2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-13250 | HIGH | 8.8 | 0.2% | Jan 9, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Drupal Drupal Symfony Mailer Lite allows Cross Site Request Forgery.T... |
| CVE-2024-13244 | HIGH | 8.8 | 0.2% | Jan 9, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Drupal Migrate Tools allows Cross Site Request Forgery.This issue aff... |
| CVE-2024-13240 | HIGH | 7.5 | 0.4% | Jan 9, 2025 | Improper Access Control vulnerability in Drupal Open Social allows Collect Data from Common Resource Locations.This issu... |
| CVE-2024-12848 | HIGH | 8.8 | 0.9% | Jan 9, 2025 | The SKT Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on t... |
| CVE-2024-12542 | HIGH | 8.6 | 1.3% | Jan 9, 2025 | The linkID plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check when incl... |
| CVE-2024-12330 | HIGH | 7.5 | 0.5% | Jan 9, 2025 | The WP Database Backup – Unlimited Database & Files Backup by Backup for WP plugin for WordPress is vulnerable to Sensit... |
| CVE-2024-43660 | HIGH | 7.5 | 0.6% | Jan 9, 2025 | The CGI script <redacted>.sh can be used to download any file on the filesystem. This issue affects Iocharger firmware ... |
| CVE-2024-43659 | HIGH | 8.3 | 0.8% | Jan 9, 2025 | After gaining access to the firmware of a charging station, a file at <redacted> can be accessed to obtain default crede... |
| CVE-2024-43658 | HIGH | 7.2 | 0.5% | Jan 9, 2025 | Patch traversal, External Control of File Name or Path vulnerability in Iocharger Home allows deletion of arbitrary fil... |
| CVE-2024-12805 | HIGH | 7.2 | 0.7% | Jan 9, 2025 | A post-authentication format string vulnerability in SonicOS management allows a remote attacker to crash a firewall and... |
| CVE-2024-12803 | HIGH | 7.2 | 0.8% | Jan 9, 2025 | A post-authentication stack-based buffer overflow vulnerability in SonicOS management allows a remote attacker to crash ... |
| CVE-2024-53706 | HIGH | 7.8 | 0.3% | Jan 9, 2025 | A vulnerability in the Gen7 SonicOS Cloud platform NSv, allows a remote authenticated local low-privileged attacker to e... |
| CVE-2024-53705 | HIGH | 7.5 | 0.7% | Jan 9, 2025 | A Server-Side Request Forgery vulnerability in the SonicOS SSH management interface allows a remote attacker to establis... |
| CVE-2024-13212 | HIGH | 8.8 | 0.4% | Jan 9, 2025 | A vulnerability classified as critical has been found in SingMR HouseRent 1.0. This affects the function singleUpload/up... |
| CVE-2024-13211 | HIGH | 8.8 | 0.4% | Jan 9, 2025 | A vulnerability was found in SingMR HouseRent 1.0. It has been rated as critical. Affected by this issue is some unknown... |
| CVE-2024-13210 | HIGH | 7.2 | 0.5% | Jan 9, 2025 | A vulnerability was found in donglight bookstore电商书城系统说明 1.0. It has been declared as critical. Affected by this vulnera... |
| CVE-2024-13206 | HIGH | 8.5 | 0.2% | Jan 9, 2025 | A vulnerability classified as critical has been found in REVE Antivirus 1.0.0.0 on Linux. This affects an unknown part o... |
| CVE-2024-13204 | HIGH | 8 | 0.5% | Jan 9, 2025 | A vulnerability was found in kurniaramadhan E-Commerce-PHP 1.0. It has been declared as critical. Affected by this vulne... |
| CVE-2024-13201 | HIGH | 7.2 | 0.5% | Jan 9, 2025 | A vulnerability has been found in wander-chu SpringBoot-Blog 1.0 and classified as critical. This vulnerability affects ... |
| CVE-2024-13200 | HIGH | 7.5 | 0.5% | Jan 9, 2025 | A vulnerability, which was classified as critical, was found in wander-chu SpringBoot-Blog 1.0. This affects the functio... |
| CVE-2024-27980 | HIGH | 8.1 | 1.4% | Jan 9, 2025 | Due to the improper handling of batch files in child_process.spawn / child_process.spawnSync, a malicious command line a... |
| CVE-2024-13194 | HIGH | 8.8 | 0.6% | Jan 9, 2025 | A vulnerability was found in Sucms 1.0 and classified as critical. Affected by this issue is some unknown functionality ... |
| CVE-2024-54818 | HIGH | 8.8 | 0.5% | Jan 8, 2025 | SourceCodester Computer Laboratory Management System 1.0 is vulnerable to Incorrect Access Control. via /php-lms/admin/?... |
| CVE-2024-13188 | HIGH | 7.8 | 0.3% | Jan 8, 2025 | A vulnerability was found in MicroWorld eScan Antivirus 7.0.32 on Linux. It has been rated as critical. Affected by this... |
| CVE-2024-56784 | HIGH | 7.8 | 0.2% | Jan 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Adding array index check to preven... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now