2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-56346 | CRITICAL | 10 | 1.1% | Mar 18, 2025 | IBM AIX 7.2 and 7.3 nimesis NIM master service could allow a remote attacker to execute arbitrary commands due to improp... |
| CVE-2024-57170 | MEDIUM | 6.5 | 0.8% | Mar 18, 2025 | SOPlanning 1.53.00 is vulnerable to a directory traversal issue in /process/upload.php. The "fichier_to_delete" paramete... |
| CVE-2024-57169 | CRITICAL | 9.8 | 0.9% | Mar 18, 2025 | A file upload bypass vulnerability exists in SOPlanning 1.53.00, specifically in /process/upload.php. This vulnerability... |
| CVE-2024-49822 | MEDIUM | 4.1 | 0.3% | Mar 18, 2025 | IBM QRadar Advisor 1.0.0 through 2.6.5 is vulnerable to server-side request forgery (SSRF). This may allow an authentica... |
| CVE-2024-44314 | MEDIUM | 6.5 | 0.3% | Mar 18, 2025 | TastyIgniter 3.7.6 contains an Incorrect Access Control vulnerability in the Orders Management System, allowing unauthor... |
| CVE-2024-44313 | HIGH | 8.1 | 0.6% | Mar 18, 2025 | TastyIgniter 3.7.6 contains an Incorrect Access Control vulnerability in the invoice() function within Orders.php which ... |
| CVE-2024-8997 | CRITICAL | 9.8 | 0.4% | Mar 18, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Vestel EVC04 Confi... |
| CVE-2024-21760 | HIGH | 8.4 | 0.7% | Mar 18, 2025 | An improper control of generation of code ('Code Injection') vulnerability [CWE-94] in FortiSOAR Connector FortiSOAR 7.4... |
| CVE-2024-41975 | MEDIUM | 5.3 | 0.4% | Mar 18, 2025 | An unauthenticated remote attacker can gain limited information of the PLC network but the user management of the PLCs p... |
| CVE-2024-23943 | CRITICAL | 9.1 | 0.6% | Mar 18, 2025 | An unauthenticated remote attacker can gain access to the cloud API due to a lack of authentication for a critical funct... |
| CVE-2024-23942 | HIGH | 7.1 | 0.1% | Mar 18, 2025 | A local user may find a configuration file on the client workstation with unencrypted sensitive data. This allows an att... |
| CVE-2024-56506 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2024-56505 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2024-56504 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2024-56503 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2024-56502 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2024-56501 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2024-56500 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2024-56499 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2024-56498 | — | — | — | Mar 17, 2025 | Rejected reason: Not used |
| CVE-2024-40635 | HIGH | 7.8 | 0.3% | Mar 17, 2025 | containerd is an open-source container runtime. A bug was found in containerd prior to versions 1.6.38, 1.7.27, and 2.0.... |
| CVE-2024-54565 | MEDIUM | 6.2 | 0.2% | Mar 17, 2025 | The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2. An app may be able to access se... |
| CVE-2024-54559 | MEDIUM | 5.5 | 0.2% | Mar 17, 2025 | The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2. An app may be able to access se... |
| CVE-2024-54525 | HIGH | 8.8 | 0.5% | Mar 17, 2025 | A logic issue was addressed with improved file handling. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia ... |
| CVE-2024-44276 | HIGH | 7.3 | 0.2% | Mar 17, 2025 | This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in iOS 18.2 and i... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now