2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-20150 | HIGH | 7.5 | 0.7% | Jan 6, 2025 | In Modem, there is a possible system crash due to a logic error. This could lead to remote denial of service with no add... |
| CVE-2024-20149 | HIGH | 7.5 | 0.7% | Jan 6, 2025 | In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service... |
| CVE-2024-20146 | HIGH | 8.1 | 0.1% | Jan 6, 2025 | In wlan STA driver, there is a possible out of bounds write due to improper input validation. This could lead to remote ... |
| CVE-2024-13139 | HIGH | 8.8 | 0.5% | Jan 5, 2025 | A vulnerability was found in wangl1989 mysiteforme 1.0. It has been rated as critical. This issue affects the function d... |
| CVE-2024-13138 | HIGH | 8.8 | 0.4% | Jan 5, 2025 | A vulnerability was found in wangl1989 mysiteforme 1.0. It has been declared as critical. This vulnerability affects the... |
| CVE-2024-13134 | HIGH | 8.8 | 0.4% | Jan 5, 2025 | A vulnerability, which was classified as critical, was found in ZeroWdd studentmanager 1.0. Affected is the function add... |
| CVE-2024-13133 | HIGH | 8.8 | 0.3% | Jan 5, 2025 | A vulnerability, which was classified as critical, has been found in ZeroWdd studentmanager 1.0. This issue affects the ... |
| CVE-2024-41767 | HIGH | 7.3 | 0.3% | Jan 4, 2025 | IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 is vulnerable to SQL injection. A remote attacker co... |
| CVE-2024-41766 | HIGH | 7.5 | 0.5% | Jan 4, 2025 | IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 could allow a remote attacker to cause a denial of ... |
| CVE-2024-41763 | HIGH | 7.5 | 0.2% | Jan 4, 2025 | IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 uses weaker than expected cryptographic algorithms ... |
| CVE-2024-10957 | HIGH | 8.8 | 0.7% | Jan 4, 2025 | The UpdraftPlus: WP Backup & Migration Plugin plugin for WordPress is vulnerable to PHP Object Injection in all versions... |
| CVE-2024-10932 | HIGH | 8.8 | 0.8% | Jan 4, 2025 | The Backup Migration plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.... |
| CVE-2024-11733 | HIGH | 7.3 | 0.5% | Jan 3, 2025 | The The WordPress Popular Posts plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up t... |
| CVE-2024-13129 | HIGH | 8.8 | 17.8% | Jan 3, 2025 | A vulnerability was found in Roxy-WI up to 8.1.3. It has been declared as critical. Affected by this vulnerability is th... |
| CVE-2024-35365 | HIGH | 8.8 | 0.7% | Jan 3, 2025 | FFmpeg version n6.1.1 has a double-free vulnerability in the fftools/ffmpeg_mux_init.c component of FFmpeg, specifically... |
| CVE-2024-56513 | HIGH | 8.7 | 0.5% | Jan 3, 2025 | Karmada is a Kubernetes management system that allows users to run cloud-native applications across multiple Kubernetes ... |
| CVE-2024-56324 | HIGH | 7.1 | 0.8% | Jan 3, 2025 | GoCD is a continuous deliver server. GoCD versions prior to 24.4.0 can allow GoCD "group admins" to abuse ability to edi... |
| CVE-2024-56322 | HIGH | 7.2 | 0.7% | Jan 3, 2025 | GoCD is a continuous deliver server. GoCD versions 16.7.0 through 24.4.0 (inclusive) can allow GoCD admins to abuse a hi... |
| CVE-2024-56320 | HIGH | 8.8 | 0.7% | Jan 3, 2025 | GoCD is a continuous deliver server. GoCD versions prior to 24.5.0 are vulnerable to admin privilege escalation due to i... |
| CVE-2024-48814 | HIGH | 7.5 | 0.5% | Jan 3, 2025 | SQL Injection vulnerability in Silverpeas 6.4.1 allows a remote attacker to obtain sensitive information via the ViewTyp... |
| CVE-2024-9138 | HIGH | 8.6 | 1.1% | Jan 3, 2025 | Moxa’s cellular routers, secure routers, and network security appliances are affected by a high-severity vulnerability, ... |
| CVE-2024-53841 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | In startListeningForDeviceStateChanges, there is a possible Permission Bypass due to a confused deputy. This could lead ... |
| CVE-2024-53840 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | there is a possible biometric bypass due to an unusual root cause. This could lead to local escalation of privilege with... |
| CVE-2024-53838 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | In Exynos_parsing_user_data_registered_itu_t_t35 of VendorVideoAPI.cpp, there is a possible out of bounds write due to a... |
| CVE-2024-53837 | HIGH | 7.8 | 0.1% | Jan 3, 2025 | In prepare_response of lwis_periodic_io.c, there is a possible out of bounds write due to an integer overflow. This coul... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now