2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-35286 | CRITICAL | 9.8 | 65.6% | Oct 21, 2024 | A vulnerability in NuPoint Messenger (NPM) of Mitel MiCollab through 9.8.0.33 allows an unauthenticated attacker to cond... |
| CVE-2024-35285 | CRITICAL | 9.8 | 1.3% | Oct 21, 2024 | A vulnerability in NuPoint Messenger (NPM) of Mitel MiCollab through 9.8.0.33 allows an unauthenticated attacker to cond... |
| CVE-2024-48659 | CRITICAL | 9.8 | 1.1% | Oct 21, 2024 | An issue in DCME-320-L <=9.3.2.114 allows a remote attacker to execute arbitrary code via the log_u_umount.php component... |
| CVE-2024-48509 | CRITICAL | 9.8 | 0.5% | Oct 21, 2024 | Learning with Texts (LWT) 2.0.3 is vulnerable to SQL Injection. This occurs when the application fails to properly sanit... |
| CVE-2024-47223 | CRITICAL | 9.4 | 0.5% | Oct 21, 2024 | A vulnerability in the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.20... |
| CVE-2024-49368 | CRITICAL | 9.8 | 23.5% | Oct 21, 2024 | Nginx UI is a web user interface for the Nginx web server. Prior to version 2.0.0-beta.36, when Nginx UI configures logr... |
| CVE-2024-47685 | CRITICAL | 9.1 | 1.4% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_reject_ipv6: fix nf_reject_ip6_tcphdr... |
| CVE-2024-43689 | CRITICAL | 9.8 | 0.9% | Oct 21, 2024 | Stack-based buffer overflow vulnerability exists in ELECOM wireless access points. By processing a specially crafted HTT... |
| CVE-2024-10196 | CRITICAL | 9.8 | 0.5% | Oct 21, 2024 | A vulnerability was found in code-projects Pharmacy Management System 1.0 and classified as critical. This issue affects... |
| CVE-2024-44000 | CRITICAL | 9.8 | 83.2% | Oct 20, 2024 | Insufficiently Protected Credentials vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Auth... |
| CVE-2024-47634 | CRITICAL | 9.8 | 0.2% | Oct 20, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Streamline CartBounty – Save and recover abandoned carts for WooComme... |
| CVE-2024-49625 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Deserialization of Untrusted Data vulnerability in sphoid SiteBuilder Dynamic Components sitebuilder-dynamic-components ... |
| CVE-2024-49624 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Deserialization of Untrusted Data vulnerability in smartdevth Advanced Advertising System advanced-advertising-system al... |
| CVE-2024-49610 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in photokiteditor photokit photokit allows Upload a Web Sh... |
| CVE-2024-49607 | CRITICAL | 9.8 | 1.0% | Oct 20, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in redhopit WP Dropbox Dropins wp-dropbox-dropins allows U... |
| CVE-2024-49332 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Deserialization of Untrusted Data vulnerability in giveawayboost Giveaway Boost giveaway-boost allows Object Injection.T... |
| CVE-2024-49330 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in brx8r Nice Backgrounds nicebackgrounds allows Upload a ... |
| CVE-2024-49329 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in vivek2tamrakar WP REST API FNS rest-api-fns allows Uplo... |
| CVE-2024-49327 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in bepitulaz Woostagram Connect woostagram-connect allows ... |
| CVE-2024-49326 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Vasileios Kerasiotis Affiliator affiliator-lite allows ... |
| CVE-2024-49324 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in sovratecdev Sovratec Case Management sovratec-case-mana... |
| CVE-2024-10195 | CRITICAL | 9.8 | 0.4% | Oct 20, 2024 | A vulnerability was found in Tecno 4G Portable WiFi TR118 V008-20220830. It has been declared as critical. Affected by t... |
| CVE-2024-49626 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Deserialization of Untrusted Data vulnerability in Piyush Patel Shipyaari Shipping Management shipyaari-shipping-managme... |
| CVE-2024-49611 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in paxmanpwnz Product Website Showcase product-websites-sh... |
| CVE-2024-49604 | CRITICAL | 9.8 | 0.5% | Oct 20, 2024 | Authentication Bypass Using an Alternate Path or Channel vulnerability in N-Media Simple User Registration wp-registrati... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now