2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-6019 | MEDIUM | 6.1 | 0.3% | Sep 12, 2024 | The Music Request Manager WordPress plugin through 1.3 does not sanitise and escape incoming music requests, which could... |
| CVE-2024-6018 | MEDIUM | 6.1 | 0.3% | Sep 12, 2024 | The Music Request Manager WordPress plugin through 1.3 does not escape the $_SERVER['REQUEST_URI'] parameter before outp... |
| CVE-2024-6017 | MEDIUM | 6.1 | 0.2% | Sep 12, 2024 | The Music Request Manager WordPress plugin through 1.3 does not have CSRF check in some places, and is missing sanitisat... |
| CVE-2024-5799 | MEDIUM | 4.8 | 0.3% | Sep 12, 2024 | The CM Pop-Up Banners for WordPress plugin before 1.7.3 does not sanitise and escape some of its popup fields, which cou... |
| CVE-2024-3163 | MEDIUM | 4.3 | 0.2% | Sep 12, 2024 | The Easy Property Listings WordPress plugin before 3.5.4 does not have CSRF check when deleting contacts in bulk, which ... |
| CVE-2024-45624 | HIGH | 7.5 | 0.5% | Sep 12, 2024 | Exposure of sensitive information due to incompatible policies issue exists in Pgpool-II. If a database user accesses a ... |
| CVE-2024-8711 | HIGH | 7.5 | 0.8% | Sep 12, 2024 | A vulnerability, which was classified as problematic, has been found in SourceCodester Food Ordering Management System 1... |
| CVE-2024-8710 | HIGH | 8.8 | 0.6% | Sep 12, 2024 | A vulnerability classified as critical was found in code-projects Inventory Management 1.0. Affected by this vulnerabili... |
| CVE-2024-8709 | HIGH | 8.8 | 0.6% | Sep 12, 2024 | A vulnerability classified as critical has been found in SourceCodester Best House Rental Management System 1.0. Affecte... |
| CVE-2024-38222 | MEDIUM | 6.5 | 1.1% | Sep 12, 2024 | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability |
| CVE-2024-8708 | MEDIUM | 6.1 | 0.3% | Sep 12, 2024 | A vulnerability was found in SourceCodester Best House Rental Management System 1.0. It has been rated as problematic. T... |
| CVE-2024-37397 | HIGH | 8.2 | 59.3% | Sep 12, 2024 | An External XML Entity (XXE) vulnerability in the provisioning web service of Ivanti EPM before 2022 SU6, or the 2024 Se... |
| CVE-2024-34785 | HIGH | 7.2 | 25.4% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-34783 | HIGH | 7.2 | 43.4% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-34779 | HIGH | 7.2 | 24.0% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-32848 | HIGH | 7.2 | 43.4% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-32846 | HIGH | 7.2 | 2.1% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-32845 | HIGH | 7.2 | 24.0% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-32843 | HIGH | 7.2 | 2.1% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-32842 | HIGH | 7.2 | 2.1% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-32840 | HIGH | 7.2 | 25.4% | Sep 12, 2024 | An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a... |
| CVE-2024-29847 | CRITICAL | 9.8 | 52.9% | Sep 12, 2024 | Deserialization of untrusted data in the agent portal of Ivanti EPM before 2022 SU6, or the 2024 September update allows... |
| CVE-2024-8707 | MEDIUM | 5.3 | 0.5% | Sep 12, 2024 | A vulnerability was found in 云课网络科技有限公司 Yunke Online School System up to 3.0.6. It has been declared as problematic. Thi... |
| CVE-2024-8706 | MEDIUM | 6.5 | 0.7% | Sep 12, 2024 | A vulnerability was found in JFinalCMS up to 20240903. It has been classified as problematic. This affects the function ... |
| CVE-2024-28981 | HIGH | 8.5 | 0.3% | Sep 12, 2024 | Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.1.0.0 and 9.3.0.8, including 8.3.x, discloses da... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now