2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9085 | CRITICAL | 9.8 | 0.7% | Sep 22, 2024 | A vulnerability was found in code-projects Restaurant Reservation System 1.0. It has been rated as critical. This issue ... |
| CVE-2024-9082 | CRITICAL | 9.8 | 0.5% | Sep 22, 2024 | A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been rated as critical. Affected by this iss... |
| CVE-2024-9081 | HIGH | 7.5 | 0.4% | Sep 22, 2024 | A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been declared as critical. Affected by this ... |
| CVE-2024-9080 | CRITICAL | 9.8 | 0.7% | Sep 22, 2024 | A vulnerability was found in code-projects Student Record System 1.0. It has been classified as critical. Affected is an... |
| CVE-2024-9079 | CRITICAL | 9.8 | 0.7% | Sep 22, 2024 | A vulnerability was found in code-projects Student Record System 1.0 and classified as critical. This issue affects some... |
| CVE-2024-9078 | CRITICAL | 9.8 | 0.7% | Sep 22, 2024 | A vulnerability has been found in code-projects Student Record System 1.0 and classified as critical. This vulnerability... |
| CVE-2024-9077 | MEDIUM | 5.4 | 0.5% | Sep 22, 2024 | A vulnerability classified as problematic has been found in dingfangzu up to 29d67d9044f6f93378e6eb6ff92272217ff7225c. A... |
| CVE-2024-47226 | MEDIUM | 5.4 | 0.3% | Sep 22, 2024 | A stored cross-site scripting (XSS) vulnerability exists in NetBox 4.1.0 within the "Configuration History" feature of t... |
| CVE-2024-9076 | HIGH | 8.8 | 19.8% | Sep 22, 2024 | A vulnerability was found in DedeCMS up to 5.7.115. It has been rated as critical. This issue affects some unknown proce... |
| CVE-2024-47221 | HIGH | 7.5 | 0.3% | Sep 22, 2024 | CheckUser in ScadaServerEngine/MainLogic.cs in Rapid SCADA through 5.8.4 allows an empty password. |
| CVE-2024-47220 | — | — | 0.4% | Sep 22, 2024 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2024-47219 | CRITICAL | 9.8 | 1.2% | Sep 22, 2024 | An issue was discovered in vesoft NebulaGraph through 3.8.0. It allows shell command injection. |
| CVE-2024-47218 | CRITICAL | 9.8 | 0.6% | Sep 22, 2024 | An issue was discovered in vesoft NebulaGraph through 3.8.0. It allows bypassing authentication. |
| CVE-2024-9075 | MEDIUM | 5.4 | 0.4% | Sep 21, 2024 | A vulnerability was found in Stirling-Tools Stirling-PDF up to 0.28.3. It has been declared as problematic. This vulnera... |
| CVE-2024-47210 | HIGH | 8.8 | 0.6% | Sep 21, 2024 | Gladys Assistant before 4.45.1 allows Privilege Escalation (a user changing their own role) because req.body.role can be... |
| CVE-2024-42323 | HIGH | 8.8 | 3.9% | Sep 21, 2024 | SnakeYaml Deser Load Malicious xml rce vulnerability in Apache HertzBeat (incubating). This vulnerability can only be ... |
| CVE-2024-9048 | MEDIUM | 6.1 | 0.4% | Sep 21, 2024 | A vulnerability was found in y_project RuoYi up to 4.7.9. It has been declared as problematic. Affected by this vulnerab... |
| CVE-2024-8680 | MEDIUM | 5.5 | 0.5% | Sep 21, 2024 | The MC4WP: Mailchimp for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings ... |
| CVE-2024-6787 | MEDIUM | 5.9 | 0.3% | Sep 21, 2024 | This vulnerability occurs when an attacker exploits a race condition between the time a file is checked and the time it ... |
| CVE-2024-6786 | MEDIUM | 6.5 | 0.5% | Sep 21, 2024 | The vulnerability allows an attacker to craft MQTT messages that include relative path traversal sequences, enabling the... |
| CVE-2024-6785 | HIGH | 7.1 | 0.1% | Sep 21, 2024 | The configuration file stores credentials in cleartext. An attacker with local access rights can read or modify the conf... |
| CVE-2024-46649 | HIGH | 7.5 | 0.9% | Sep 20, 2024 | eNMS up to 4.7.1 is vulnerable to Directory Traversal via download/folder. |
| CVE-2024-46648 | HIGH | 7.5 | 0.9% | Sep 20, 2024 | eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via scan_folder. |
| CVE-2024-46647 | MEDIUM | 6.5 | 0.8% | Sep 20, 2024 | eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via upload_files. |
| CVE-2024-46646 | MEDIUM | 6.5 | 0.8% | Sep 20, 2024 | eNMS up to 4.7.1 is vulnerable to Directory Traversal via /download/file. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now