2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9038 | CRITICAL | 9.8 | 0.7% | Sep 20, 2024 | A vulnerability classified as problematic was found in Codezips Online Shopping Portal 1.0. Affected by this vulnerabili... |
| CVE-2024-46652 | CRITICAL | 9.8 | 0.6% | Sep 20, 2024 | Tenda AC8v4 V16.03.34.06 has a stack overflow vulnerability in the fromAdvSetMacMtuWan function. |
| CVE-2024-9043 | CRITICAL | 9.8 | 1.4% | Sep 20, 2024 | Secure Email Gateway from Cellopoint has Buffer Overflow Vulnerability in authentication process. Remote unauthenticated... |
| CVE-2024-8853 | CRITICAL | 9.8 | 0.6% | Sep 20, 2024 | The Webo-facto plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.40 due to ... |
| CVE-2024-9011 | CRITICAL | 9.8 | 0.6% | Sep 20, 2024 | A vulnerability, which was classified as critical, was found in code-projects Crud Operation System 1.0. Affected is an ... |
| CVE-2024-9009 | CRITICAL | 9.8 | 0.6% | Sep 20, 2024 | A vulnerability, which was classified as critical, has been found in code-projects Online Quiz Site 1.0. This issue affe... |
| CVE-2024-9008 | CRITICAL | 9.8 | 0.6% | Sep 19, 2024 | A vulnerability classified as critical was found in SourceCodester Best Online News Portal 1.0. This vulnerability affec... |
| CVE-2024-46984 | CRITICAL | 9.8 | 0.6% | Sep 19, 2024 | The reference validator is a tool to perform advanced validation of FHIR resources for TI applications and interoperabil... |
| CVE-2024-46983 | CRITICAL | 9.8 | 0.7% | Sep 19, 2024 | sofa-hessian is an internal improved version of Hessian3/4 powered by Ant Group CO., Ltd. The SOFA Hessian protocol uses... |
| CVE-2024-9004 | CRITICAL | 9.8 | 15.8% | Sep 19, 2024 | A vulnerability classified as critical has been found in D-Link DAR-7000 up to 20240912. Affected is an unknown function... |
| CVE-2024-40125 | CRITICAL | 9.8 | 0.9% | Sep 19, 2024 | An arbitrary file upload vulnerability in the Media Manager function of Closed-Loop Technology CLESS Server v4.5.2 allow... |
| CVE-2024-33109 | CRITICAL | 9.8 | 0.9% | Sep 19, 2024 | Directory Traversal in the web interface of the Tiptel IP 286 with firmware version 2.61.13.10 allows attackers to overw... |
| CVE-2024-8963 | CRITICAL | 9.1 | 98.4% | Sep 19, 2024 | Path Traversal in the Ivanti CSA before 4.6 Patch 519 allows a remote unauthenticated attacker to access restricted func... |
| CVE-2024-31570 | CRITICAL | 9.8 | 0.6% | Sep 19, 2024 | libfreeimage in FreeImage 3.4.0 through 3.18.0 has a stack-based buffer overflow in the PluginXPM.cpp Load function via ... |
| CVE-2024-7785 | CRITICAL | 9.3 | 0.4% | Sep 19, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Ece Softwar... |
| CVE-2024-8986 | CRITICAL | 9.1 | 0.5% | Sep 19, 2024 | The grafana plugin SDK bundles build metadata into the binaries it compiles; this metadata includes the repository URI f... |
| CVE-2024-47088 | CRITICAL | 9.8 | 0.5% | Sep 19, 2024 | This vulnerability exists in Apex Softcell LD Geo due to missing restrictions for excessive failed authentication attemp... |
| CVE-2024-46946 | CRITICAL | 9.8 | 1.3% | Sep 19, 2024 | langchain_experimental (aka LangChain Experimental) 0.1.17 through 0.3.0 for LangChain allows attackers to execute arbit... |
| CVE-2024-46377 | CRITICAL | 9.8 | 1.2% | Sep 18, 2024 | Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the save_settings() function ... |
| CVE-2024-46376 | CRITICAL | 9.8 | 1.1% | Sep 18, 2024 | Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the update_account() function... |
| CVE-2024-46375 | CRITICAL | 9.8 | 1.1% | Sep 18, 2024 | Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the signup() function of the ... |
| CVE-2024-46374 | CRITICAL | 9.8 | 0.5% | Sep 18, 2024 | Best House Rental Management System 1.0 contains a SQL injection vulnerability in the delete_category() function of the ... |
| CVE-2024-40568 | CRITICAL | 9.8 | 0.7% | Sep 18, 2024 | Buffer Overflow vulnerability in btstack mesh commit before v.864e2f2b6b7878c8fab3cf5ee84ae566e3380c58 allows a remote a... |
| CVE-2024-46986 | CRITICAL | 9.9 | 35.5% | Sep 18, 2024 | Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails. An arbitrary file write vulnera... |
| CVE-2024-45523 | CRITICAL | 9.1 | 0.4% | Sep 18, 2024 | An issue was discovered in Bravura Security Fabric versions 12.3.x before 12.3.5.32784, 12.4.x before 12.4.3.35110, 12.5... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now