2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-47464 | MEDIUM | 6.8 | 0.9% | Nov 5, 2024 | An authenticated Path Traversal vulnerability exists in Instant AOS-8 and AOS-10. Successful exploitation of this vulner... |
| CVE-2024-47463 | HIGH | 7.2 | 1.2% | Nov 5, 2024 | An arbitrary file creation vulnerability exists in the Instant AOS-8 and AOS-10 command line interface. Successful explo... |
| CVE-2024-47462 | HIGH | 7.2 | 1.2% | Nov 5, 2024 | An arbitrary file creation vulnerability exists in the Instant AOS-8 and AOS-10 command line interface. Successful explo... |
| CVE-2024-47461 | HIGH | 7.2 | 1.7% | Nov 5, 2024 | An authenticated command injection vulnerability exists in the Instant AOS-8 and AOS-10 command line interface. A succes... |
| CVE-2024-47460 | CRITICAL | 9 | 1.4% | Nov 5, 2024 | Command injection vulnerability in the underlying CLI service could lead to unauthenticated remote code execution by sen... |
| CVE-2024-42509 | CRITICAL | 9.8 | 2.0% | Nov 5, 2024 | Command injection vulnerability in the underlying CLI service could lead to unauthenticated remote code execution by sen... |
| CVE-2024-51756 | LOW | 2.3 | 0.6% | Nov 5, 2024 | The cap-std project is organized around the eponymous `cap-std` crate, and develops libraries to make it easy to write c... |
| CVE-2024-51745 | CRITICAL | 10 | 0.8% | Nov 5, 2024 | Wasmtime is a fast and secure runtime for WebAssembly. Wasmtime's filesystem sandbox implementation on Windows blocks ac... |
| CVE-2024-51116 | HIGH | 8.8 | 0.4% | Nov 5, 2024 | Tenda AC6 v2.0 V15.03.06.50 was discovered to contain a buffer overflow in the function 'formSetPPTPServer'. |
| CVE-2024-10084 | MEDIUM | 4.3 | 0.3% | Nov 5, 2024 | The Contact Form 7 – Dynamic Text Extension plugin for WordPress is vulnerable to Basic Information Disclosure in all ve... |
| CVE-2024-7995 | HIGH | 7.8 | 0.2% | Nov 5, 2024 | A maliciously crafted binary file when downloaded could lead to escalation of privileges to NT AUTHORITY/SYSTEM due to a... |
| CVE-2024-51753 | LOW | 2.1 | 0.2% | Nov 5, 2024 | The AuthKit library for Remix provides convenient helpers for authentication and session management using WorkOS & AuthK... |
| CVE-2024-51752 | MEDIUM | 5.5 | 0.2% | Nov 5, 2024 | The AuthKit library for Next.js provides convenient helpers for authentication and session management using WorkOS & Aut... |
| CVE-2024-51746 | LOW | 1.8 | 0.1% | Nov 5, 2024 | Gitsign is a keyless Sigstore to signing tool for Git commits with your a GitHub / OIDC identity. gitsign may select the... |
| CVE-2024-51740 | HIGH | 8.8 | 0.5% | Nov 5, 2024 | Combodo iTop is a simple, web based IT Service Management tool. This vulnerability can be used to create HTTP requests o... |
| CVE-2024-51735 | HIGH | 8.7 | 0.4% | Nov 5, 2024 | Osmedeus is a Workflow Engine for Offensive Security. Cross-site Scripting (XSS) occurs on the Osmedues web server when ... |
| CVE-2024-51493 | MEDIUM | 6.5 | 0.3% | Nov 5, 2024 | OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up until and including 1.10.... |
| CVE-2024-51382 | HIGH | 8.4 | 0.2% | Nov 5, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in JATOS v3.9.3 allows an attacker to reset the administrator's password... |
| CVE-2024-51381 | HIGH | 8.4 | 0.2% | Nov 5, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in JATOS v3.9.3 that allows attackers to perform actions reserved for ad... |
| CVE-2024-51380 | HIGH | 8.4 | 0.5% | Nov 5, 2024 | Stored Cross-Site Scripting (XSS) vulnerability discovered in the Properties Component of JATOS v3.9.3. This flaw allows... |
| CVE-2024-51379 | HIGH | 8.4 | 0.6% | Nov 5, 2024 | Stored Cross-Site Scripting (XSS) vulnerability discovered in JATOS v3.9.3. The vulnerability exists in the description ... |
| CVE-2024-51240 | HIGH | 8 | 0.3% | Nov 5, 2024 | An issue in the luci-mod-rpc package in OpenWRT Luci LTS allows for privilege escalation from an admin account to root v... |
| CVE-2024-50335 | MEDIUM | 5.4 | 0.3% | Nov 5, 2024 | SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. The "Publish K... |
| CVE-2024-50333 | HIGH | 8.8 | 0.4% | Nov 5, 2024 | SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. User input is ... |
| CVE-2024-50332 | HIGH | 8.8 | 0.4% | Nov 5, 2024 | SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Insufficient i... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now