2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-27296MEDIUM5.3Directus is a real-time API and App dashboard for managing SQL database content. Prior to version 10.8.3, the exact Dire...
CVE-2024-27140MEDIUM5.4** UNSUPPORTED WHEN ASSIGNED ** Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vu...
CVE-2024-2066MEDIUM6.1A vulnerability was found in SourceCodester Computer Inventory System 1.0. It has been classified as problematic. This a...
CVE-2024-2065MEDIUM6.1A vulnerability was found in SourceCodester Barangay Population Monitoring System up to 1.0 and classified as problemati...
CVE-2024-0967MEDIUM4.3A potential vulnerability has been identified in OpenText / Micro Focus ArcSight Enterprise Security Manager (ESM). The ...
CVE-2024-2064MEDIUM4.3A vulnerability has been found in rahman SelectCours 1.0 and classified as problematic. Affected by this vulnerability i...
CVE-2024-27569MEDIUM6.5LBT T300-T390 v2.2.1.8 were discovered to contain a stack overflow via the ApCliSsid parameter in the init_nvram functio...
CVE-2024-27568MEDIUM6.5LBT T300-T390 v2.2.1.8 were discovered to contain a stack overflow via the apn_name_3g parameter in the setupEC20Apn fun...
CVE-2024-27567MEDIUM6.5LBT T300- T390 v2.2.1.8 were discovered to contain a stack overflow via the vpn_client_ip parameter in the config_vpn_pp...
CVE-2024-2063MEDIUM4.8A vulnerability, which was classified as problematic, was found in SourceCodester Petrol Pump Management Software 1.0. A...
CVE-2024-2078MEDIUM6.1A Cross-Site Scripting (XSS) vulnerability has been found in HelpDeskZ affecting version 2.0.2 and earlier. This vulnera...
CVE-2024-26280MEDIUM4.7Apache Airflow, versions before 2.8.2, has a vulnerability that allows authenticated Ops and Viewers users to view all i...
CVE-2024-22458MEDIUM5.3Dell Secure Connect Gateway, 5.18, contains an Inadequate Encryption Strength Vulnerability. An unauthenticated network ...
CVE-2024-1120MEDIUM5.3The NextMove Lite – Thank You Page for WooCommerce and Finale Lite – Sales Countdown Timer & Discount for WooCommerce pl...
CVE-2024-27949MEDIUM5.4Server-Side Request Forgery (SSRF) vulnerability in Sirv CDN and Image Hosting Sirv sirv.This issue affects Sirv: from n...
CVE-2024-2045MEDIUM5.5Session version 1.17.5 allows obtaining internal application files and public files from the user's device without the ...
CVE-2024-0403MEDIUM6.5Recipes version 1.5.10 allows arbitrary HTTP requests to be made through the server. This is possible because the appli...
CVE-2024-27662MEDIUM6.5D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_4110f4(). This vulnerability al...
CVE-2024-27661MEDIUM6.5D-Link DIR-823G A1V1.0.2B05 was discovered to contain Null-pointer dereferences in sub_4484A8(). This vulnerability allo...
CVE-2024-27660MEDIUM6.5D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_41C488(). This vulnerability al...
CVE-2024-27659MEDIUM6.5D-Link DIR-823G A1V1.0.2B05 was discovered to contain Null-pointer dereferences in sub_42AF30(). This vulnerability allo...
CVE-2024-27658MEDIUM6.5D-Link DIR-823G A1V1.0.2B05 was discovered to contain Null-pointer dereferences in sub_4484A8(). This vulnerability allo...
CVE-2024-24246MEDIUM5.5Heap Buffer Overflow vulnerability in qpdf 11.9.0 allows attackers to crash the application via the std::__shared_count(...
CVE-2024-2001MEDIUM5.4A Cross-Site Scripting vulnerability in Cockpit CMS affecting version 2.7.0. This vulnerability could allow an authentic...
CVE-2024-26607MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: drm/bridge: sii902x: Fix probing race issue A null...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now