2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-41847MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit...
CVE-2024-41846MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-41845MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-41844MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-41843MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-41842MEDIUM4.8Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-41841MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit...
CVE-2024-39841HIGH8.8A SQL Injection vulnerability exists in the service configuration functionality in Centreon Web 24.04.x before 24.04.3, ...
CVE-2024-33854CRITICAL9.1A SQL Injection vulnerability exists in the Graph Template component in Centreon Web 24.04.x before 24.04.3, 23.10.x bef...
CVE-2024-33853CRITICAL9.1A SQL Injection vulnerability exists in the Timeperiod component in Centreon Web 24.04.x before 24.04.3, 23.10.x before ...
CVE-2024-33852CRITICAL9.1A SQL Injection vulnerability exists in the Downtime component in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23...
CVE-2024-32501CRITICAL9.8A SQL Injection vulnerability exists in the updateServiceHost functionality in Centreon Web 24.04.x before 24.04.3, 23.1...
CVE-2024-44386HIGH7.3Tenda FH1206 V1.2.0.8(8155)_EN contains a Buffer Overflow vulnerability via the function fromSetIpBind.
CVE-2024-44382CRITICAL9.8D-Link DI_8004W 16.07.26A1 contains a command execution vulnerability in the jhttpd upgrade_filter_asp function.
CVE-2024-44381CRITICAL9.8D-Link DI_8004W 16.07.26A1 contains a command execution vulnerability in jhttpd msp_info_htm function.
CVE-2024-43032MEDIUM4.3autMan v2.9.6 allows attackers to bypass authentication via a crafted web request.
CVE-2024-43031MEDIUM4.3autMan v2.9.6 was discovered to contain an access control issue.
CVE-2024-42756HIGH8.8An issue in Netgear DGN1000WW v.1.1.00.45 allows a remote attacker to execute arbitrary code via the Diagnostics page
CVE-2024-42636HIGH7.2DedeCMS V5.7.115 has a command execution vulnerability via file_manage_view.php?fmdo=newfile&activepath.
CVE-2024-42523HIGH7.2publiccms V4.0.202302.e and before is vulnerable to Any File Upload via publiccms/admin/cmsTemplate/saveMetaData
CVE-2024-42364MEDIUM6.5Homepage is a highly customizable homepage with Docker and service API integrations. The default setup of homepage 0.9.1...
CVE-2024-8113MEDIUM5.4Stored XSS in organizer and event settings of pretix up to 2024.7.0 allows malicious event organizers to inject HTML tag...
CVE-2024-8112MEDIUM6.1A vulnerability was found in thinkgem JeeSite 5.3. It has been rated as problematic. This issue affects some unknown pro...
CVE-2024-43791HIGH7.8RequestStore provides per-request global storage for Rack. The files published as part of request_store 1.3.2 have 0666 ...
CVE-2024-43782CRITICAL9.8This openedx-translations repository contains translation files from Open edX repositories to be kept in sync with Trans...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now