2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-24350 | HIGH | 8.8 | 1.2% | Feb 8, 2024 | File Upload vulnerability in Software Publico e-Sic Livre v.2.0 and before allows a remote attacker to execute arbitrary... |
| CVE-2024-24806 | HIGH | 7.3 | 2.0% | Feb 7, 2024 | libuv is a multi-platform support library with a focus on asynchronous I/O. The `uv_getaddrinfo` function in `src/unix/g... |
| CVE-2024-23448 | HIGH | 7.5 | 0.6% | Feb 7, 2024 | An issue was discovered whereby APM Server could log at ERROR level, a response from Elasticsearch indicating that index... |
| CVE-2024-24824 | HIGH | 8.8 | 34.5% | Feb 7, 2024 | Graylog is a free and open log management platform. Starting in version 2.0.0 and prior to versions 5.1.11 and 5.2.4, ar... |
| CVE-2024-20290 | HIGH | 7.5 | 33.6% | Feb 7, 2024 | A vulnerability in the OLE2 file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a deni... |
| CVE-2024-20255 | HIGH | 7.1 | 0.6% | Feb 7, 2024 | A vulnerability in the SOAP API of Cisco Expressway Series and Cisco TelePresence Video Communication Server could allow... |
| CVE-2024-20254 | HIGH | 8.8 | 0.8% | Feb 7, 2024 | Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow ... |
| CVE-2024-20252 | HIGH | 8.8 | 0.8% | Feb 7, 2024 | Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow ... |
| CVE-2024-22012 | HIGH | 7.8 | 0.1% | Feb 7, 2024 | there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege ... |
| CVE-2024-25201 | HIGH | 7.5 | 0.7% | Feb 7, 2024 | Espruino 2v20 (commit fcc9ba4) was discovered to contain an Out-of-bounds Read via jsvStringIteratorPrintfCallback at sr... |
| CVE-2024-25200 | HIGH | 7.5 | 0.7% | Feb 7, 2024 | Espruino 2v20 (commit fcc9ba4) was discovered to contain a Stack Overflow via the jspeFactorFunctionCall at src/jsparse.... |
| CVE-2024-1118 | HIGH | 8.8 | 0.7% | Feb 7, 2024 | The Podlove Subscribe button plugin for WordPress is vulnerable to UNION-based SQL Injection via the 'button' attribute ... |
| CVE-2024-24311 | HIGH | 7.5 | 0.7% | Feb 7, 2024 | Path Traversal vulnerability in Linea Grafica "Multilingual and Multistore Sitemap Pro - SEO" (lgsitemaps) module for Pr... |
| CVE-2024-24304 | HIGH | 7.5 | 0.5% | Feb 7, 2024 | In the module "Mailjet" (mailjet) from Mailjet for PrestaShop before versions 3.5.1, a guest can download technical info... |
| CVE-2024-24810 | HIGH | 7.8 | 0.2% | Feb 7, 2024 | WiX toolset lets developers create installers for Windows Installer, the Windows installation engine. The .be TEMP folde... |
| CVE-2024-22022 | HIGH | 8.8 | 0.7% | Feb 7, 2024 | Vulnerability CVE-2024-22022 allows a Veeam Recovery Orchestrator user that has been assigned a low-privileged role to a... |
| CVE-2024-22388 | HIGH | 7.8 | 0.2% | Feb 6, 2024 | Certain configuration available in the communication channel for encoders could expose sensitive data when reader config... |
| CVE-2024-24680 | HIGH | 7.5 | 1.6% | Feb 6, 2024 | An issue was discovered in Django 3.2 before 3.2.24, 4.2 before 4.2.10, and Django 5.0 before 5.0.2. The intcomma templa... |
| CVE-2024-24575 | HIGH | 7.5 | 1.4% | Feb 6, 2024 | libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing... |
| CVE-2024-22520 | HIGH | 8.2 | 0.6% | Feb 6, 2024 | An issue discovered in Dronetag Drone Scanner 1.5.2 allows attackers to impersonate other drones via transmission of cra... |
| CVE-2024-22519 | HIGH | 8.2 | 0.6% | Feb 6, 2024 | An issue discovered in OpenDroneID OSM 3.5.1 allows attackers to impersonate other drones via transmission of crafted da... |
| CVE-2024-22515 | HIGH | 8.8 | 1.2% | Feb 6, 2024 | Unrestricted File Upload vulnerability in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to upload arbitrary files v... |
| CVE-2024-22514 | HIGH | 8.8 | 1.4% | Feb 6, 2024 | An issue discovered in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to run arbitrary files by restoring a crafted ... |
| CVE-2024-22239 | HIGH | 7.8 | 0.2% | Feb 6, 2024 | Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Ope... |
| CVE-2024-22237 | HIGH | 7.8 | 0.2% | Feb 6, 2024 | Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Ope... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now