2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-43210 | MEDIUM | 6.5 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in LA-Studio L... |
| CVE-2024-43164 | MEDIUM | 6.5 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Blockspare ... |
| CVE-2024-43163 | HIGH | 7.1 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Parcel Pane... |
| CVE-2024-43161 | MEDIUM | 4.8 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Averta Depi... |
| CVE-2024-43156 | MEDIUM | 6.1 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in AddonMaster... |
| CVE-2024-43155 | MEDIUM | 6.5 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PickPlugins... |
| CVE-2024-43152 | MEDIUM | 6.1 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in iberezansky... |
| CVE-2024-43151 | MEDIUM | 5.4 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Brainstorm ... |
| CVE-2024-7704 | HIGH | 7.5 | 0.8% | Aug 12, 2024 | A vulnerability was found in Weaver e-cology 8. It has been classified as problematic. Affected is an unknown function o... |
| CVE-2024-43360 | CRITICAL | 9.8 | 6.2% | Aug 12, 2024 | ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder is affected by a time-based... |
| CVE-2024-43359 | MEDIUM | 6.1 | 0.4% | Aug 12, 2024 | ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder has a cross-site scripting ... |
| CVE-2024-43358 | MEDIUM | 6.1 | 0.3% | Aug 12, 2024 | ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder has a cross-site scripting ... |
| CVE-2024-43233 | HIGH | 7.1 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BannerSky B... |
| CVE-2024-43231 | MEDIUM | 5.4 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Themeum Tut... |
| CVE-2024-43227 | MEDIUM | 5.4 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPDeveloper... |
| CVE-2024-42748 | HIGH | 8.8 | 1.7% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42747 | HIGH | 8.8 | 1.0% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42745 | HIGH | 8.8 | 1.7% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42744 | HIGH | 8.8 | 1.7% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42743 | HIGH | 8.8 | 1.6% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42742 | HIGH | 8.8 | 1.7% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42741 | HIGH | 8.8 | 1.2% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-6768 | MEDIUM | 6.8 | 2.5% | Aug 12, 2024 | A Denial of Service in CLFS.sys in Microsoft Windows 10, Windows 11, Windows Server 2016, Windows Server 2019, and Windo... |
| CVE-2024-42547 | CRITICAL | 9.8 | 0.6% | Aug 12, 2024 | TOTOLINK A3100R V4.1.2cu.5050_B20200504 has a buffer overflow vulnerability in the http_host parameter in the loginauth ... |
| CVE-2024-42546 | CRITICAL | 9.8 | 0.6% | Aug 12, 2024 | TOTOLINK A3100R V4.1.2cu.5050_B20200504 has a buffer overflow vulnerability in the password parameter in the loginauth f... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now