2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1195 | MEDIUM | 5.5 | 0.3% | Feb 2, 2024 | A vulnerability classified as critical was found in iTop VPN up to 4.0.0.1. Affected by this vulnerability is an unknown... |
| CVE-2024-23553 | MEDIUM | 5.4 | 0.3% | Feb 2, 2024 | A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform exists due to missing a s... |
| CVE-2024-1194 | MEDIUM | 5.5 | 0.4% | Feb 2, 2024 | A vulnerability classified as problematic has been found in Armcode AlienIP 2.41. Affected is an unknown function of the... |
| CVE-2024-1193 | MEDIUM | 5.5 | 0.3% | Feb 2, 2024 | A vulnerability was found in Navicat 12.0.29. It has been rated as problematic. This issue affects some unknown processi... |
| CVE-2024-1190 | MEDIUM | 5.5 | 0.3% | Feb 2, 2024 | A vulnerability was found in Global Scape CuteFTP 9.3.0.3 and classified as problematic. Affected by this issue is some ... |
| CVE-2024-1188 | MEDIUM | 5.5 | 0.2% | Feb 2, 2024 | A vulnerability, which was classified as problematic, was found in Rizone Soft Notepad3 1.0.2.350. Affected is an unknow... |
| CVE-2024-1187 | MEDIUM | 5.5 | 0.3% | Feb 2, 2024 | A vulnerability, which was classified as problematic, has been found in Munsoft Easy Outlook Express Recovery 2.0. This ... |
| CVE-2024-24560 | MEDIUM | 5.3 | 0.5% | Feb 2, 2024 | Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine. When calls to external contracts are made,... |
| CVE-2024-23635 | MEDIUM | 6.1 | 0.4% | Feb 2, 2024 | AntiSamy is a library for performing fast, configurable cleansing of HTML coming from untrusted sources. Prior to 1.7.5,... |
| CVE-2024-1186 | MEDIUM | 5.5 | 0.4% | Feb 2, 2024 | A vulnerability classified as problematic was found in Munsoft Easy Archive Recovery 2.0. This vulnerability affects unk... |
| CVE-2024-24160 | MEDIUM | 5.4 | 0.4% | Feb 2, 2024 | MRCMS 3.0 contains a Cross-Site Scripting (XSS) vulnerability via /admin/system/saveinfo.do. |
| CVE-2024-1185 | MEDIUM | 5.5 | 0.4% | Feb 2, 2024 | A vulnerability classified as problematic has been found in Nsasoft NBMonitor Network Bandwidth Monitor 1.6.5.0. This af... |
| CVE-2024-1184 | MEDIUM | 5.5 | 0.4% | Feb 2, 2024 | A vulnerability was found in Nsasoft Network Sleuth 3.0.0.0. It has been rated as problematic. Affected by this issue is... |
| CVE-2024-0963 | MEDIUM | 5.4 | 0.5% | Feb 2, 2024 | The Calculated Fields Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's CP_CALCULA... |
| CVE-2024-24388 | MEDIUM | 6.1 | 0.5% | Feb 2, 2024 | Cross-site scripting (XSS) vulnerability in XunRuiCMS versions v4.6.2 and before, allows remote attackers to obtain sens... |
| CVE-2024-23895 | MEDIUM | 6.1 | 0.5% | Feb 2, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-21863 | MEDIUM | 6.2 | 0.2% | Feb 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause DOS through improper input. |
| CVE-2024-0285 | MEDIUM | 5.5 | 0.2% | Feb 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause DOS through improper input. |
| CVE-2024-1162 | MEDIUM | 4.3 | 0.2% | Feb 2, 2024 | The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and i... |
| CVE-2024-1143 | MEDIUM | 6.1 | 0.5% | Feb 2, 2024 | Central Dogma versions prior to 0.64.1 is vulnerable to Cross-Site Scripting (XSS), which could allow for the leakage of... |
| CVE-2024-1047 | MEDIUM | 5.3 | 0.6% | Feb 2, 2024 | Multiple plugins and/or themes for WordPress with the ThemeIsle SDK are vulnerable to unauthorized modification of data ... |
| CVE-2024-21485 | MEDIUM | 5.4 | 1.5% | Feb 2, 2024 | Versions of the package dash-core-components before 2.13.0; versions of the package dash-core-components before 2.0.0; v... |
| CVE-2024-1073 | MEDIUM | 5.4 | 0.5% | Feb 2, 2024 | The SlimStat Analytics plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'filter_array' paramete... |
| CVE-2024-22096 | MEDIUM | 6.5 | 0.6% | Feb 2, 2024 | In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, an attacker can append path traversal characters to... |
| CVE-2024-21869 | MEDIUM | 5.5 | 0.2% | Feb 2, 2024 | In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, the affected product stores plaintext credentials i... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now