2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-47529 | MEDIUM | 6.5 | 0.3% | Oct 2, 2024 | OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. ... |
| CVE-2024-46977 | MEDIUM | 6.5 | 0.9% | Oct 2, 2024 | OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. ... |
| CVE-2024-45965 | MEDIUM | 5.4 | 0.3% | Oct 2, 2024 | Contao before 5.5.6 allows XSS via an SVG document. This affects (in contao/core-bundle in Composer) 4.x before 4.13.54,... |
| CVE-2024-45964 | MEDIUM | 4.8 | 0.3% | Oct 2, 2024 | Zenario 9.7.61188 is vulnerable to Cross Site Scripting (XSS) in the Image library via the "Organizer tags" field. |
| CVE-2024-45962 | MEDIUM | 4.7 | 0.5% | Oct 2, 2024 | October 3.6.30 allows an authenticated admin account to upload a PDF file containing malicious JavaScript into the targe... |
| CVE-2024-45960 | MEDIUM | 4.8 | 0.3% | Oct 2, 2024 | Zenario 9.7.61188 allows authenticated admin users to upload PDF files containing malicious code into the target system.... |
| CVE-2024-43795 | MEDIUM | 6.1 | 0.4% | Oct 2, 2024 | OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. ... |
| CVE-2024-9441 | CRITICAL | 9.8 | 53.7% | Oct 2, 2024 | The Linear eMerge e3-Series through version 1.00-07 is vulnerable to an OS command injection vulnerability. A remote and... |
| CVE-2024-9440 | MEDIUM | 6.1 | 0.4% | Oct 2, 2024 | Slim Select 2.0 versions through 2.9.0 are affected by a potential cross-site scripting vulnerability. In select.ts:crea... |
| CVE-2024-24116 | CRITICAL | 9.8 | 24.1% | Oct 2, 2024 | An issue in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release(9736) allows a remote attacker to gain privileges via the syst... |
| CVE-2024-20513 | MEDIUM | 5.3 | 0.5% | Oct 2, 2024 | A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devic... |
| CVE-2024-20509 | MEDIUM | 5.9 | 0.4% | Oct 2, 2024 | A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devic... |
| CVE-2024-20502 | HIGH | 7.5 | 0.5% | Oct 2, 2024 | A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devic... |
| CVE-2024-20501 | HIGH | 7.5 | 0.5% | Oct 2, 2024 | Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gate... |
| CVE-2024-20500 | HIGH | 7.5 | 0.6% | Oct 2, 2024 | A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devic... |
| CVE-2024-20499 | HIGH | 7.5 | 0.5% | Oct 2, 2024 | Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gate... |
| CVE-2024-20498 | HIGH | 7.5 | 0.5% | Oct 2, 2024 | Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gate... |
| CVE-2024-24122 | LOW | 3.3 | 0.7% | Oct 2, 2024 | A remote code execution vulnerability in the project management of Wanxing Technology's Yitu project which allows an att... |
| CVE-2024-46626 | HIGH | 8.8 | 0.9% | Oct 2, 2024 | OS4ED openSIS-Classic v9.1 was discovered to contain a SQL injection vulnerability via a crafted payload. |
| CVE-2024-41290 | HIGH | 8.1 | 0.4% | Oct 2, 2024 | FlatPress CMS v1.3.1 1.3 was discovered to use insecure methods to store authentication data via the cookie's component. |
| CVE-2024-20524 | MEDIUM | 6.8 | 0.5% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-20523 | MEDIUM | 6.8 | 0.5% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-20522 | MEDIUM | 6.8 | 0.5% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-20521 | CRITICAL | 9.1 | 0.7% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-20520 | CRITICAL | 9.1 | 0.6% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now