2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-12761HIGH7.5A Denial of Service (DoS) vulnerability exists in the brycedrennan/imaginairy repository, version 15.0.0. The vulnerabil...
CVE-2024-12760Rejected reason: ** REJECT ** DO NOT USE THIS CVE ID NUMBER. The Rejected CVE Record is a duplicate of CVE-2024-4940. No...
CVE-2024-12759Rejected reason: ** REJECT ** DO NOT USE THIS CVE ID NUMBER. The Rejected CVE Record is a duplicate of CVE-2024-8966. No...
CVE-2024-12720HIGH7.5A Regular Expression Denial of Service (ReDoS) vulnerability was identified in the huggingface/transformers library, spe...
CVE-2024-12704HIGH7.5A vulnerability in the LangChainLLM class of the run-llama/llama_index repository, version v0.12.5, allows for a Denial ...
CVE-2024-12580MEDIUM5.3A vulnerability in danny-avila/librechat prior to version 0.7.6 allows for logs debug injection. The parameters sessionI...
CVE-2024-12537Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-12534Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-12450CRITICAL9.8In infiniflow/ragflow versions 0.12.0, the `web_crawl` function in `document_app.py` contains multiple vulnerabilities. ...
CVE-2024-12433CRITICAL9.8A vulnerability in infiniflow/ragflow versions v0.12.0 allows for remote code execution. The RPC server in RagFlow uses ...
CVE-2024-12392MEDIUM6.5A Server-Side Request Forgery (SSRF) vulnerability exists in binary-husky/gpt_academic version git 310122f. The applicat...
CVE-2024-12391MEDIUM6.5A vulnerability in binary-husky/gpt_academic, as of commit 310122f, allows for a Regular Expression Denial of Service (R...
CVE-2024-12390HIGH8.8A vulnerability in binary-husky/gpt_academic version git 310122f allows for remote code execution. The application suppo...
CVE-2024-12389HIGH8.8A path traversal vulnerability exists in binary-husky/gpt_academic version git 310122f. The application supports the ext...
CVE-2024-12388MEDIUM6.5A vulnerability in binary-husky/gpt_academic version 310122f allows for a Regular Expression Denial of Service (ReDoS) a...
CVE-2024-12387MEDIUM6.5A vulnerability in the binary-husky/gpt_academic repository, as of commit git 3890467, allows an attacker to crash the s...
CVE-2024-12376HIGH7.5A Server-Side Request Forgery (SSRF) vulnerability was identified in the lm-sys/fastchat web server, specifically in the...
CVE-2024-12375MEDIUM6.5A local file inclusion vulnerability was identified in automatic1111/stable-diffusion-webui, affecting version git 82a97...
CVE-2024-12374MEDIUM6.1A stored cross-site scripting (XSS) vulnerability exists in automatic1111/stable-diffusion-webui version git 82a973c. An...
CVE-2024-12217MEDIUM5.3A vulnerability in the gradio-app/gradio repository, version git 67e4044, allows for path traversal on Windows OS. The i...
CVE-2024-12216HIGH7.1A vulnerability in the `ImageClassificationDataset.from_csv()` API of the `dmlc/gluon-cv` repository, version 0.10.0, al...
CVE-2024-12215HIGH8.8In kedro-org/kedro version 0.19.8, the `pull_package()` API function allows users to download and extract micro packages...
CVE-2024-12074MEDIUM6.5A Denial of Service (DoS) vulnerability was discovered in the file upload feature of automatic1111/stable-diffusion-webu...
CVE-2024-12070HIGH7.5A Denial of Service (DoS) vulnerability exists in the file upload feature of haotian-liu/llava, specifically in Release ...
CVE-2024-12068HIGH7.5A Server-Side Request Forgery (SSRF) vulnerability was discovered in haotian-liu/llava, affecting version git c121f04. T...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now