2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9429 | CRITICAL | 9.8 | 0.6% | Oct 2, 2024 | A vulnerability has been found in code-projects Restaurant Reservation System 1.0 and classified as critical. Affected b... |
| CVE-2024-35293 | CRITICAL | 9.1 | 0.6% | Oct 2, 2024 | An unauthenticated remote attacker may use a missing authentication for critical function vulnerability to reboot or era... |
| CVE-2024-45186 | CRITICAL | 9.8 | 0.6% | Oct 2, 2024 | FileSender before 2.49 allows server-side template injection (SSTI) for retrieving credentials. |
| CVE-2024-45999 | CRITICAL | 9.8 | 0.4% | Oct 1, 2024 | A SQL Injection vulnerability was discovered in Cloudlog 2.6.15, specifically within the get_station_info()function loca... |
| CVE-2024-47608 | CRITICAL | 9.8 | 0.6% | Oct 1, 2024 | Logicytics is designed to harvest and collect data for forensic analysis. Logicytics has a basic vuln affecting compromi... |
| CVE-2024-9402 | CRITICAL | 9.8 | 0.6% | Oct 1, 2024 | Memory safety bugs present in Firefox 130, Firefox ESR 128.2, and Thunderbird 128.2. Some of these bugs showed evidence ... |
| CVE-2024-9401 | CRITICAL | 9.8 | 0.7% | Oct 1, 2024 | Memory safety bugs present in Firefox 130, Firefox ESR 115.15, Firefox ESR 128.2, and Thunderbird 128.2. Some of these b... |
| CVE-2024-9392 | CRITICAL | 9.8 | 0.5% | Oct 1, 2024 | A compromised content process could have allowed for the arbitrary loading of cross-origin pages. This vulnerability aff... |
| CVE-2024-25660 | CRITICAL | 9 | 0.5% | Oct 1, 2024 | The WebDAV service in Infinera TNMS (Transcend Network Management System) 19.10.3 allows a low-privileged remote attacke... |
| CVE-2024-41276 | CRITICAL | 9.8 | 1.0% | Oct 1, 2024 | A vulnerability in Kaiten version 57.131.12 and earlier allows attackers to bypass the PIN code authentication mechanism... |
| CVE-2024-9289 | CRITICAL | 9.8 | 0.6% | Oct 1, 2024 | The WordPress & WooCommerce Affiliate Program plugin for WordPress is vulnerable to authentication bypass in all version... |
| CVE-2024-9265 | CRITICAL | 9.8 | 0.6% | Oct 1, 2024 | The Echo RSS Feed Post Generator plugin for WordPress is vulnerable to privilege escalation in all versions up to, and i... |
| CVE-2024-9108 | CRITICAL | 9.8 | 0.8% | Oct 1, 2024 | The Wechat Social login plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type valid... |
| CVE-2024-9106 | CRITICAL | 9.8 | 1.7% | Oct 1, 2024 | The Wechat Social login plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.... |
| CVE-2024-9360 | CRITICAL | 9.8 | 0.8% | Oct 1, 2024 | A vulnerability was found in code-projects Restaurant Reservation System 1.0. It has been classified as critical. This a... |
| CVE-2024-9359 | CRITICAL | 9.8 | 0.8% | Oct 1, 2024 | A vulnerability was found in code-projects Restaurant Reservation System 1.0 and classified as critical. Affected by thi... |
| CVE-2024-9194 | CRITICAL | 9.8 | 0.4% | Sep 30, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Linux and Microsof... |
| CVE-2024-42017 | CRITICAL | 10 | 0.5% | Sep 30, 2024 | An issue was discovered in Atos Eviden iCare 2.7.1 through 2.7.11. The application exposes a web interface locally. In t... |
| CVE-2024-46293 | CRITICAL | 9.8 | 0.4% | Sep 30, 2024 | Sourcecodester Online Medicine Ordering System 1.0 is vulnerable to Incorrect Access Control. There is a lack of authori... |
| CVE-2024-8456 | CRITICAL | 9.8 | 0.6% | Sep 30, 2024 | Certain switch models from PLANET Technology lack proper access control in firmware upload and download functionality, a... |
| CVE-2024-8450 | CRITICAL | 9.8 | 0.4% | Sep 30, 2024 | Certain switch models from PLANET Technology have a Hard-coded community string in the SNMPv1 service, allowing unauthor... |
| CVE-2024-9328 | CRITICAL | 9.8 | 0.6% | Sep 29, 2024 | A vulnerability was found in SourceCodester Advocate Office Management System 1.0. It has been rated as critical. This i... |
| CVE-2024-9327 | CRITICAL | 9.8 | 0.5% | Sep 29, 2024 | A vulnerability was found in code-projects Blood Bank System 1.0. It has been declared as critical. This vulnerability a... |
| CVE-2024-9326 | CRITICAL | 9.8 | 1.4% | Sep 29, 2024 | A vulnerability classified as critical was found in PHPGurukul Online Shopping Portal 2.0. This vulnerability affects un... |
| CVE-2024-9322 | CRITICAL | 9.8 | 0.4% | Sep 29, 2024 | A vulnerability was found in code-projects Supply Chain Management 1.0. It has been classified as critical. Affected is ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now