2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-23762 | HIGH | 7.8 | 0.3% | Feb 12, 2024 | Unrestricted File Upload vulnerability in Content Manager feature in Gambio 4.9.2.0 allows attackers to execute arbitrar... |
| CVE-2024-23833 | HIGH | 7.5 | 1.0% | Feb 12, 2024 | OpenRefine is a free, open source power tool for working with messy data and improving it. A jdbc attack vulnerability e... |
| CVE-2024-25110 | HIGH | 8.1 | 6.6% | Feb 12, 2024 | The UAMQP is a general purpose C library for AMQP 1.0. During a call to open_get_offered_capabilities, a memory allocati... |
| CVE-2024-25108 | HIGH | 8.8 | 0.7% | Feb 12, 2024 | Pixelfed is an open source photo sharing platform. When processing requests authorization was improperly and insufficien... |
| CVE-2024-22228 | HIGH | 7.8 | 0.6% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cifssupport utility. An au... |
| CVE-2024-22227 | HIGH | 7.8 | 0.6% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_dc utility. An authenticat... |
| CVE-2024-22225 | HIGH | 7.8 | 1.0% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_supportassist utility. An ... |
| CVE-2024-22224 | HIGH | 7.8 | 0.9% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_nas utility. An authentica... |
| CVE-2024-22223 | HIGH | 7.8 | 0.9% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_cbr utility. An authen... |
| CVE-2024-22222 | HIGH | 7.8 | 0.9% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_udoctor utility. An au... |
| CVE-2024-0170 | HIGH | 7.8 | 0.8% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cava utility. An authentic... |
| CVE-2024-0168 | HIGH | 7.8 | 0.8% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains a Command Injection Vulnerability in svc_oscheck utility. An authenticated ... |
| CVE-2024-0167 | HIGH | 7.8 | 0.8% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in the svc_topstats utility. An authe... |
| CVE-2024-0166 | HIGH | 7.8 | 1.1% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_tcpdump utility. An authen... |
| CVE-2024-0165 | HIGH | 7.8 | 1.0% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_acldb_dump utility. An aut... |
| CVE-2024-0164 | HIGH | 7.8 | 1.1% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contain an OS Command Injection Vulnerability in its svc_topstats utility. An authen... |
| CVE-2024-0566 | HIGH | 7.2 | 3.3% | Feb 12, 2024 | The Smart Manager WordPress plugin before 8.28.0 does not properly sanitise and escape a parameter before using it in a ... |
| CVE-2024-24935 | HIGH | 8.8 | 0.2% | Feb 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WpSimpleTools Basic Log Viewer.This issue affects Basic Log Viewer: f... |
| CVE-2024-24929 | HIGH | 8.8 | 0.2% | Feb 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Ryan Duff, Peter Westwood WP Contact Form.This issue affects WP Conta... |
| CVE-2024-24887 | HIGH | 8.8 | 0.2% | Feb 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Contest Gallery Photos and Files Contest Gallery – Contact Form, Uplo... |
| CVE-2024-24884 | HIGH | 8.8 | 0.2% | Feb 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in ARI Soft Contact Form 7 Connector.This issue affects Contact Form 7 C... |
| CVE-2024-24875 | HIGH | 8.8 | 0.2% | Feb 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Yannick Lefebvre Link Library.This issue affects Link Library: from n... |
| CVE-2024-24926 | HIGH | 8.8 | 1.1% | Feb 12, 2024 | Deserialization of Untrusted Data vulnerability in UnitedThemes Brooklyn | Creative Multi-Purpose Responsive WordPress T... |
| CVE-2024-24796 | HIGH | 8.8 | 0.5% | Feb 12, 2024 | Deserialization of Untrusted Data vulnerability in MagePeople Team Event Manager and Tickets Selling Plugin for WooComme... |
| CVE-2024-25744 | HIGH | 8.8 | 0.3% | Feb 12, 2024 | In the Linux kernel before 6.6.7, an untrusted VMM can trigger int80 syscall handling at any given point. This is relate... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now