2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-49668 | CRITICAL | 10 | 1.5% | Oct 23, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in christopherdewese1099 Verbalize WP verbalize-wp allows ... |
| CVE-2024-49658 | CRITICAL | 9.9 | 0.5% | Oct 23, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in ecomerciar Woocommerce Custom Profile Picture woo-custo... |
| CVE-2024-49657 | HIGH | 7.7 | 0.4% | Oct 23, 2024 | Missing Authorization vulnerability in Renata Bracichowicz 3D Work In Progress renee-work-in-progress allows Exploiting ... |
| CVE-2024-49653 | CRITICAL | 9.9 | 1.2% | Oct 23, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in james-eggers Portfolleo portfolleo allows Upload a Web ... |
| CVE-2024-49652 | CRITICAL | 9.9 | 0.5% | Oct 23, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Renata Bracichowicz 3D Work In Progress renee-work-in-p... |
| CVE-2024-30124 | MEDIUM | 4 | 0.2% | Oct 23, 2024 | HCL Sametime is impacted by insecure services in-use on the UIM client by default. An unused legacy REST service was ena... |
| CVE-2024-10293 | CRITICAL | 9.8 | 0.5% | Oct 23, 2024 | A vulnerability was found in ZZCMS 2023. It has been classified as critical. Affected is the function Ebak_SetGotoPak of... |
| CVE-2024-10292 | CRITICAL | 9.8 | 0.5% | Oct 23, 2024 | A vulnerability was found in ZZCMS 2023 and classified as critical. This issue affects some unknown processing of the fi... |
| CVE-2024-10291 | CRITICAL | 9.8 | 0.5% | Oct 23, 2024 | A vulnerability has been found in ZZCMS 2023 and classified as critical. This vulnerability affects the function Ebak_Do... |
| CVE-2024-5764 | MEDIUM | 6.5 | 0.4% | Oct 23, 2024 | Use of Hard-coded Credentials vulnerability in Sonatype Nexus Repository has been discovered in the code responsible for... |
| CVE-2024-49675 | HIGH | 8.8 | 0.5% | Oct 23, 2024 | Authentication Bypass Using an Alternate Path or Channel vulnerability in Vitalii iBryl Switch User ibryl-switch-user al... |
| CVE-2024-49370 | MEDIUM | 4.9 | 0.5% | Oct 23, 2024 | Pimcore is an open source data and experience management platform. When a PortalUserObject is connected to a PimcoreUser... |
| CVE-2024-47904 | HIGH | 8.5 | 0.2% | Oct 23, 2024 | A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fir... |
| CVE-2024-47903 | CRITICAL | 9.1 | 0.4% | Oct 23, 2024 | A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fir... |
| CVE-2024-47902 | CRITICAL | 9.8 | 0.5% | Oct 23, 2024 | A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fir... |
| CVE-2024-47901 | CRITICAL | 9.8 | 1.2% | Oct 23, 2024 | A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fir... |
| CVE-2024-47575 | CRITICAL | 9.8 | 94.8% | Oct 23, 2024 | A missing authentication for critical function in FortiManager 7.6.0, FortiManager 7.4.0 through 7.4.4, FortiManager 7.2... |
| CVE-2024-30122 | MEDIUM | 5.3 | 0.2% | Oct 23, 2024 | HCL Sametime is impacted by misconfigured security related HTTP headers. It was identified that some HTTP headers were m... |
| CVE-2024-10290 | HIGH | 7.5 | 0.6% | Oct 23, 2024 | A vulnerability, which was classified as problematic, was found in ZZCMS 2023. This affects an unknown part of the file ... |
| CVE-2024-10283 | HIGH | 8.8 | 0.8% | Oct 23, 2024 | A vulnerability, which was classified as critical, has been found in Tenda RX9 and RX9 Pro 22.03.02.20. Affected by this... |
| CVE-2024-10282 | HIGH | 8.8 | 1.1% | Oct 23, 2024 | A vulnerability classified as critical was found in Tenda RX9 and RX9 Pro 22.03.02.10/22.03.02.20. Affected by this vuln... |
| CVE-2024-50050 | MEDIUM | 6.3 | 0.9% | Oct 23, 2024 | Llama Stack prior to revision 7a8aa775e5a267cf8660d83140011a0b7f91e005 used pickle as a serialization format for socket ... |
| CVE-2024-10281 | HIGH | 8.8 | 0.9% | Oct 23, 2024 | A vulnerability classified as critical has been found in Tenda RX9 and RX9 Pro 22.03.02.10/22.03.02.20. Affected is the ... |
| CVE-2024-10280 | HIGH | 7.5 | 0.8% | Oct 23, 2024 | A vulnerability was found in Tenda AC6, AC7, AC8, AC9, AC10, AC10U, AC15, AC18, AC500 and AC1206 up to 20241022. It has ... |
| CVE-2024-10250 | MEDIUM | 6.1 | 0.3% | Oct 23, 2024 | The Nioland theme for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘s’ parameter in all versions up... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now