2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-49359HIGH7.5ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all ...
CVE-2024-49358MEDIUM5.3ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all ...
CVE-2024-49357HIGH7.5ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all ...
CVE-2024-41618CRITICAL9.8Money Manager EX WebApp (web-money-manager-ex) 1.2.2 is vulnerable to SQL Injection in the `transaction_delete_group` fu...
CVE-2024-41617CRITICAL9.8Money Manager EX WebApp (web-money-manager-ex) 1.2.2 is vulnerable to Incorrect Access Control. The `redirect_if_not_log...
CVE-2024-10349CRITICAL9.8A vulnerability was found in SourceCodester Best House Rental Management System 1.0 and classified as critical. Affected...
CVE-2024-10348MEDIUM5.4A vulnerability was found in SourceCodester Best House Rental Management System 1.0. It has been classified as problemat...
CVE-2024-7763HIGH7.5In WhatsUp Gold versions released before 2024.0.0,  an Authentication Bypass issue exists which allows an attacker to o...
CVE-2024-48932MEDIUM5.3ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In versions below 1.5.0, ...
CVE-2024-48931HIGH7.5ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all ...
CVE-2024-48426MEDIUM6.2A segmentation fault (SEGV) was detected in the SortByPTypeProcess::Execute function in the Assimp library during fuzz t...
CVE-2024-48425MEDIUM5.5A segmentation fault (SEGV) was detected in the Assimp::SplitLargeMeshesProcess_Triangle::UpdateNode function within the...
CVE-2024-48424MEDIUM5.5A heap-buffer-overflow vulnerability has been identified in the OpenDDLParser::parseStructure function within the Assimp...
CVE-2024-48423HIGH7.8An issue in assimp v.5.4.3 allows a local attacker to execute arbitrary code via the CallbackToLogRedirector function wi...
CVE-2024-48208HIGH8.6pure-ftpd before 1.0.52 is vulnerable to Buffer Overflow. There is an out of bounds read in the domlsd() function of the...
CVE-2024-47883CRITICAL9.1The OpenRefine fork of the MIT Simile Butterfly server is a modular web application framework. The Butterfly framework u...
CVE-2024-47882MEDIUM6.1OpenRefine is a free, open source tool for working with messy data. Prior to version 3.8.3, the built-in "Something went...
CVE-2024-47881HIGH8.8OpenRefine is a free, open source tool for working with messy data. Starting in version 3.4-beta and prior to version 3....
CVE-2024-47880MEDIUM6.9OpenRefine is a free, open source tool for working with messy data. Prior to version 3.8.3, the `export-rows` command ca...
CVE-2024-47879HIGH8.8OpenRefine is a free, open source tool for working with messy data. Prior to version 3.8.3, lack of cross-site request f...
CVE-2024-47878MEDIUM6.1OpenRefine is a free, open source tool for working with messy data. Prior to version 3.8.3, the `/extension/gdata/author...
CVE-2024-45263HIGH8.8An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The upl...
CVE-2024-45262HIGH8.8An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The par...
CVE-2024-45261HIGH8An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The SID...
CVE-2024-45260HIGH8An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. Users w...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now