2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-40484 | MEDIUM | 6.1 | 0.6% | Aug 12, 2024 | A Reflected Cross Site Scripting (XSS) vulnerability was found in "/oahms/search.php" in PHPGurukul Old Age Home Managem... |
| CVE-2024-40482 | CRITICAL | 9.8 | 1.2% | Aug 12, 2024 | An Unrestricted file upload vulnerability was found in "/Membership/edit_member.php" of Kashipara Live Membership System... |
| CVE-2024-40481 | MEDIUM | 5.4 | 0.6% | Aug 12, 2024 | A Stored Cross Site Scripting (XSS) vulnerability was found in "/admin/view-enquiry.php" in PHPGurukul Old Age Home Mana... |
| CVE-2024-40480 | CRITICAL | 9.8 | 0.5% | Aug 12, 2024 | A Broken Access Control vulnerability was found in /admin/update.php and /admin/dashboard.php in Kashipara Online Exam S... |
| CVE-2024-40479 | HIGH | 8.1 | 0.8% | Aug 12, 2024 | A SQL injection vulnerability in "/admin/quizquestion.php" in Kashipara Online Exam System v1.0 allows remote attackers ... |
| CVE-2024-40478 | MEDIUM | 5.4 | 0.6% | Aug 12, 2024 | A Stored Cross Site Scripting (XSS) vulnerability was found in "/admin/afeedback.php" in Kashipara Online Exam System v1... |
| CVE-2024-40477 | CRITICAL | 9.8 | 0.8% | Aug 12, 2024 | A SQL injection vulnerability in "/oahms/admin/forgot-password.php" in PHPGurukul Old Age Home Management System v1.0 al... |
| CVE-2024-40476 | HIGH | 8 | 0.3% | Aug 12, 2024 | A Cross-Site Request Forgery (CSRF) vulnerability was found in SourceCodester Best House Rental Management System v1.0. ... |
| CVE-2024-40475 | HIGH | 8.8 | 0.5% | Aug 12, 2024 | SourceCodester Best House Rental Management System v1.0 is vulnerable to Incorrect Access Control via /rental/payment_re... |
| CVE-2024-40474 | MEDIUM | 5.4 | 0.5% | Aug 12, 2024 | A Reflected Cross Site Scripting (XSS) vulnerability was found in "edit-cate.php" in SourceCodester House Rental Managem... |
| CVE-2024-40473 | MEDIUM | 5.4 | 0.6% | Aug 12, 2024 | A Stored Cross Site Scripting (XSS) vulnerability was found in "manage_houses.php" in SourceCodester Best House Rental M... |
| CVE-2024-40472 | CRITICAL | 9.8 | 0.6% | Aug 12, 2024 | Sourcecodester Daily Calories Monitoring Tool v1.0 is vulnerable to SQL Injection via "delete-calorie.php." |
| CVE-2024-3279 | CRITICAL | 9.1 | 0.6% | Aug 12, 2024 | An improper access control vulnerability exists in the mintplex-labs/anything-llm application, specifically within the i... |
| CVE-2024-39815 | HIGH | 7.5 | 0.8% | Aug 12, 2024 | Improper check or handling of exceptional conditions vulnerability affecting Vonets industrial wifi bridge relays ... |
| CVE-2024-39791 | CRITICAL | 9.8 | 1.1% | Aug 12, 2024 | Stack-based buffer overflow vulnerabilities affecting Vonets industrial wifi bridge relays and wifi bridge repeat... |
| CVE-2024-39338 | HIGH | 7.5 | 1.4% | Aug 12, 2024 | axios 1.7.2 allows SSRF via unexpected behavior where requests for path relative URLs get processed as protocol relative... |
| CVE-2024-38989 | CRITICAL | 9.8 | 1.1% | Aug 12, 2024 | izatop bunt v0.29.19 was discovered to contain a prototype pollution via the component /esm/qs.js. This vulnerability al... |
| CVE-2024-38219 | CRITICAL | 9 | 0.9% | Aug 12, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2024-38218 | HIGH | 7.8 | 0.6% | Aug 12, 2024 | Microsoft Edge (HTML-based) Memory Corruption Vulnerability |
| CVE-2024-38200 | MEDIUM | 6.5 | 19.7% | Aug 12, 2024 | Microsoft Office Spoofing Vulnerability |
| CVE-2024-37826 | HIGH | 7.5 | 1.2% | Aug 12, 2024 | A NULL pointer dereference in vercot Serva v4.6.0 allows attackers to cause a Denial of Service (DoS) via a crafted HTTP... |
| CVE-2024-37283 | MEDIUM | 6.5 | 0.6% | Aug 12, 2024 | An issue was discovered whereby Elastic Agent will leak secrets from the agent policy elastic-agent.yml only when the lo... |
| CVE-2024-37023 | CRITICAL | 9.9 | 1.3% | Aug 12, 2024 | Multiple OS command injection vulnerabilities affecting Vonets industrial wifi bridge relays and wifi bridge repeater... |
| CVE-2024-36518 | MEDIUM | 5.4 | 3.1% | Aug 12, 2024 | Zohocorp ManageEngine ADAudit Plus versions below 8110 are vulnerable to authenticated SQL Injection in attack surface a... |
| CVE-2024-36462 | HIGH | 7.5 | 0.9% | Aug 12, 2024 | Uncontrolled resource consumption refers to a software vulnerability where a attacker or system uses excessive resources... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now