2024 CVE Vulnerabilities
39,233 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-31497 | MEDIUM | 5.9 | 5.8% | Apr 15, 2024 | In PuTTY 0.68 through 0.80 before 0.81, biased ECDSA nonce generation allows an attacker to recover a user's NIST P-521 ... |
| CVE-2024-30840 | MEDIUM | 6.5 | 0.3% | Apr 15, 2024 | A Stack Overflow vulnerability in Tenda AC15 v15.03.05.18 allows attackers to cause a denial of service via the LISTEN p... |
| CVE-2024-23560 | MEDIUM | 4.9 | 0.3% | Apr 15, 2024 | HCL DevOps Deploy / HCL Launch could be vulnerable to incomplete revocation of permissions when deleting a custom securi... |
| CVE-2024-3803 | MEDIUM | 6.3 | 0.5% | Apr 15, 2024 | A vulnerability classified as critical was found in Vesystem Cloud Desktop up to 20240408. This vulnerability affects un... |
| CVE-2024-24487 | MEDIUM | 6.8 | 0.3% | Apr 15, 2024 | An issue discovered in silex technology DS-600 Firmware v.1.4.1 allows a remote attacker to cause a denial of service vi... |
| CVE-2024-31219 | MEDIUM | 4.3 | 0.4% | Apr 15, 2024 | Discourse-reactions is a plugin that allows user to add their reactions to the post. When whispers are enabled on a site... |
| CVE-2024-23594 | MEDIUM | 6.4 | 0.2% | Apr 15, 2024 | A buffer overflow vulnerability was reported in a system recovery bootloader that was part of the Lenovo preloaded Win... |
| CVE-2024-23593 | MEDIUM | 6.7 | 0.3% | Apr 15, 2024 | A vulnerability was reported in a system recovery bootloader that was part of the Lenovo preloaded Windows 7 and 8 ope... |
| CVE-2024-23559 | MEDIUM | 6.1 | 0.3% | Apr 15, 2024 | HCL DevOps Deploy / Launch is generating an obsolete HTTP header. |
| CVE-2024-3786 | MEDIUM | 6.6 | 0.7% | Apr 15, 2024 | Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through Devi... |
| CVE-2024-3785 | MEDIUM | 6.6 | 0.7% | Apr 15, 2024 | Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through Devi... |
| CVE-2024-3784 | MEDIUM | 6.6 | 0.7% | Apr 15, 2024 | Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through S3 A... |
| CVE-2024-3783 | MEDIUM | 6.5 | 0.5% | Apr 15, 2024 | The Backup Agents section in WBSAirback 21.02.04 is affected by a Path Traversal vulnerability, allowing a user with low... |
| CVE-2024-24898 | MEDIUM | 6 | 0.2% | Apr 15, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in openEuler kernel on Linux allows Resource Le... |
| CVE-2024-24891 | MEDIUM | 6 | 0.2% | Apr 15, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in openEuler kernel on Linux allows Resource Le... |
| CVE-2024-32129 | MEDIUM | 4.7 | 0.4% | Apr 15, 2024 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Freshworks Freshdesk (official).This issue affects ... |
| CVE-2024-31421 | MEDIUM | 4.3 | 0.4% | Apr 15, 2024 | Missing Authorization vulnerability in supsystic Popup by Supsystic popup-by-supsystic.This issue affects Popup by Supsy... |
| CVE-2024-31389 | MEDIUM | 5.4 | 0.2% | Apr 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Ertano MihanPanel.This issue affects MihanPanel: from n/a before 12.7... |
| CVE-2024-31388 | MEDIUM | 4.3 | 0.2% | Apr 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Pauple Table & Contact Form 7 Database – Tablesome.This issue affects... |
| CVE-2024-31385 | MEDIUM | 4.3 | 0.2% | Apr 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Reservation Diary ReDi Restaurant Reservation.This issue affects ReDi... |
| CVE-2024-31384 | MEDIUM | 4.3 | 0.2% | Apr 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Rara Theme Spa and Salon.This issue affects Spa and Salon: from n/a t... |
| CVE-2024-31383 | MEDIUM | 4.3 | 0.2% | Apr 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Pagelayer PopularFX.This issue affects PopularFX: from n/a through 1.... |
| CVE-2024-31381 | MEDIUM | 4.3 | 0.2% | Apr 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in RebelCode Spotlight Social Media Feeds.This issue affects Spotlight S... |
| CVE-2024-31379 | MEDIUM | 4.3 | 0.2% | Apr 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Smash Balloon Smash Balloon Social Post Feed.This issue affects Smash... |
| CVE-2024-31376 | MEDIUM | 4.3 | 0.2% | Apr 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Andrew Dashboard To-Do List dashboard-to-do-list.This issue affects D... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now