2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-23969 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-23968 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-23963 | HIGH | 8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Alpine Halo9... |
| CVE-2024-1211 | HIGH | 8.8 | 0.3% | Jan 31, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.6 prior to 16.9.7, starting from 16... |
| CVE-2024-11611 | HIGH | 7.8 | 0.3% | Jan 30, 2025 | AutomationDirect C-More EA9 EAP9 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability ... |
| CVE-2024-11610 | HIGH | 7.8 | 0.3% | Jan 30, 2025 | AutomationDirect C-More EA9 EAP9 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability ... |
| CVE-2024-11609 | HIGH | 7.8 | 0.3% | Jan 30, 2025 | AutomationDirect C-More EA9 EAP9 File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vuln... |
| CVE-2024-44142 | HIGH | 7.8 | 0.3% | Jan 30, 2025 | The issue was addressed with improved bounds checks. This issue is fixed in GarageBand 10.4.12. Processing a maliciously... |
| CVE-2024-2658 | HIGH | 8.5 | 0.4% | Jan 30, 2025 | A misconfiguration in lmadmin.exe of FlexNet Publisher versions prior to 2024 R1 (11.19.6.0) allows the OpenSSL configur... |
| CVE-2024-13707 | HIGH | 8.1 | 0.2% | Jan 30, 2025 | The WP Image Uploader plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includ... |
| CVE-2024-13671 | HIGH | 7.5 | 0.5% | Jan 30, 2025 | The Music Sheet Viewer plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 4... |
| CVE-2024-13646 | HIGH | 8.1 | 0.4% | Jan 30, 2025 | The Single-user-chat plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial o... |
| CVE-2024-12269 | HIGH | 7.5 | 0.6% | Jan 30, 2025 | The Safe Ai Malware Protection for WP plugin for WordPress is vulnerable to unauthorized access of data due to a missing... |
| CVE-2024-12129 | HIGH | 8.8 | 0.4% | Jan 30, 2025 | The Royal Core plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escala... |
| CVE-2024-11600 | HIGH | 7.2 | 1.3% | Jan 30, 2025 | The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable t... |
| CVE-2024-10591 | HIGH | 8.8 | 0.4% | Jan 30, 2025 | The MWB HubSpot for WooCommerce – CRM, Abandoned Cart, Email Marketing, Marketing Automation & Analytics plugin for Word... |
| CVE-2024-13453 | HIGH | 7.3 | 0.5% | Jan 30, 2025 | The The Contact Form & SMTP Plugin for WordPress by PirateForms plugin for WordPress is vulnerable to arbitrary shortcod... |
| CVE-2024-13694 | HIGH | 7.5 | 0.6% | Jan 30, 2025 | The WooCommerce Wishlist (High customization, fast setup,Free Elementor Wishlist, most features) plugin for WordPress is... |
| CVE-2024-12708 | HIGH | 7.1 | 0.3% | Jan 30, 2025 | The Bulk Me Now! WordPress plugin through 2.0 does not validate and escape some of its shortcode attributes before outpu... |
| CVE-2024-12638 | HIGH | 7.1 | 0.5% | Jan 30, 2025 | The Bulk Me Now! WordPress plugin through 2.0 does not sanitise and escape a parameter before outputting it back in the ... |
| CVE-2024-12400 | HIGH | 7.1 | 0.3% | Jan 30, 2025 | The tourmaster WordPress plugin before 5.3.5 does not escape generated URLs before outputting them in attributes, leadin... |
| CVE-2024-57510 | HIGH | 7.8 | 0.2% | Jan 29, 2025 | Buffer Overflow vulnerability in Bento4 mp42avc v.3bdc891602d19789b8e8626e4a3e613a937b4d35 allows a local attacker to ex... |
| CVE-2024-57509 | HIGH | 7.8 | 0.2% | Jan 29, 2025 | Buffer Overflow vulnerability in Bento4 mp42avc v.3bdc891602d19789b8e8626e4a3e613a937b4d35 allows a local attacker to ex... |
| CVE-2024-54851 | HIGH | 8.8 | 0.3% | Jan 29, 2025 | Teedy <= 1.12 is vulnerable to Cross Site Request Forgery (CSRF), due to the lack of CSRF protection. |
| CVE-2024-48761 | HIGH | 8.8 | 0.6% | Jan 29, 2025 | Reflected XSS vulnerability in Celk Sistemas Celk Saude v.3.1.252.1 allows a remote attacker to inject arbitrary JavaScr... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now