2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-13204 | HIGH | 8 | 0.5% | Jan 9, 2025 | A vulnerability was found in kurniaramadhan E-Commerce-PHP 1.0. It has been declared as critical. Affected by this vulne... |
| CVE-2024-13201 | HIGH | 7.2 | 0.5% | Jan 9, 2025 | A vulnerability has been found in wander-chu SpringBoot-Blog 1.0 and classified as critical. This vulnerability affects ... |
| CVE-2024-13200 | HIGH | 7.5 | 0.5% | Jan 9, 2025 | A vulnerability, which was classified as critical, was found in wander-chu SpringBoot-Blog 1.0. This affects the functio... |
| CVE-2024-27980 | HIGH | 8.1 | 1.4% | Jan 9, 2025 | Due to the improper handling of batch files in child_process.spawn / child_process.spawnSync, a malicious command line a... |
| CVE-2024-13194 | HIGH | 8.8 | 0.6% | Jan 9, 2025 | A vulnerability was found in Sucms 1.0 and classified as critical. Affected by this issue is some unknown functionality ... |
| CVE-2024-54818 | HIGH | 8.8 | 0.5% | Jan 8, 2025 | SourceCodester Computer Laboratory Management System 1.0 is vulnerable to Incorrect Access Control. via /php-lms/admin/?... |
| CVE-2024-13188 | HIGH | 7.8 | 0.3% | Jan 8, 2025 | A vulnerability was found in MicroWorld eScan Antivirus 7.0.32 on Linux. It has been rated as critical. Affected by this... |
| CVE-2024-56784 | HIGH | 7.8 | 0.2% | Jan 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Adding array index check to preven... |
| CVE-2024-56775 | HIGH | 7.8 | 0.2% | Jan 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix handling of plane refcount [W... |
| CVE-2024-56772 | HIGH | 7.8 | 0.2% | Jan 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: kunit: string-stream: Fix a UAF bug in kunit_init_s... |
| CVE-2024-51442 | HIGH | 8.8 | 2.2% | Jan 8, 2025 | Command Injection in Minidlna version v1.3.3 and before allows an attacker to execute arbitrary OS commands via a specia... |
| CVE-2024-55656 | HIGH | 8.8 | 15.0% | Jan 8, 2025 | RedisBloom adds a set of probabilistic data structures to Redis. There is an integer overflow vulnerability in RedisBloo... |
| CVE-2024-55517 | HIGH | 8.8 | 0.5% | Jan 8, 2025 | An issue was discovered in the Interllect Core Search in Polaris FT Intellect Core Banking 9.5. Input passed through the... |
| CVE-2024-51737 | HIGH | 7 | 0.4% | Jan 8, 2025 | RediSearch is a Redis module that provides querying, secondary indexing, and full-text search for Redis. An authenticate... |
| CVE-2024-51480 | HIGH | 7 | 0.2% | Jan 8, 2025 | RedisTimeSeries is a time-series database (TSDB) module for Redis, by Redis. Executing one of these commands TS.QUERYIND... |
| CVE-2024-11423 | HIGH | 7.5 | 0.8% | Jan 8, 2025 | The Ultimate Gift Cards for WooCommerce – Create WooCommerce Gift Cards, Gift Vouchers, Redeem & Manage Digital Gift Cou... |
| CVE-2024-12854 | HIGH | 8.8 | 0.8% | Jan 8, 2025 | The Garden Gnome Package plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validatio... |
| CVE-2024-12853 | HIGH | 8.8 | 0.8% | Jan 8, 2025 | The Modula Image Gallery plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validatio... |
| CVE-2024-9939 | HIGH | 7.5 | 1.0% | Jan 8, 2025 | The WordPress File Upload plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 4.2... |
| CVE-2024-45033 | HIGH | 8.1 | 0.9% | Jan 8, 2025 | Insufficient Session Expiration vulnerability in Apache Airflow Fab Provider. This issue affects Apache Airflow Fab Pro... |
| CVE-2024-13186 | HIGH | 7.5 | 0.3% | Jan 8, 2025 | The MinigameCenter module has insufficient restrictions on loading URLs, which may lead to some information leakage. |
| CVE-2024-13185 | HIGH | 7.5 | 0.3% | Jan 8, 2025 | The MinigameCenter module has insufficient restrictions on loading URLs, which may lead to some information leakage. |
| CVE-2024-11939 | HIGH | 7.5 | 0.4% | Jan 8, 2025 | The Cost Calculator Builder PRO plugin for WordPress is vulnerable to blind time-based SQL Injection via the ‘data’ para... |
| CVE-2024-13173 | HIGH | 7.5 | 0.3% | Jan 8, 2025 | The health module has insufficient restrictions on loading URLs, which may lead to some information leakage. |
| CVE-2024-11270 | HIGH | 8.8 | 0.9% | Jan 8, 2025 | The WordPress Webinar Plugin – WebinarPress plugin for WordPress is vulnerable to arbitrary file creation due to a missi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now