2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-28582 | HIGH | 8.4 | 0.4% | Mar 20, 2024 | Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod... |
| CVE-2024-28581 | HIGH | 8.4 | 0.4% | Mar 20, 2024 | Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod... |
| CVE-2024-28580 | HIGH | 8.4 | 0.4% | Mar 20, 2024 | Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod... |
| CVE-2024-28578 | HIGH | 8.4 | 0.4% | Mar 20, 2024 | Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod... |
| CVE-2024-28569 | HIGH | 7.8 | 0.3% | Mar 20, 2024 | Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod... |
| CVE-2024-28566 | HIGH | 8.4 | 0.4% | Mar 20, 2024 | Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod... |
| CVE-2024-22084 | HIGH | 7.5 | 0.4% | Mar 20, 2024 | An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Cleartext passwords and hashes... |
| CVE-2024-22082 | HIGH | 7.5 | 0.6% | Mar 20, 2024 | An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Unauthenticated directory list... |
| CVE-2024-22079 | HIGH | 7.5 | 1.0% | Mar 20, 2024 | An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Directory traversal can occur ... |
| CVE-2024-22078 | HIGH | 8.8 | 0.6% | Mar 20, 2024 | An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Privilege escalation can occur... |
| CVE-2024-1983 | HIGH | 7.1 | 0.5% | Mar 20, 2024 | The Simple Ajax Chat WordPress plugin before 20240223 does not prevent visitors from using malicious Names when using t... |
| CVE-2024-0856 | HIGH | 8.8 | 0.4% | Mar 20, 2024 | The Appointment Booking Calendar WordPress plugin before 1.3.83 does not have CSRF checks in some places, which could al... |
| CVE-2024-1799 | HIGH | 8.8 | 1.0% | Mar 20, 2024 | The GamiPress – The #1 gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPr... |
| CVE-2024-2642 | HIGH | 7.3 | 2.8% | Mar 19, 2024 | A vulnerability was found in Ruijie RG-NBS2009G-P up to 20240305. It has been declared as critical. Affected by this vul... |
| CVE-2024-28715 | HIGH | 8.8 | 1.1% | Mar 19, 2024 | Cross Site Scripting vulnerability in DOraCMS v.2.18 and before allows a remote attacker to execute arbitrary code via t... |
| CVE-2024-28092 | HIGH | 7.2 | 0.5% | Mar 19, 2024 | UBEE DDW365 XCNDDW365 8.14.3105 software on hardware 3.13.1 allows a remote attacker within Wi-Fi proximity to conduct s... |
| CVE-2024-24336 | HIGH | 8.1 | 0.4% | Mar 19, 2024 | A multiple Cross-site scripting (XSS) vulnerability in the '/members/moremember.pl', and ‘/members/members-home.pl’ endp... |
| CVE-2024-2169 | HIGH | 7.5 | 5.4% | Mar 19, 2024 | Implementations of UDP application protocol are vulnerable to network loops. An unauthenticated attacker can use malic... |
| CVE-2024-2442 | HIGH | 7.5 | 0.7% | Mar 19, 2024 | Franklin Fueling System EVO 550 and EVO 5000 are vulnerable to a Path Traversal vulnerability that could allow an attac... |
| CVE-2024-29091 | HIGH | 7.1 | 0.4% | Mar 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dnesscarkey WP Arm... |
| CVE-2024-27998 | HIGH | 7.1 | 0.4% | Mar 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dmitry V. (CEO of ... |
| CVE-2024-21677 | HIGH | 8.8 | 0.9% | Mar 19, 2024 | This High severity Path Traversal vulnerability was introduced in version 6.13.0 of Confluence Data Center. This Path Tr... |
| CVE-2024-29103 | HIGH | 7.1 | 0.3% | Mar 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NinjaTeam Database... |
| CVE-2024-29126 | HIGH | 7.1 | 0.4% | Mar 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jose Mortellaro Sp... |
| CVE-2024-29125 | HIGH | 7.1 | 0.4% | Mar 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Elliot Sowersby / ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now