2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-26283 | HIGH | 7.8 | 0.3% | Feb 22, 2024 | An attacker could have executed unauthorized scripts on top origin sites using a JavaScript URI when opening an external... |
| CVE-2024-26282 | HIGH | 7.1 | 0.3% | Feb 22, 2024 | Using an AMP url with a canonical element, an attacker could have executed JavaScript from an opened bookmarked page. Th... |
| CVE-2024-25851 | HIGH | 8 | 1.9% | Feb 22, 2024 | Netis WF2780 v2.1.40144 was discovered to contain a command injection vulnerability via the config_sequence parameter in... |
| CVE-2024-1563 | HIGH | 8.1 | 0.4% | Feb 22, 2024 | An attacker could have executed unauthorized scripts on top origin sites using a JavaScript URI when opening an external... |
| CVE-2024-26352 | HIGH | 8.8 | 0.3% | Feb 22, 2024 | flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /core/tools/add_places... |
| CVE-2024-26350 | HIGH | 8.8 | 0.3% | Feb 22, 2024 | flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /core/tools/update_con... |
| CVE-2024-23094 | HIGH | 8.8 | 0.3% | Feb 22, 2024 | Flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /cover/addons/info_med... |
| CVE-2024-25021 | HIGH | 8.4 | 0.3% | Feb 22, 2024 | IBM AIX 7.3, VIOS 4.1's Perl implementation could allow a non-privileged local user to exploit a vulnerability to execut... |
| CVE-2024-1104 | HIGH | 7.5 | 0.7% | Feb 22, 2024 | An unauthenticated remote attacker can bypass the brute force prevention mechanism and disturb the webservice for all us... |
| CVE-2024-0220 | HIGH | 8.1 | 0.4% | Feb 22, 2024 | B&R Automation Studio Upgrade Service and B&R Technology Guarding use insufficient cryptography for communication to the... |
| CVE-2024-27283 | HIGH | 7.2 | 0.7% | Feb 22, 2024 | A vulnerability was discovered in Veritas eDiscovery Platform before 10.2.5. The application administrator can upload po... |
| CVE-2024-26483 | HIGH | 8.8 | 1.0% | Feb 22, 2024 | An arbitrary file upload vulnerability in the Profile Image module of Kirby CMS v4.1.0 allows attackers to execute arbit... |
| CVE-2024-26482 | HIGH | 7.1 | 0.3% | Feb 22, 2024 | An HTML injection vulnerability exists in the Edit Content Layout module of Kirby CMS v4.1.0. NOTE: the vendor disputes ... |
| CVE-2024-23137 | HIGH | 7.8 | 1.0% | Feb 22, 2024 | A maliciously crafted STP or SLDPRT file, when parsed in ODXSW_DLL.dll through Autodesk applications, can be used to uni... |
| CVE-2024-23136 | HIGH | 7.8 | 0.4% | Feb 22, 2024 | A maliciously crafted STP file in ASMKERN228A.dll when parsed through Autodesk applications can be used to dereference a... |
| CVE-2024-23135 | HIGH | 7.8 | 0.5% | Feb 22, 2024 | A maliciously crafted SLDPRT file in ASMkern228A.dll when parsed through Autodesk applications can be used in user-after... |
| CVE-2024-23134 | HIGH | 7.8 | 0.5% | Feb 22, 2024 | A maliciously crafted IGS file in tbb.dll when parsed through Autodesk AutoCAD can be used in user-after-free vulnerabil... |
| CVE-2024-23133 | HIGH | 7.8 | 0.3% | Feb 22, 2024 | A maliciously crafted STP file in ASMDATAX228A.dll when parsed through Autodesk applications can lead to a memory corrup... |
| CVE-2024-23132 | HIGH | 7.8 | 0.6% | Feb 22, 2024 | A maliciously crafted STP file in atf_dwg_consumer.dll when parsed through Autodesk applications can lead to a memory co... |
| CVE-2024-23131 | HIGH | 7.8 | 0.5% | Feb 22, 2024 | A maliciously crafted STP file, when parsed in ASMIMPORT229A.dll, ASMKERN228A.dll, ASMkern229A.dll or ASMDATAX228A.dll t... |
| CVE-2024-23130 | HIGH | 7.8 | 0.5% | Feb 22, 2024 | A maliciously crafted SLDASM or SLDPRT file, when parsed in ODXSW_DLL.dll through Autodesk applications, can lead to a m... |
| CVE-2024-23129 | HIGH | 7.8 | 0.4% | Feb 22, 2024 | A maliciously crafted MODEL 3DM, STP, or SLDASM file, when in opennurbs.dll parsed through Autodesk applications, can le... |
| CVE-2024-23128 | HIGH | 7.8 | 0.5% | Feb 22, 2024 | A maliciously crafted MODEL file, when parsed in libodxdll.dll and ASMDATAX229A.dll through Autodesk applications, can l... |
| CVE-2024-23127 | HIGH | 7.8 | 0.5% | Feb 22, 2024 | A maliciously crafted MODEL, SLDPRT, or SLDASM file, when parsed in ODXSW_DLL.dll and libodxdll.dll through Autodesk app... |
| CVE-2024-23126 | HIGH | 7.8 | 0.4% | Feb 22, 2024 | A maliciously crafted CATPART file when parsed CC5Dll.dll through Autodesk applications can be used to cause a Stack-bas... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now