2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-0781 | MEDIUM | 6.1 | 0.5% | Jan 22, 2024 | A vulnerability, which was classified as problematic, was found in CodeAstro Internet Banking System 1.0. This affects a... |
| CVE-2024-22113 | MEDIUM | 6.1 | 0.4% | Jan 22, 2024 | Open redirect vulnerability in Access analysis CGI An-Analyzer released in 2023 December 31 and earlier allows a remote ... |
| CVE-2024-21484 | MEDIUM | 5.9 | 1.0% | Jan 22, 2024 | Versions of the package jsrsasign before 11.0.0 are vulnerable to Observable Discrepancy via the RSA PKCS1.5 or RSAOAEP ... |
| CVE-2024-23770 | MEDIUM | 5.5 | 0.2% | Jan 22, 2024 | darkhttpd through 1.15 allows local users to discover credentials (for --auth) by listing processes and their arguments. |
| CVE-2024-0776 | MEDIUM | 5.4 | 0.6% | Jan 22, 2024 | A vulnerability, which was classified as problematic, has been found in LinZhaoguan pb-cms 2.0. Affected by this issue i... |
| CVE-2024-0774 | MEDIUM | 5.5 | 0.3% | Jan 22, 2024 | A vulnerability was found in Any-Capture Any Sound Recorder 2.93. It has been declared as problematic. This vulnerabilit... |
| CVE-2024-0773 | MEDIUM | 5.4 | 0.6% | Jan 22, 2024 | A vulnerability classified as problematic was found in CodeAstro Internet Banking System 1.0. Affected by this vulnerabi... |
| CVE-2024-0772 | MEDIUM | 5.5 | 0.4% | Jan 22, 2024 | A vulnerability was found in Nsasoft ShareAlarmPro 2.1.4 and classified as problematic. Affected by this issue is some u... |
| CVE-2024-0771 | MEDIUM | 5.5 | 0.3% | Jan 21, 2024 | A vulnerability has been found in Nsasoft Product Key Explorer 4.0.9 and classified as problematic. Affected by this vul... |
| CVE-2024-23725 | MEDIUM | 6.1 | 0.4% | Jan 21, 2024 | Ghost before 5.76.0 allows XSS via a post excerpt in excerpt.js. An XSS payload can be rendered in post summaries. |
| CVE-2024-0679 | MEDIUM | 6.5 | 1.3% | Jan 20, 2024 | The ColorMag theme for WordPress is vulnerable to unauthorized access due to a missing capability check on the plugin_ac... |
| CVE-2024-0623 | MEDIUM | 4.3 | 0.7% | Jan 20, 2024 | The VK Block Patterns plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includ... |
| CVE-2024-23332 | MEDIUM | 6.8 | 0.3% | Jan 19, 2024 | The Notary Project is a set of specifications and tools intended to provide a cross-industry standard for securing softw... |
| CVE-2024-23688 | MEDIUM | 5.3 | 0.5% | Jan 19, 2024 | Consensys Discovery versions less than 0.4.5 uses the same AES/GCM nonce for the entire session. which should ideally be... |
| CVE-2024-23686 | MEDIUM | 5.3 | 0.6% | Jan 19, 2024 | DependencyCheck for Maven 9.0.0 to 9.0.6, for CLI version 9.0.0 to 9.0.5, and for Ant versions 9.0.0 to 9.0.5, when used... |
| CVE-2024-23685 | MEDIUM | 5.3 | 0.5% | Jan 19, 2024 | Hard-coded credentials in mod-remote-storage versions under 1.7.2 and from 2.0.0 to 2.0.3 allows unauthorized users to g... |
| CVE-2024-23680 | MEDIUM | 5.3 | 0.2% | Jan 19, 2024 | AWS Encryption SDK for Java versions 2.0.0 to 2.2.0 and less than 1.9.0 incorrectly validates some invalid ECDSA signatu... |
| CVE-2024-22421 | MEDIUM | 6.5 | 0.7% | Jan 19, 2024 | JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Ar... |
| CVE-2024-22420 | MEDIUM | 6.1 | 0.6% | Jan 19, 2024 | JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Ar... |
| CVE-2024-0758 | MEDIUM | 6.1 | 0.6% | Jan 19, 2024 | MolecularFaces before 0.3.0 is vulnerable to cross site scripting. A remote attacker can execute arbitrary JavaScript in... |
| CVE-2024-22957 | MEDIUM | 5.5 | 0.3% | Jan 19, 2024 | swftools 0.9.2 was discovered to contain an Out-of-bounds Read vulnerability via the function dict_do_lookup in swftools... |
| CVE-2024-22914 | MEDIUM | 5.5 | 0.3% | Jan 19, 2024 | A heap-use-after-free was found in SWFTools v0.9.2, in the function input at lex.swf5.c:2620. It allows an attacker to c... |
| CVE-2024-0726 | MEDIUM | 6.1 | 0.6% | Jan 19, 2024 | A vulnerability was found in Project Worlds Student Project Allocation System 1.0. It has been rated as problematic. Thi... |
| CVE-2024-0722 | MEDIUM | 5.4 | 0.5% | Jan 19, 2024 | A vulnerability was found in code-projects Social Networking Site 1.0 and classified as problematic. Affected by this is... |
| CVE-2024-0721 | MEDIUM | 6.1 | 0.5% | Jan 19, 2024 | A vulnerability has been found in Jspxcms 10.2.0 and classified as problematic. Affected by this vulnerability is an unk... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now