2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-35148 | HIGH | 8.8 | 0.3% | Jan 25, 2025 | IBM Maximo Application Suite 8.10.10, 8.11.7, and 9.0 - Monitor Component is vulnerable to SQL injection. A remote attac... |
| CVE-2024-39750 | HIGH | 8.8 | 0.7% | Jan 25, 2025 | IBM Analytics Content Hub 2.0 is vulnerable to a buffer overflow due to improper return length checking. A remote authen... |
| CVE-2024-13562 | HIGH | 7.5 | 0.4% | Jan 25, 2025 | The Import WP – Export and Import CSV and XML files to WordPress plugin for WordPress is vulnerable to Sensitive Informa... |
| CVE-2024-12600 | HIGH | 7.2 | 0.7% | Jan 25, 2025 | The Custom Product Tabs Lite for WooCommerce plugin for WordPress is vulnerable to PHP Object Injection in all versions ... |
| CVE-2024-50697 | HIGH | 8.1 | 0.4% | Jan 24, 2025 | In SunGrow WiNet-SV200.001.00.P027 and earlier versions, when decrypting MQTT messages, the code that parses specific TL... |
| CVE-2024-52807 | HIGH | 8.6 | 0.5% | Jan 24, 2025 | The HL7 FHIR IG publisher is a tool to take a set of inputs and create a standard FHIR IG. Prior to version 1.7.4, XSLT ... |
| CVE-2024-40693 | HIGH | 8 | 0.4% | Jan 24, 2025 | IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the content of the fil... |
| CVE-2024-25034 | HIGH | 8.8 | 0.4% | Jan 24, 2025 | IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the type of file in th... |
| CVE-2024-9499 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Win 98SE Dev Kit installer can lea... |
| CVE-2024-9498 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress SDK installer can lead to p... |
| CVE-2024-9497 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress 4 SDK installer can lead to... |
| CVE-2024-9496 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Dev Kit installer can lead ... |
| CVE-2024-9495 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the CP210x VCP Windows installer can lead t... |
| CVE-2024-9494 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the CP210 VCP Win 2k installer can lead ... |
| CVE-2024-9493 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the ToolStick installer can lead to privileg... |
| CVE-2024-9492 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in Flash Programming Utility installer can lead to ... |
| CVE-2024-9491 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to pri... |
| CVE-2024-9490 | HIGH | 8.6 | 0.2% | Jan 24, 2025 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in Silicon Labs (8-bit) IDE installer can lead to p... |
| CVE-2024-41739 | HIGH | 8.8 | 0.4% | Jan 24, 2025 | IBM Cognos Dashboards 4.0.7 and 5.0.0 on Cloud Pak for Data could allow a remote attacker to perform unauthorized action... |
| CVE-2024-13409 | HIGH | 8.8 | 0.8% | Jan 24, 2025 | The Post Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget plugin for WordPress is v... |
| CVE-2024-13408 | HIGH | 8.8 | 0.6% | Jan 24, 2025 | The Post Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget plugin for WordPress is v... |
| CVE-2024-55573 | HIGH | 7.2 | 1.1% | Jan 23, 2025 | An issue was discovered in Centreon centreon-web 24.10.x before 24.10.3, 24.04.x before 24.04.9, 23.10.x before 23.10.19... |
| CVE-2024-53379 | HIGH | 7.5 | 0.5% | Jan 23, 2025 | Heap buffer overflow in the server site handshake implementation in Real Time Logic LLC's SharkSSL version (from 05/05/2... |
| CVE-2024-55195 | HIGH | 7.5 | 0.5% | Jan 23, 2025 | An allocation-size-too-big bug in the component /imagebuf.cpp of OpenImageIO v3.1.0.0dev may cause a Denial of Service (... |
| CVE-2024-53923 | HIGH | 7.2 | 0.4% | Jan 23, 2025 | An issue was discovered in Centreon Web 24.10.x before 24.10.3, 24.04.x before 24.04.9, 23.10.x before 23.10.19, 23.04.x... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now