2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12752 | HIGH | 7.8 | 0.3% | Dec 30, 2024 | Foxit PDF Reader AcroForm Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attack... |
| CVE-2024-12751 | HIGH | 7.8 | 0.4% | Dec 30, 2024 | Foxit PDF Reader AcroForm Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attac... |
| CVE-2024-11944 | HIGH | 8.8 | 1.6% | Dec 30, 2024 | iXsystems TrueNAS CORE tarfile.extractall Directory Traversal Remote Code Execution Vulnerability. This vulnerability al... |
| CVE-2024-56800 | HIGH | 7.4 | 0.3% | Dec 30, 2024 | Firecrawl is a web scraper that allows users to extract the content of a webpage for a large language model. Versions pr... |
| CVE-2024-12836 | HIGH | 7.8 | 0.3% | Dec 30, 2024 | Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability all... |
| CVE-2024-12835 | HIGH | 7.8 | 0.3% | Dec 30, 2024 | Delta Electronics DRASimuCAD ICS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerabilit... |
| CVE-2024-12834 | HIGH | 7.8 | 0.4% | Dec 30, 2024 | Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability all... |
| CVE-2024-12828 | HIGH | 8.8 | 32.0% | Dec 30, 2024 | Webmin CGI Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute ... |
| CVE-2024-50703 | HIGH | 8.1 | 0.4% | Dec 30, 2024 | TeamPass before 3.1.3.1 does not properly prevent a user from acting with the privileges of a different user_id. |
| CVE-2024-54181 | HIGH | 7.2 | 1.0% | Dec 30, 2024 | IBM WebSphere Automation 1.7.5 could allow a remote privileged user, who has authorized access to the swagger UI, to exe... |
| CVE-2024-47925 | HIGH | 7.5 | 0.5% | Dec 30, 2024 | Tecnick TCExam – Multiple CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2024-47924 | HIGH | 7.5 | 0.5% | Dec 30, 2024 | Boa web server – CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2024-47922 | HIGH | 7.5 | 0.5% | Dec 30, 2024 | Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor |
| CVE-2024-47921 | HIGH | 8.4 | 0.2% | Dec 30, 2024 | Smadar SPS – CWE-327: Use of a Broken or Risky Cryptographic Algorithm |
| CVE-2024-47920 | HIGH | 7.5 | 0.5% | Dec 30, 2024 | Tiki Wiki CMS – CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2024-47917 | HIGH | 7.5 | 0.5% | Dec 30, 2024 | CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2024-13039 | HIGH | 8.8 | 0.5% | Dec 30, 2024 | A vulnerability was found in code-projects Simple Chat System 1.0. It has been rated as critical. Affected by this issue... |
| CVE-2024-13036 | HIGH | 7.5 | 0.3% | Dec 30, 2024 | A vulnerability was found in code-projects Chat System 1.0 and classified as critical. This issue affects some unknown p... |
| CVE-2024-13034 | HIGH | 7.6 | 0.4% | Dec 30, 2024 | A vulnerability, which was classified as problematic, was found in code-projects Chat System 1.0. This affects an unknow... |
| CVE-2024-13029 | HIGH | 8.8 | 0.5% | Dec 30, 2024 | A vulnerability, which was classified as problematic, was found in Antabot White-Jotter up to 0.2.2. Affected is an unkn... |
| CVE-2024-13025 | HIGH | 8.8 | 0.6% | Dec 29, 2024 | A vulnerability was found in Codezips College Management System 1.0. It has been classified as critical. Affected is an ... |
| CVE-2024-13020 | HIGH | 8.8 | 0.4% | Dec 29, 2024 | A vulnerability classified as critical was found in code-projects Chat System 1.0. Affected by this vulnerability is an ... |
| CVE-2024-56740 | HIGH | 7.8 | 0.2% | Dec 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: nfs/localio: must clear res.replen in nfs_local_rea... |
| CVE-2024-56721 | HIGH | 7.1 | 0.2% | Dec 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: x86/CPU/AMD: Terminate the erratum_1386_microcode a... |
| CVE-2024-56737 | HIGH | 8.8 | 0.7% | Dec 29, 2024 | GNU GRUB (aka GRUB2) through 2.12 has a heap-based buffer overflow in fs/hfs.c via crafted sblock data in an HFS filesys... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now