2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-46888 | CRITICAL | 9.9 | 0.9% | Nov 12, 2024 | A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not p... |
| CVE-2024-44102 | CRITICAL | 10 | 1.0% | Nov 12, 2024 | A vulnerability has been identified in PP TeleControl Server Basic 1000 to 5000 V3.1 (6NH9910-0AA31-0AE1) (All versions ... |
| CVE-2024-11122 | CRITICAL | 9.8 | 0.6% | Nov 12, 2024 | A vulnerability, which was classified as critical, has been found in 上海灵当信息科技有限公司 Lingdang CRM up to 8.6.4.3. Affected b... |
| CVE-2024-11121 | CRITICAL | 9.8 | 0.6% | Nov 12, 2024 | A vulnerability classified as critical was found in 上海灵当信息科技有限公司 Lingdang CRM up to 8.6.4.3. Affected by this vulnerabil... |
| CVE-2024-10245 | CRITICAL | 9.8 | 1.2% | Nov 12, 2024 | The Relais 2FA plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.0. This i... |
| CVE-2024-11101 | CRITICAL | 9.8 | 0.5% | Nov 12, 2024 | A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0. It has been classified as critical. Aff... |
| CVE-2024-11100 | CRITICAL | 9.8 | 0.6% | Nov 12, 2024 | A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0. It has been declared as critical. Affec... |
| CVE-2024-11099 | CRITICAL | 9.8 | 0.6% | Nov 12, 2024 | A vulnerability was found in code-projects Job Recruitment 1.0 and classified as critical. This issue affects some unkno... |
| CVE-2024-52533 | CRITICAL | 9.8 | 1.3% | Nov 11, 2024 | gio/gsocks4aproxy.c in GNOME GLib before 2.82.1 has an off-by-one error and resultant buffer overflow because SOCKS4_CON... |
| CVE-2024-50636 | CRITICAL | 9.8 | 1.2% | Nov 11, 2024 | PyMOL 2.5.0 contains a vulnerability in its "Run Script" function, which allows the execution of arbitrary Python code e... |
| CVE-2024-25255 | CRITICAL | 9.8 | 1.4% | Nov 11, 2024 | Sublime Text 4 was discovered to contain a command injection vulnerability via the New Build System module. NOTE: multip... |
| CVE-2024-25254 | CRITICAL | 9.8 | 0.4% | Nov 11, 2024 | SuperScan v4.1 was discovered to contain a buffer overflow via the Hostname/IP parameter. |
| CVE-2024-46962 | CRITICAL | 9.1 | 0.4% | Nov 11, 2024 | The SYQ com.downloader.video.fast (aka Master Video Downloader) application through 2.0 for Android allows an attacker t... |
| CVE-2024-44546 | CRITICAL | 9.8 | 0.4% | Nov 11, 2024 | Powerjob >= 3.20 is vulnerable to SQL injection via the version parameter. |
| CVE-2024-51490 | CRITICAL | 9 | 0.5% | Nov 11, 2024 | Ampache is a web based audio/video streaming application and file manager. This vulnerability exists in the interface se... |
| CVE-2024-36061 | CRITICAL | 9.8 | 1.1% | Nov 11, 2024 | EnGenius EWS356-FIT devices through 1.1.30 allow blind OS command injection. This allows an attacker to execute arbitrar... |
| CVE-2024-51135 | CRITICAL | 9.8 | 1.0% | Nov 11, 2024 | An XML External Entity (XXE) vulnerability in the component DocumentBuilderFactory of powertac-server v1.9.0 allows atta... |
| CVE-2024-50667 | CRITICAL | 9.8 | 6.5% | Nov 11, 2024 | The boa httpd of Trendnet TEW-820AP 1.01.B01 has a stack overflow vulnerability in /boafrm/formIPv6Addr, /boafrm/formIpv... |
| CVE-2024-11077 | CRITICAL | 9.8 | 0.6% | Nov 11, 2024 | A vulnerability, which was classified as critical, was found in code-projects Job Recruitment 1.0. Affected is an unknow... |
| CVE-2024-11076 | CRITICAL | 9.8 | 0.5% | Nov 11, 2024 | A vulnerability, which was classified as critical, has been found in code-projects Job Recruitment 1.0. This issue affec... |
| CVE-2024-11074 | CRITICAL | 9.8 | 0.5% | Nov 11, 2024 | A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. This vulnerability aff... |
| CVE-2024-50989 | CRITICAL | 9.8 | 0.5% | Nov 11, 2024 | A SQL injection vulnerability in /omrs/admin/search.php in PHPGurukul Online Marriage Registration System v1.0 allows an... |
| CVE-2024-11068 | CRITICAL | 9.8 | 1.2% | Nov 11, 2024 | The D-Link DSL6740C modem has an Incorrect Use of Privileged APIs vulnerability, allowing unauthenticated remote attacke... |
| CVE-2024-11020 | CRITICAL | 9.8 | 0.5% | Nov 11, 2024 | Webopac from Grand Vice info has a SQL Injection vulnerability, allowing unauthenticated remote attacks to inject arbitr... |
| CVE-2024-11018 | CRITICAL | 9.8 | 0.8% | Nov 11, 2024 | Webopac from Grand Vice info does not properly validate uploaded file types, allowing unauthenticated remote attackers t... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now