2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-40522 | HIGH | 8.8 | 1.2% | Jul 12, 2024 | There is a remote code execution vulnerability in SeaCMS 12.9. The vulnerability is caused by phomebak.php writing some ... |
| CVE-2024-40521 | HIGH | 8.8 | 1.3% | Jul 12, 2024 | SeaCMS 12.9 has a remote code execution vulnerability. The vulnerability is due to the fact that although admin_template... |
| CVE-2024-40520 | HIGH | 8.8 | 1.1% | Jul 12, 2024 | SeaCMS 12.9 has a remote code execution vulnerability. The vulnerability is caused by admin_config_mark.php directly spl... |
| CVE-2024-40519 | HIGH | 8.8 | 1.1% | Jul 12, 2024 | SeaCMS 12.9 has a remote code execution vulnerability. The vulnerability is caused by admin_smtp.php directly splicing a... |
| CVE-2024-40518 | HIGH | 8.8 | 1.2% | Jul 12, 2024 | SeaCMS 12.9 has a remote code execution vulnerability. The vulnerability is caused by admin_weixin.php directly splicing... |
| CVE-2024-39917 | CRITICAL | 9.8 | 0.6% | Jul 12, 2024 | xrdp is an open source RDP server. xrdp versions prior to 0.10.0 have a vulnerability that allows attackers to make an i... |
| CVE-2024-38736 | CRITICAL | 9.1 | 0.5% | Jul 12, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Realtyna Realtyna Organic IDX plugin allows Code Inject... |
| CVE-2024-38735 | HIGH | 7.5 | 0.5% | Jul 12, 2024 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2024-38734 | CRITICAL | 9.1 | 0.5% | Jul 12, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in SpreadsheetConverter Import Spreadsheets from Microsoft... |
| CVE-2024-38717 | HIGH | 7.1 | 0.4% | Jul 12, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Booking Ultra Pro allows... |
| CVE-2024-38716 | MEDIUM | 6.5 | 0.5% | Jul 12, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Blue Plugins Events Cale... |
| CVE-2024-37405 | MEDIUM | 6.5 | 0.5% | Jul 12, 2024 | Livechat messages can be leaked by combining two NoSQL injections affecting livechat:loginByToken (pre-authentication) a... |
| CVE-2024-39916 | MEDIUM | 6.4 | 0.3% | Jul 12, 2024 | FOG is a free open-source cloning/imaging/rescue suite/inventory management system. There is a security issue with the N... |
| CVE-2024-39914 | CRITICAL | 9.8 | 23.4% | Jul 12, 2024 | FOG is a cloning/imaging/rescue suite/inventory management system. Prior to 1.5.10.34, packages/web/lib/fog/reportmaker.... |
| CVE-2024-39909 | MEDIUM | 6.5 | 0.4% | Jul 12, 2024 | KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulnerabilities of container... |
| CVE-2024-39903 | HIGH | 7.5 | 2.9% | Jul 12, 2024 | Solara is a pure Python, React-style framework for scaling Jupyter and web apps. A Local File Inclusion (LFI) vulnerabil... |
| CVE-2024-38715 | MEDIUM | 6.5 | 0.5% | Jul 12, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ExS ExS Widgets allows P... |
| CVE-2024-38709 | MEDIUM | 5.3 | 0.5% | Jul 12, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Milan Petrovic GD Rating... |
| CVE-2024-38706 | HIGH | 8.8 | 0.7% | Jul 12, 2024 | Path Traversal: '.../...//' vulnerability in DevItems HT Mega ht-mega-for-elementor.This issue affects HT Mega: from n/a... |
| CVE-2024-38704 | MEDIUM | 6.5 | 0.5% | Jul 12, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in DynamicWebLab WordPress ... |
| CVE-2024-38700 | MEDIUM | 6.5 | 0.3% | Jul 12, 2024 | Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in real... |
| CVE-2024-37941 | MEDIUM | 4.3 | 0.2% | Jul 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Internal Link Juicer Internal Link Juicer: SEO Auto Linker for WordPr... |
| CVE-2024-37940 | HIGH | 7.4 | 0.2% | Jul 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Seraphinite Solutions Seraphinite Accelerator (Full, premium).This is... |
| CVE-2024-37939 | MEDIUM | 4.3 | 0.2% | Jul 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in VolThemes Patricia Lite.This issue affects Patricia Lite: from n/a th... |
| CVE-2024-37938 | MEDIUM | 4.3 | 0.2% | Jul 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in MyThemeShop SociallyViral.This issue affects SociallyViral: from n/a ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now