2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-35275 | HIGH | 8.8 | 0.8% | Jan 14, 2025 | A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiAnalyzer version... |
| CVE-2024-35273 | HIGH | 8.8 | 0.6% | Jan 14, 2025 | A out-of-bounds write in Fortinet FortiManager version 7.4.0 through 7.4.2, FortiAnalyzer version 7.4.0 through 7.4.2 al... |
| CVE-2024-33503 | HIGH | 7.8 | 0.2% | Jan 14, 2025 | A improper privilege management vulnerability in Fortinet FortiManager Cloud 7.4.1 through 7.4.3, FortiManager Cloud 7.2... |
| CVE-2024-33502 | HIGH | 7.2 | 1.2% | Jan 14, 2025 | An improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiManager, FortiAnalyze... |
| CVE-2024-27778 | HIGH | 8.8 | 0.5% | Jan 14, 2025 | An improper neutralization of special elements used in an OS Command vulnerability [CWE-78] vulnerability in Fortinet Fo... |
| CVE-2024-26012 | HIGH | 7.8 | 0.7% | Jan 14, 2025 | A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiAP-S 6.2 a... |
| CVE-2024-11864 | HIGH | 7.5 | 0.5% | Jan 14, 2025 | Specifically crafted SCMI messages sent to an SCP running SCP-Firmware release versions up to and including 2.15.0 may l... |
| CVE-2024-11497 | HIGH | 8.8 | 0.4% | Jan 14, 2025 | An authenticated attacker can use this vulnerability to perform a privilege escalation to gain root access. |
| CVE-2024-53649 | HIGH | 7.1 | 0.6% | Jan 14, 2025 | A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V9.80), SIPROTEC 5 6MD85 (CP300) (All ve... |
| CVE-2024-47100 | HIGH | 7.2 | 0.2% | Jan 14, 2025 | A vulnerability has been identified in SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0), SIMATIC S7-1200 CPU 121... |
| CVE-2024-12365 | HIGH | 8.5 | 1.7% | Jan 14, 2025 | The W3 Total Cache plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check o... |
| CVE-2024-12008 | HIGH | 7.5 | 2.2% | Jan 14, 2025 | The W3 Total Cache plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.8.... |
| CVE-2024-12398 | HIGH | 8.8 | 0.5% | Jan 14, 2025 | An improper privilege management vulnerability in the web management interface of the Zyxel WBE530 firmware versions thr... |
| CVE-2024-57664 | HIGH | 7.5 | 0.5% | Jan 14, 2025 | An issue in the sqlg_group_node component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of ... |
| CVE-2024-57663 | HIGH | 7.5 | 0.7% | Jan 14, 2025 | An issue in the sqlg_place_dpipes component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial o... |
| CVE-2024-57662 | HIGH | 7.5 | 0.8% | Jan 14, 2025 | An issue in the sqlg_hash_source component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of... |
| CVE-2024-57661 | HIGH | 7.5 | 0.8% | Jan 14, 2025 | An issue in the sqlo_df component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service ... |
| CVE-2024-57660 | HIGH | 7.5 | 0.7% | Jan 14, 2025 | An issue in the sqlo_expand_jts component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of ... |
| CVE-2024-57659 | HIGH | 7.5 | 0.7% | Jan 14, 2025 | An issue in the sqlg_parallel_ts_seq component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denia... |
| CVE-2024-57658 | HIGH | 7.5 | 0.7% | Jan 14, 2025 | An issue in the sql_tree_hash_1 component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of ... |
| CVE-2024-57657 | HIGH | 7.5 | 0.9% | Jan 14, 2025 | An issue in the sqlg_vec_upd component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Ser... |
| CVE-2024-57656 | HIGH | 7.5 | 0.7% | Jan 14, 2025 | An issue in the sqlc_add_distinct_node component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Den... |
| CVE-2024-57655 | HIGH | 7.5 | 0.7% | Jan 14, 2025 | An issue in the dfe_n_in_order component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of S... |
| CVE-2024-57654 | HIGH | 7.5 | 0.7% | Jan 14, 2025 | An issue in the qst_vec_get_int64 component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial o... |
| CVE-2024-57653 | HIGH | 7.5 | 0.7% | Jan 14, 2025 | An issue in the qst_vec_set_copy component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now