2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-43773 | CRITICAL | 9.8 | 0.5% | Sep 2, 2024 | SQL Injection in download class learning course function of Easytest Online Test Platform ver.24E01 and earlier allow re... |
| CVE-2024-43772 | CRITICAL | 9.8 | 0.5% | Sep 2, 2024 | SQL Injection in download student learning course function of Easytest Online Test Platform ver.24E01 and earlier allow ... |
| CVE-2024-45522 | CRITICAL | 9.8 | 0.5% | Sep 2, 2024 | Linen before cd37c3e does not verify that the domain is linen.dev or www.linen.dev when resetting a password. This occur... |
| CVE-2024-45508 | CRITICAL | 9.8 | 0.7% | Sep 1, 2024 | HTMLDOC before 1.9.19 has an out-of-bounds write in parse_paragraph in ps-pdf.cxx because of an attempt to strip leading... |
| CVE-2024-8368 | CRITICAL | 9.8 | 0.8% | Sep 1, 2024 | A vulnerability was found in code-projects Hospital Management System 1.0. It has been rated as critical. Affected by th... |
| CVE-2024-39747 | CRITICAL | 9.8 | 0.8% | Aug 31, 2024 | IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 uses default credentials for potentially critical functi... |
| CVE-2024-8348 | CRITICAL | 9.8 | 0.6% | Aug 30, 2024 | A vulnerability, which was classified as critical, has been found in SourceCodester Computer Laboratory Management Syste... |
| CVE-2024-8347 | CRITICAL | 9.8 | 0.6% | Aug 30, 2024 | A vulnerability classified as critical was found in SourceCodester Computer Laboratory Management System 1.0. Affected b... |
| CVE-2024-8346 | CRITICAL | 9.8 | 0.6% | Aug 30, 2024 | A vulnerability classified as critical has been found in SourceCodester Computer Laboratory Management System 1.0. Affec... |
| CVE-2024-8345 | CRITICAL | 9.8 | 0.6% | Aug 30, 2024 | A vulnerability was found in SourceCodester Music Gallery Site 1.0 and classified as critical. Affected by this issue is... |
| CVE-2024-8343 | CRITICAL | 9.8 | 0.7% | Aug 30, 2024 | A vulnerability, which was classified as critical, was found in SourceCodester Sentiment Based Movie Rating System 1.0. ... |
| CVE-2024-8341 | CRITICAL | 9.8 | 0.7% | Aug 30, 2024 | A vulnerability classified as critical was found in SourceCodester Petshop Management System 1.0. This vulnerability aff... |
| CVE-2024-8340 | CRITICAL | 9.8 | 0.7% | Aug 30, 2024 | A vulnerability classified as critical has been found in SourceCodester Electric Billing Management System 1.0. This aff... |
| CVE-2024-8339 | CRITICAL | 9.8 | 0.6% | Aug 30, 2024 | A vulnerability was found in SourceCodester Electric Billing Management System 1.0. It has been rated as critical. Affec... |
| CVE-2024-8336 | CRITICAL | 9.8 | 0.6% | Aug 30, 2024 | A vulnerability classified as critical was found in SourceCodester Music Gallery Site 1.0. Affected by this vulnerabilit... |
| CVE-2024-8335 | CRITICAL | 9.8 | 0.6% | Aug 30, 2024 | A vulnerability classified as critical has been found in OpenRapid RapidCMS up to 1.3.1. Affected is an unknown function... |
| CVE-2024-8332 | CRITICAL | 9.8 | 0.6% | Aug 30, 2024 | A vulnerability was found in master-nan Sweet-CMS up to 5f441e022b8876f07cde709c77b5be6d2f262e3f. It has been declared a... |
| CVE-2024-8331 | CRITICAL | 9.8 | 0.6% | Aug 30, 2024 | A vulnerability was found in OpenRapid RapidCMS up to 1.3.1. It has been classified as critical. This affects an unknown... |
| CVE-2024-3673 | CRITICAL | 9.1 | 5.6% | Aug 30, 2024 | The Web Directory Free WordPress plugin before 1.7.3 does not validate a parameter before using it in an include(), whic... |
| CVE-2024-45492 | CRITICAL | 9.8 | 1.4% | Aug 30, 2024 | An issue was discovered in libexpat before 2.6.3. nextScaffoldPart in xmlparse.c can have an integer overflow for m_grou... |
| CVE-2024-45491 | CRITICAL | 9.8 | 1.1% | Aug 30, 2024 | An issue was discovered in libexpat before 2.6.3. dtdCopy in xmlparse.c can have an integer overflow for nDefaultAtts on... |
| CVE-2024-45488 | CRITICAL | 9.8 | 50.2% | Aug 30, 2024 | One Identity Safeguard for Privileged Passwords before 7.5.2 allows unauthorized access because of an issue related to c... |
| CVE-2024-8234 | CRITICAL | 9.8 | 4.4% | Aug 30, 2024 | ** UNSUPPORTED WHEN ASSIGNED ** A command injection vulnerability in the functions formSysCmd(), formUpgradeCert(), and ... |
| CVE-2024-6671 | CRITICAL | 9.8 | 14.9% | Aug 29, 2024 | In WhatsUp Gold versions released before 2024.0.0, if the application is configured with only a single user, a SQL Injec... |
| CVE-2024-6670 | CRITICAL | 9.8 | 94.7% | Aug 29, 2024 | In WhatsUp Gold versions released before 2024.0.0, a SQL Injection vulnerability allows an unauthenticated attacker to r... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now