2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-29489MEDIUM5.5Jerryscript 2.4.0 has SEGV at ./jerry-core/ecma/base/ecma-helpers.c:238:58 in ecma_get_object_type.
CVE-2024-29316MEDIUM6.3NodeBB 3.6.7 is vulnerable to Incorrect Access Control, e.g., a low-privileged attacker can access the restricted tabs f...
CVE-2024-28456MEDIUM5.4Cross Site Scripting vulnerability in Campcodes Online Marriage Registration System v.1.0 allows a remote attacker to ex...
CVE-2024-24407MEDIUM5.3SQL Injection vulnerability in Best Courier management system v.1.0 allows a remote attacker to obtain sensitive informa...
CVE-2024-28091MEDIUM6.1Technicolor TC8715D TC8715D-01.EF.04.38.00-180405-S-FF9-D RSE-TC8717T devices allow a remote attacker within Wi-Fi proxi...
CVE-2024-28090MEDIUM5.4Technicolor TC8715D TC8715D-01.EF.04.38.00-180405-S-FF9-D RSE-TC8717T devices allow a remote attacker within Wi-Fi proxi...
CVE-2024-25506MEDIUM6.5Cross Site Scripting vulnerability in Process Maker, Inc ProcessMaker before 4.0 allows a remote attacker to run arbitra...
CVE-2024-31065MEDIUM6.1Cross Site Scripting vulnerability in Insurance Mangement System v.1.0.0 and before allows a remote attacker to execute ...
CVE-2024-31064MEDIUM6.1Cross Site Scripting vulnerability in Insurance Mangement System v.1.0.0 and before allows a remote attacker to execute ...
CVE-2024-31063MEDIUM6.4Cross Site Scripting vulnerability in Insurance Mangement System v.1.0.0 and before allows a remote attacker to execute ...
CVE-2024-31062MEDIUM6.3Cross Site Scripting vulnerability in Insurance Mangement System v.1.0.0 and before allows a remote attacker to execute ...
CVE-2024-31061MEDIUM6.1Cross Site Scripting vulnerability in Insurance Mangement System v.1.0.0 and before allows a remote attacker to execute ...
CVE-2024-27719MEDIUM6.1A cross site scripting (XSS) vulnerability in rems FAQ Management System v.1.0 allows a remote attacker to obtain sensit...
CVE-2024-25971MEDIUM6.5Dell PowerProtect Data Manager, version 19.15, contains an XML External Entity Injection vulnerability. A remote high pr...
CVE-2024-25953MEDIUM6Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability....
CVE-2024-25952MEDIUM6Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability....
CVE-2024-25961MEDIUM6.7Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an improper privilege management vulnerability. A local ...
CVE-2024-25959MEDIUM5.5Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an insertion of sensitive information into log file vuln...
CVE-2024-31140MEDIUM4.9In JetBrains TeamCity before 2024.03 server administrators could remove arbitrary files from the server by installing to...
CVE-2024-31138MEDIUM5.4In JetBrains TeamCity before 2024.03 xSS was possible via Agent Distribution settings
CVE-2024-31137MEDIUM6.1In JetBrains TeamCity before 2024.03 reflected XSS was possible via Space connection configuration
CVE-2024-31135MEDIUM6.1In JetBrains TeamCity before 2024.03 open redirect was possible on the login page
CVE-2024-31134MEDIUM6.5In JetBrains TeamCity before 2024.03 authenticated users without administrative permissions could register other users w...
CVE-2024-30603MEDIUM6.5Tenda FH1203 v2.0.1.6 has a stack overflow vulnerability in the urls parameter of the saveParentControlInfo function.
CVE-2024-30598MEDIUM6.5Tenda FH1203 v2.0.1.6 firmware has a stack overflow vulnerability in the security_5g parameter of the formWifiBasicSet f...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now