2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-29489 | MEDIUM | 5.5 | 0.3% | Mar 28, 2024 | Jerryscript 2.4.0 has SEGV at ./jerry-core/ecma/base/ecma-helpers.c:238:58 in ecma_get_object_type. |
| CVE-2024-29316 | MEDIUM | 6.3 | 0.4% | Mar 28, 2024 | NodeBB 3.6.7 is vulnerable to Incorrect Access Control, e.g., a low-privileged attacker can access the restricted tabs f... |
| CVE-2024-28456 | MEDIUM | 5.4 | 0.7% | Mar 28, 2024 | Cross Site Scripting vulnerability in Campcodes Online Marriage Registration System v.1.0 allows a remote attacker to ex... |
| CVE-2024-24407 | MEDIUM | 5.3 | 0.6% | Mar 28, 2024 | SQL Injection vulnerability in Best Courier management system v.1.0 allows a remote attacker to obtain sensitive informa... |
| CVE-2024-28091 | MEDIUM | 6.1 | 0.4% | Mar 28, 2024 | Technicolor TC8715D TC8715D-01.EF.04.38.00-180405-S-FF9-D RSE-TC8717T devices allow a remote attacker within Wi-Fi proxi... |
| CVE-2024-28090 | MEDIUM | 5.4 | 3.6% | Mar 28, 2024 | Technicolor TC8715D TC8715D-01.EF.04.38.00-180405-S-FF9-D RSE-TC8717T devices allow a remote attacker within Wi-Fi proxi... |
| CVE-2024-25506 | MEDIUM | 6.5 | 0.3% | Mar 28, 2024 | Cross Site Scripting vulnerability in Process Maker, Inc ProcessMaker before 4.0 allows a remote attacker to run arbitra... |
| CVE-2024-31065 | MEDIUM | 6.1 | 0.8% | Mar 28, 2024 | Cross Site Scripting vulnerability in Insurance Mangement System v.1.0.0 and before allows a remote attacker to execute ... |
| CVE-2024-31064 | MEDIUM | 6.1 | 0.9% | Mar 28, 2024 | Cross Site Scripting vulnerability in Insurance Mangement System v.1.0.0 and before allows a remote attacker to execute ... |
| CVE-2024-31063 | MEDIUM | 6.4 | 0.9% | Mar 28, 2024 | Cross Site Scripting vulnerability in Insurance Mangement System v.1.0.0 and before allows a remote attacker to execute ... |
| CVE-2024-31062 | MEDIUM | 6.3 | 0.8% | Mar 28, 2024 | Cross Site Scripting vulnerability in Insurance Mangement System v.1.0.0 and before allows a remote attacker to execute ... |
| CVE-2024-31061 | MEDIUM | 6.1 | 0.9% | Mar 28, 2024 | Cross Site Scripting vulnerability in Insurance Mangement System v.1.0.0 and before allows a remote attacker to execute ... |
| CVE-2024-27719 | MEDIUM | 6.1 | 0.5% | Mar 28, 2024 | A cross site scripting (XSS) vulnerability in rems FAQ Management System v.1.0 allows a remote attacker to obtain sensit... |
| CVE-2024-25971 | MEDIUM | 6.5 | 0.6% | Mar 28, 2024 | Dell PowerProtect Data Manager, version 19.15, contains an XML External Entity Injection vulnerability. A remote high pr... |
| CVE-2024-25953 | MEDIUM | 6 | 0.2% | Mar 28, 2024 | Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability.... |
| CVE-2024-25952 | MEDIUM | 6 | 0.2% | Mar 28, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability.... |
| CVE-2024-25961 | MEDIUM | 6.7 | 0.2% | Mar 28, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an improper privilege management vulnerability. A local ... |
| CVE-2024-25959 | MEDIUM | 5.5 | 0.2% | Mar 28, 2024 | Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an insertion of sensitive information into log file vuln... |
| CVE-2024-31140 | MEDIUM | 4.9 | 0.4% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 server administrators could remove arbitrary files from the server by installing to... |
| CVE-2024-31138 | MEDIUM | 5.4 | 74.5% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 xSS was possible via Agent Distribution settings |
| CVE-2024-31137 | MEDIUM | 6.1 | 0.4% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 reflected XSS was possible via Space connection configuration |
| CVE-2024-31135 | MEDIUM | 6.1 | 0.5% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 open redirect was possible on the login page |
| CVE-2024-31134 | MEDIUM | 6.5 | 0.4% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 authenticated users without administrative permissions could register other users w... |
| CVE-2024-30603 | MEDIUM | 6.5 | 0.5% | Mar 28, 2024 | Tenda FH1203 v2.0.1.6 has a stack overflow vulnerability in the urls parameter of the saveParentControlInfo function. |
| CVE-2024-30598 | MEDIUM | 6.5 | 0.5% | Mar 28, 2024 | Tenda FH1203 v2.0.1.6 firmware has a stack overflow vulnerability in the security_5g parameter of the formWifiBasicSet f... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now