2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-8146 | CRITICAL | 9.8 | 0.6% | Aug 25, 2024 | A vulnerability has been found in code-projects Pharmacy Management System 1.0 and classified as critical. This vulnerab... |
| CVE-2024-8139 | CRITICAL | 9.8 | 0.6% | Aug 25, 2024 | A vulnerability has been found in itsourcecode E-Commerce Website 1.0 and classified as critical. Affected by this vulne... |
| CVE-2024-8138 | CRITICAL | 9.8 | 0.6% | Aug 25, 2024 | A vulnerability, which was classified as critical, was found in code-projects Pharmacy Management System 1.0. Affected i... |
| CVE-2024-45237 | CRITICAL | 9.8 | 0.4% | Aug 24, 2024 | An issue was discovered in Fort before 1.6.3. A malicious RPKI repository that descends from a (trusted) Trust Anchor ca... |
| CVE-2024-8135 | CRITICAL | 9.8 | 0.5% | Aug 24, 2024 | A vulnerability classified as critical has been found in Go-Tribe gotribe up to cd3ccd32cd77852c9ea73f986eaf8c301cfb6310... |
| CVE-2024-8134 | CRITICAL | 9.8 | 7.9% | Aug 24, 2024 | A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-32... |
| CVE-2024-8133 | CRITICAL | 9.8 | 7.9% | Aug 24, 2024 | A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-32... |
| CVE-2024-8132 | CRITICAL | 9.8 | 22.8% | Aug 24, 2024 | A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-32... |
| CVE-2024-8131 | CRITICAL | 9.8 | 8.2% | Aug 24, 2024 | A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-32... |
| CVE-2024-8130 | CRITICAL | 9.8 | 7.9% | Aug 24, 2024 | A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, D... |
| CVE-2024-8129 | CRITICAL | 9.8 | 22.2% | Aug 24, 2024 | A vulnerability, which was classified as critical, was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, D... |
| CVE-2024-8128 | CRITICAL | 9.8 | 8.0% | Aug 24, 2024 | A vulnerability, which was classified as critical, has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-32... |
| CVE-2024-8127 | CRITICAL | 9.8 | 6.7% | Aug 24, 2024 | A vulnerability classified as critical was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DN... |
| CVE-2024-42914 | CRITICAL | 9.1 | 0.6% | Aug 23, 2024 | A host header injection vulnerability exists in the forgot password functionality of ArrowCMS version 1.0.0. By sending ... |
| CVE-2024-7954 | CRITICAL | 9.8 | 89.8% | Aug 23, 2024 | The porte_plume plugin used by SPIP before 4.30-alpha2, 4.2.13, and 4.1.16 is vulnerable to an arbitrary code execution ... |
| CVE-2024-42531 | CRITICAL | 9.8 | 0.6% | Aug 23, 2024 | Ezviz Internet PT Camera CS-CV246 D15655150 allows an unauthenticated host to access its live video stream by crafting a... |
| CVE-2024-33854 | CRITICAL | 9.1 | 0.5% | Aug 23, 2024 | A SQL Injection vulnerability exists in the Graph Template component in Centreon Web 24.04.x before 24.04.3, 23.10.x bef... |
| CVE-2024-33853 | CRITICAL | 9.1 | 0.5% | Aug 23, 2024 | A SQL Injection vulnerability exists in the Timeperiod component in Centreon Web 24.04.x before 24.04.3, 23.10.x before ... |
| CVE-2024-33852 | CRITICAL | 9.1 | 0.5% | Aug 23, 2024 | A SQL Injection vulnerability exists in the Downtime component in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23... |
| CVE-2024-32501 | CRITICAL | 9.8 | 19.2% | Aug 23, 2024 | A SQL Injection vulnerability exists in the updateServiceHost functionality in Centreon Web 24.04.x before 24.04.3, 23.1... |
| CVE-2024-44382 | CRITICAL | 9.8 | 1.5% | Aug 23, 2024 | D-Link DI_8004W 16.07.26A1 contains a command execution vulnerability in the jhttpd upgrade_filter_asp function. |
| CVE-2024-44381 | CRITICAL | 9.8 | 1.4% | Aug 23, 2024 | D-Link DI_8004W 16.07.26A1 contains a command execution vulnerability in jhttpd msp_info_htm function. |
| CVE-2024-43782 | CRITICAL | 9.8 | 0.5% | Aug 23, 2024 | This openedx-translations repository contains translation files from Open edX repositories to be kept in sync with Trans... |
| CVE-2024-42765 | CRITICAL | 9.8 | 0.7% | Aug 23, 2024 | A SQL injection vulnerability in "/login.php" of the Kashipara Bus Ticket Reservation System v1.0 allows remote attacker... |
| CVE-2024-42764 | CRITICAL | 9.4 | 0.3% | Aug 23, 2024 | Kashipara Bus Ticket Reservation System v1.0 is vulnerable to Cross Site Request Forgery (CSRF) via /deleteTicket.php. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now