2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-54146 | HIGH | 8.8 | 38.6% | Jan 27, 2025 | Cacti is an open source performance and fault management framework. Cacti has a SQL injection vulnerability in the templ... |
| CVE-2024-54145 | HIGH | 8.8 | 0.7% | Jan 27, 2025 | Cacti is an open source performance and fault management framework. Cacti has a SQL injection vulnerability in the get_d... |
| CVE-2024-48420 | HIGH | 8.8 | 0.5% | Jan 27, 2025 | Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to Buffer Overflow via /goform/getWifiBasic. |
| CVE-2024-48419 | HIGH | 8.8 | 2.1% | Jan 27, 2025 | Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 suffers from Command Injection issues in /bin/goahead. Specificall... |
| CVE-2024-48418 | HIGH | 8.8 | 0.3% | Jan 27, 2025 | In Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06, the request /goform/fromSetDDNS does not properly handle speci... |
| CVE-2024-48416 | HIGH | 8.8 | 0.5% | Jan 27, 2025 | Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to Buffer Overflow via /goform/fromSetLanDhcpsClient... |
| CVE-2024-27256 | HIGH | 7.5 | 0.2% | Jan 27, 2025 | IBM MQ Container 3.0.0, 3.0.1, 3.1.0 through 3.1.3 CD, 2.0.0 LTS through 2.0.22 LTS and 2.4.0 through 2.4.8, 2.3.0 throu... |
| CVE-2024-38325 | HIGH | 7.5 | 0.2% | Jan 27, 2025 | IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI could allow a remote attacker to obtain sensi... |
| CVE-2024-38320 | HIGH | 7.5 | 0.2% | Jan 27, 2025 | IBM Storage Protect for Virtual Environments: Data Protection for VMware and Storage Protect Backup-Archive Client 8.1.0... |
| CVE-2024-13094 | HIGH | 7.1 | 0.6% | Jan 27, 2025 | The WP Triggers Lite WordPress plugin through 2.5.3 does not sanitise and escape a parameter before outputting it back i... |
| CVE-2024-13057 | HIGH | 7.1 | 0.2% | Jan 27, 2025 | The Dyn Business Panel WordPress plugin through 1.0.0 does not have CSRF check in some places, and is missing sanitisati... |
| CVE-2024-13056 | HIGH | 7.1 | 0.3% | Jan 27, 2025 | The Dyn Business Panel WordPress plugin through 1.0.0 does not sanitise and escape a parameter before outputting it back... |
| CVE-2024-13055 | HIGH | 7.1 | 0.5% | Jan 27, 2025 | The Dyn Business Panel WordPress plugin through 1.0.0 does not sanitise and escape a parameter before outputting it back... |
| CVE-2024-13052 | HIGH | 7.1 | 0.3% | Jan 27, 2025 | The Dental Optimizer Patient Generator App WordPress plugin through 1.0 does not sanitise and escape a parameter before ... |
| CVE-2024-12773 | HIGH | 7.2 | 0.6% | Jan 27, 2025 | The Altra Side Menu WordPress plugin through 2.0 does not sanitize and escape a parameter before using it in a SQL state... |
| CVE-2024-12321 | HIGH | 7.1 | 0.3% | Jan 27, 2025 | The WC Affiliate WordPress plugin through 2.3.9 does not sanitise and escape a parameter before outputting it back in t... |
| CVE-2024-28766 | HIGH | 7.5 | 0.3% | Jan 27, 2025 | IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 could disclose sensitive inf... |
| CVE-2024-11936 | HIGH | 8.8 | 0.4% | Jan 26, 2025 | The Zox News theme for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalatio... |
| CVE-2024-11641 | HIGH | 8.8 | 0.3% | Jan 26, 2025 | The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versio... |
| CVE-2024-46881 | HIGH | 7.1 | 0.3% | Jan 26, 2025 | Develocity (formerly Gradle Enterprise) before 2024.1.8 has Incorrect Access Control. Project-level access control confi... |
| CVE-2024-11090 | HIGH | 7.5 | 0.4% | Jan 26, 2025 | The Membership Plugin – Restrict Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all ver... |
| CVE-2024-10705 | HIGH | 8.1 | 0.3% | Jan 26, 2025 | The Multiple Page Generator Plugin – MPG plugin for WordPress is vulnerable to Server-Side Request Forgery in all versio... |
| CVE-2024-10633 | HIGH | 7.3 | 0.5% | Jan 26, 2025 | The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to arbitrary shortcode execution in a... |
| CVE-2024-10628 | HIGH | 7.5 | 0.7% | Jan 26, 2025 | The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to SQL Injection via the ‘id’ paramet... |
| CVE-2024-10574 | HIGH | 7.2 | 0.5% | Jan 26, 2025 | The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to unauthorized modification of data ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now