2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-7973 | HIGH | 8.8 | 0.7% | Aug 21, 2024 | Heap buffer overflow in PDFium in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform an out of bo... |
| CVE-2024-7972 | HIGH | 8.8 | 0.6% | Aug 21, 2024 | Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially perf... |
| CVE-2024-7971 | CRITICAL | 9.6 | 19.3% | Aug 21, 2024 | Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a ... |
| CVE-2024-7969 | HIGH | 8.8 | 0.5% | Aug 21, 2024 | Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corr... |
| CVE-2024-7968 | HIGH | 8.8 | 0.5% | Aug 21, 2024 | Use after free in Autofill in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had convinced the user ... |
| CVE-2024-7967 | HIGH | 8.8 | 0.6% | Aug 21, 2024 | Heap buffer overflow in Fonts in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit h... |
| CVE-2024-7966 | HIGH | 8.8 | 0.6% | Aug 21, 2024 | Out of bounds memory access in Skia in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had compromise... |
| CVE-2024-7965 | HIGH | 8.8 | 17.2% | Aug 21, 2024 | Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially expl... |
| CVE-2024-7964 | HIGH | 8.8 | 0.6% | Aug 21, 2024 | Use after free in Passwords in Google Chrome on Android prior to 128.0.6613.84 allowed a remote attacker to potentially ... |
| CVE-2024-6386 | HIGH | 8.8 | 25.0% | Aug 21, 2024 | The WPML plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.6.12 via Tw... |
| CVE-2024-20486 | HIGH | 8.8 | 0.3% | Aug 21, 2024 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic... |
| CVE-2024-20466 | MEDIUM | 4.9 | 0.5% | Aug 21, 2024 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat... |
| CVE-2024-20417 | HIGH | 8.1 | 0.5% | Aug 21, 2024 | Multiple vulnerabilities in the REST API of Cisco Identity Services Engine (ISE) could allow an authenticated, remote at... |
| CVE-2024-41572 | MEDIUM | 6.1 | 0.3% | Aug 21, 2024 | Learning with Texts (LWT) 2.0.3 is vulnerable to Cross Site Scripting (XSS). The application has a specific function tha... |
| CVE-2024-20488 | MEDIUM | 6.1 | 0.3% | Aug 21, 2024 | A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) and Cisco Uni... |
| CVE-2024-42786 | HIGH | 8.8 | 0.6% | Aug 21, 2024 | A SQL injection vulnerability in "/music/view_user.php" in Kashipara Music Management System v1.0 allows an attacker to ... |
| CVE-2024-42785 | HIGH | 8.8 | 0.5% | Aug 21, 2024 | A SQL injection vulnerability in /music/index.php?page=view_playlist in Kashipara Music Management System v1.0 allows an... |
| CVE-2024-42784 | CRITICAL | 9.8 | 0.6% | Aug 21, 2024 | A SQL injection vulnerability in "/music/controller.php?page=view_music" in Kashipara Music Management System v1.0 allow... |
| CVE-2024-42783 | CRITICAL | 9.8 | 0.4% | Aug 21, 2024 | Kashipara Music Management System v1.0 is vulnerable to SQL Injection via /music/manage_playlist_items.php. An attacker ... |
| CVE-2024-42782 | CRITICAL | 9.8 | 0.4% | Aug 21, 2024 | A SQL injection vulnerability in "/music/ajax.php?action=find_music" in Kashipara Music Management System v1.0 allows an... |
| CVE-2024-42781 | CRITICAL | 9.8 | 0.7% | Aug 21, 2024 | A SQL injection vulnerability in "/music/ajax.php?action=login" of Kashipara Music Management System v1.0 allows remote ... |
| CVE-2024-42780 | HIGH | 8.8 | 0.8% | Aug 21, 2024 | An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=save_genre" in Kashipara Music Management... |
| CVE-2024-42779 | HIGH | 8.8 | 0.8% | Aug 21, 2024 | An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=save_music" in Kashipara Music Management... |
| CVE-2024-42778 | HIGH | 8.8 | 0.8% | Aug 21, 2024 | An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=save_playlist" in Kashipara Music Managem... |
| CVE-2024-42777 | CRITICAL | 9.8 | 0.7% | Aug 21, 2024 | An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=signup" of Kashipara Music Management Sys... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now