.8% | Mar 23, 2024 | The "BuddyPress WooCommerce My Account Integration. Create WooCommerce Member Pages" plugin for WordPress is vulnerable ... |
| CVE-2024-29059 | HIGH | 7.5 | 98.8% | Mar 23, 2024 | .NET Framework Information Disclosure Vulnerability |
| CVE-2024-29190 | HIGH | 7.5 | 0.7% | Mar 22, 2024 | Mobile Security Framework (MobSF) is a pen-testing, malware analysis and security assessment framework capable of perfor... |
| CVE-2024-2828 | HIGH | 8.8 | 0.6% | Mar 22, 2024 | A vulnerability, which was classified as critical, was found in lakernote EasyAdmin up to 20240315. Affected is the func... |
| CVE-2024-2827 | HIGH | 8.8 | 0.6% | Mar 22, 2024 | A vulnerability, which was classified as critical, has been found in lakernote EasyAdmin up to 20240315. This issue affe... |
| CVE-2024-2826 | HIGH | 8.8 | 0.6% | Mar 22, 2024 | A vulnerability classified as problematic was found in lakernote EasyAdmin up to 20240315. This vulnerability affects un... |
| CVE-2024-2825 | HIGH | 8.8 | 0.7% | Mar 22, 2024 | A vulnerability classified as critical has been found in lakernote EasyAdmin up to 20240315. This affects an unknown par... |
| CVE-2024-29499 | HIGH | 7.4 | 0.3% | Mar 22, 2024 | Anchor CMS v0.12.7 was discovered to contain a Cross-Site Request Forgery (CSRF) via /anchor/admin/users/delete/2. |
| CVE-2024-29366 | HIGH | 8.8 | 2.4% | Mar 22, 2024 | A command injection vulnerability exists in the cgibin binary in DIR-845L router firmware <= v1.01KRb03. |
| CVE-2024-29184 | HIGH | 8 | 0.9% | Mar 22, 2024 | FreeScout is a self-hosted help desk and shared mailbox. A Stored Cross-Site Scripting (XSS) vulnerability has been iden... |
| CVE-2024-2228 | HIGH | 8.8 | 0.4% | Mar 22, 2024 | This vulnerability allows an authenticated user to perform a Lifecycle Manager flow or other QuickLink for a target user... |
| CVE-2024-2227 | HIGH | 7.5 | 0.8% | Mar 22, 2024 | This vulnerability allows access to arbitrary files in the application server file system due to a path traversal vulner... |
| CVE-2024-2725 | HIGH | 7.5 | 0.6% | Mar 22, 2024 | Information exposure vulnerability in the CIGESv2 system. A remote attacker might be able to access /vendor/composer/ins... |
| CVE-2024-2724 | HIGH | 7.5 | 0.7% | Mar 22, 2024 | SQL injection vulnerability in the CIGESv2 system, through /ajaxServiciosAtencion.php, in the 'idServicio' parameter. Th... |
| CVE-2024-2723 | HIGH | 7.5 | 0.7% | Mar 22, 2024 | SQL injection vulnerability in the CIGESv2 system, through /ajaxSubServicios.php, in the 'idServicio' parameter. The exp... |
| CVE-2024-2722 | HIGH | 7.5 | 0.7% | Mar 22, 2024 | SQL injection vulnerability in the CIGESv2 system, through /ajaxConfigTotem.php, in the 'id' parameter. The exploitation... |
| CVE-2024-2449 | HIGH | 7.5 | 12.9% | Mar 22, 2024 | A cross-site request forgery vulnerability has been identified in LoadMaster. It is possible for a malicious actor, who... |
| CVE-2024-2448 | HIGH | 8.8 | 55.4% | Mar 22, 2024 | An OS command injection vulnerability has been identified in LoadMaster. An authenticated UI user with any permission s... |
| CVE-2024-29944 | HIGH | 8.4 | 4.7% | Mar 22, 2024 | An attacker was able to inject an event handler into a privileged object that would allow arbitrary JavaScript execution... |
| CVE-2024-28559 | HIGH | 8.8 | 0.8% | Mar 22, 2024 | SQL injection vulnerability in Niushop B2B2C v.5.3.3 and before allows an attacker to escalate privileges via the setPri... |
| CVE-2024-28824 | HIGH | 7.8 | 0.2% | Mar 22, 2024 | Least privilege violation and reliance on untrusted inputs in the mk_informix Checkmk agent plugin before Checkmk 2.3.0b... |
| CVE-2024-1848 | HIGH | 7.8 | 0.3% | Mar 22, 2024 | Heap-based Buffer Overflow, Memory Corruption, Out-Of-Bounds Read, Out-Of-Bounds Write, Stack-based Buffer Overflow, Typ... |
| CVE-2024-2812 | HIGH | 8.8 | 4.0% | Mar 22, 2024 | A vulnerability was found in Tenda AC15 15.03.05.18/15.03.20_multi. It has been classified as critical. This affects the... |
| CVE-2024-25808 | HIGH | 8.3 | 0.4% | Mar 22, 2024 | Cross-site Request Forgery (CSRF) vulnerability in Lychee version 3.1.6, allows remote attackers to execute arbitrary co... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now