2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-23866 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-23865 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-23864 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-23863 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-23862 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-23861 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-23860 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-23859 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-23858 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-23857 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-23856 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | A vulnerability has been reported in Cups Easy (Purchase & Inventory), version 1.0, whereby user-controlled inputs are n... |
| CVE-2024-0727 | MEDIUM | 5.5 | 3.2% | Jan 26, 2024 | Issue summary: Processing a maliciously formatted PKCS12 file may lead OpenSSL to crash leading to a potential Denial of... |
| CVE-2024-23388 | MEDIUM | 6.1 | 0.4% | Jan 26, 2024 | Improper authorization in handler for custom URL scheme issue in "Mercari" App for Android prior to version 5.78.0 allow... |
| CVE-2024-21387 | MEDIUM | 5.3 | 0.7% | Jan 26, 2024 | Microsoft Edge for Android Spoofing Vulnerability |
| CVE-2024-21382 | MEDIUM | 4.3 | 0.9% | Jan 26, 2024 | Microsoft Edge for Android Information Disclosure Vulnerability |
| CVE-2024-0456 | MEDIUM | 4.3 | 0.5% | Jan 26, 2024 | An authorization vulnerability exists in GitLab versions 14.0 prior to 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 1... |
| CVE-2024-21620 | MEDIUM | 6.1 | 0.9% | Jan 25, 2024 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in J-Web of Junipe... |
| CVE-2024-0891 | MEDIUM | 5.4 | 0.6% | Jan 25, 2024 | A vulnerability was found in hongmaple octopus 1.0. It has been declared as problematic. Affected by this vulnerability ... |
| CVE-2024-23055 | MEDIUM | 6.1 | 1.2% | Jan 25, 2024 | An issue in Plone Docker Official Image 5.2.13 (5221) open-source software allows for remote code execution via improper... |
| CVE-2024-0886 | MEDIUM | 5.5 | 0.4% | Jan 25, 2024 | A vulnerability classified as problematic was found in Poikosoft EZ CD Audio Converter 8.0.7. Affected by this vulnerabi... |
| CVE-2024-22639 | MEDIUM | 6.1 | 0.4% | Jan 25, 2024 | iGalerie v3.0.22 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the Titre (Title) fi... |
| CVE-2024-22637 | MEDIUM | 6.1 | 0.4% | Jan 25, 2024 | Form Tools v3.1.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the component /form... |
| CVE-2024-22635 | MEDIUM | 6.1 | 0.5% | Jan 25, 2024 | WebCalendar v1.3.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the component /Web... |
| CVE-2024-23817 | MEDIUM | 6.1 | 0.6% | Jan 25, 2024 | Dolibarr is an enterprise resource planning (ERP) and customer relationship management (CRM) software package. Version 1... |
| CVE-2024-23655 | MEDIUM | 5.3 | 0.8% | Jan 25, 2024 | Tuta is an encrypted email service. Starting in version 3.118.12 and prior to version 3.119.10, an attacker is able to s... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now