2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27729 | MEDIUM | 6.1 | 0.4% | Aug 15, 2024 | Cross Site Scripting vulnerability in Friendica v.2023.12 allows a remote attacker to obtain sensitive information via t... |
| CVE-2024-27728 | MEDIUM | 6.1 | 0.3% | Aug 15, 2024 | Cross Site Scripting vulnerability in Friendica v.2023.12 allows a remote attacker to obtain sensitive information via t... |
| CVE-2024-25633 | MEDIUM | 5.4 | 0.2% | Aug 15, 2024 | eLabFTW is an open source electronic lab notebook for research labs. In an eLabFTW system, one can configure who is allo... |
| CVE-2024-23168 | CRITICAL | 9.8 | 0.4% | Aug 15, 2024 | Vulnerability in Xiexe XSOverlay before build 647 allows non-local websites to send the malicious commands to the WebSoc... |
| CVE-2024-32231 | MEDIUM | 6.3 | 1.2% | Aug 15, 2024 | Stash up to v0.25.1 was discovered to contain a SQL injection vulnerability via the sort parameter. |
| CVE-2024-22219 | MEDIUM | 6.3 | 0.5% | Aug 15, 2024 | XML External Entity (XXE) vulnerability in Terminalfour 8.0.0001 through 8.3.18 and XML JDBC versions up to 1.0.4 allows... |
| CVE-2024-22218 | HIGH | 8.8 | 0.7% | Aug 15, 2024 | XML External Entity (XXE) vulnerability in Terminalfour 8.0.0001 through 8.3.18 and XML JDBC versions up to 1.0.4 allows... |
| CVE-2024-22217 | MEDIUM | 6.5 | 0.3% | Aug 15, 2024 | A Server-Side Request Forgery (SSRF) vulnerability in Terminalfour before 8.3.19 allows authenticated users to use speci... |
| CVE-2024-42987 | HIGH | 7.5 | 1.3% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack-based buffer overflow vulnerability in the fromPptpUserAdd f... |
| CVE-2024-42986 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the PPPOEPassword parameter in the fromAdvSetWa... |
| CVE-2024-42985 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in the fromNatlimit function... |
| CVE-2024-42984 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in the fromP2pListFilter fun... |
| CVE-2024-42983 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the pptpPPW parameter in the fromAdvSetWan func... |
| CVE-2024-42982 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in the fromVirtualSer functi... |
| CVE-2024-42981 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the delno parameter in the fromPptpUserSetting ... |
| CVE-2024-42980 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in the frmL7ImForm function.... |
| CVE-2024-42979 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in the frmL7ProtForm functio... |
| CVE-2024-42978 | CRITICAL | 9.8 | 1.2% | Aug 15, 2024 | An issue in the handler function in /goform/telnet of Tenda FH1206 v02.03.01.35 allows attackers to execute arbitrary co... |
| CVE-2024-42977 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the qos parameter in the fromqossetting functio... |
| CVE-2024-42976 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in the fromSafeClientFilter ... |
| CVE-2024-42974 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in the fromwebExcptypemanFil... |
| CVE-2024-42973 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in the fromSetlpBind functio... |
| CVE-2024-42969 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in the fromSafeUrlFilter fun... |
| CVE-2024-42968 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the Go parameter in the fromSafeUrlFilter funct... |
| CVE-2024-42967 | CRITICAL | 9.8 | 0.6% | Aug 15, 2024 | Incorrect access control in TOTOLINK LR350 V9.3.5u.6369_B20220309 allows attackers to obtain the apmib configuration fil... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now