6.1
    Medium

    CVE-2024-24136

    Last Modified: 20 Jun 2025

    The 'Your Name' field in the Submit Score section of Sourcecodester Math Game with Leaderboard v1.0 is vulnerable to Cross-Site Scripting (XSS) attacks.

    Published:29 Jan 2024
    6.1
    Medium

    CVE-2024-24135

    Last Modified: 5 Jun 2025

    Product Name and Product Code in the 'Add Product' section of Sourcecodester Product Inventory with Export to Excel 1.0 are vulnerable to XSS attacks.

    Published:29 Jan 2024
    4.8
    Medium

    CVE-2024-24134

    Last Modified: 29 May 2025

    Sourcecodester Online Food Menu 1.0 is vulnerable to Cross Site Scripting (XSS) via the 'Menu Name' and 'Description' fields in the Update Menu section.

    Published:29 Jan 2024
    6.1
    Medium

    CVE-2024-24035

    Last Modified: 13 May 2025

    Cross Site Scripting (XSS) vulnerability in Setor Informatica SIL 3.1 allows attackers to run arbitrary code via the hmessage parameter.

    Published:7 Mar 2024
    6.1
    Medium

    CVE-2024-24034

    Last Modified: 16 Jun 2025

    Setor Informatica S.I.L version 3.0 is vulnerable to Open Redirect via the hprinter parameter, allows remote attackers to execute arbitrary code.

    Published:8 Feb 2024
    9.6
    Critical

    CVE-2024-23998

    Last Modified: 21 Nov 2024

    goanother Another Redis Desktop Manager =<1.6.1 is vulnerable to Cross Site Scripting (XSS) via src/components/Setting.vue.

    Published:5 Jul 2024
    9.6
    Critical

    CVE-2024-23997

    Last Modified: 21 Nov 2024

    Lukas Bach yana =<1.0.16 is vulnerable to Cross Site Scripting (XSS) via src/electron-main.ts.

    Published:5 Jul 2024
    6.1
    Medium

    CVE-2024-23995

    Last Modified: 15 Apr 2026

    Cross Site Scripting (XSS) in Beekeeper Studio 4.1.13 and earlier allows remote attackers to execute arbitrary code in the column name of a database table in tabulator-popup-container.

    Published:29 Apr 2024
    6.8
    Medium

    CVE-2024-23922

    Last Modified: 8 Apr 2025

    Sony XAV-AX5500 Insufficient Firmware Update Validation Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Sony XAV-AX5500 devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of software updates. The issue results from the lack of proper validation of software update packages. An attacker can leverage this vulnerability to execute code in the context of the device. Was ZDI-CAN-22939

    Source:lkushinada
    Published:23 Sept 2024
    8.8
    High

    CVE-2024-23898

    Last Modified: 20 Jun 2025

    Jenkins 2.217 through 2.441 (both inclusive), LTS 2.222.1 through 2.426.2 (both inclusive) does not perform origin validation of requests made through the CLI WebSocket endpoint, resulting in a cross-site WebSocket hijacking (CSWSH) vulnerability, allowing attackers to execute CLI commands on the Jenkins controller.

    Published:9 Jan 2024
    9.8
    Critical

    CVE-2024-23897

    Last Modified: 15 Apr 2024

    Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an '@' character followed by a file path in an argument with the file's contents, allowing unauthenticated attackers to read arbitrary files on the Jenkins controller file system.

    Source:Matisse Beckandt
    Published:9 Jan 2024
    Unknown

    CVE-2024-23780

    https://github.com/HazardLab-IO/CVE-2024-23780

    7.8
    High

    CVE-2024-23774

    Last Modified: 15 Apr 2026

    An issue was discovered in Quest KACE Agent for Windows 12.0.38 and 13.1.23.0. An unquoted Windows search path vulnerability exists in the KSchedulerSvc.exe and AMPTools.exe components. This allows local attackers to execute code of their choice with NT Authority\SYSTEM privileges.

    Published:30 Apr 2024
    7.8
    High

    CVE-2024-23773

    Last Modified: 15 Apr 2026

    An issue was discovered in Quest KACE Agent for Windows 12.0.38 and 13.1.23.0. An Arbitrary file delete vulnerability exists in the KSchedulerSvc.exe component. Local attackers can delete any file of their choice with NT Authority\SYSTEM privileges.

    Published:30 Apr 2024
    6.6
    Medium

    CVE-2024-23772

    Last Modified: 15 Apr 2026

    An issue was discovered in Quest KACE Agent for Windows 12.0.38 and 13.1.23.0. An Arbitrary file create vulnerability exists in the KSchedulerSvc.exe, KUserAlert.exe, and Runkbot.exe components. This allows local attackers to create any file of their choice with NT Authority\SYSTEM privileges.

    Published:30 Apr 2024
    7.8
    High

    CVE-2024-23749

    Last Modified: 14 Mar 2024

    KiTTY versions 0.76.1.13 and before is vulnerable to command injection via the filename variable, occurs due to insufficient input sanitization and validation, failure to escape special characters, and insecure system calls (at lines 2369-2390). This allows an attacker to add inputs inside the filename variable, leading to arbitrary code execution.

    Source:DEFCESCO
    Published:9 Feb 2024
    7.5
    High

    CVE-2024-23747

    Last Modified: 20 Jun 2025

    The Moderna Sistemas ModernaNet Hospital Management System 2024 is susceptible to an Insecure Direct Object Reference (IDOR) vulnerability. This vulnerability resides in the system's handling of user data access through a /Modernanet/LAUDO/LAU0000100/Laudo?id= URI. By manipulating this id parameter, an attacker can gain access to sensitive medical information.

    Published:29 Jan 2024
    9.8
    Critical

    CVE-2024-23746

    Last Modified: 4 Jun 2025

    Miro Desktop 0.8.18 on macOS allows local Electron code injection via a complex series of steps that might be usable in some environments (bypass a kTCCServiceSystemPolicyAppBundles requirement via a file copy, an app.app/Contents rename, an asar modification, and a rename back to app.app/Contents).

    Published:2 Feb 2024
    9.8
    Critical

    CVE-2024-23745

    Last Modified: 21 Nov 2024

    In Notion Web Clipper 1.0.3(7), a .nib file is susceptible to the Dirty NIB attack. NIB files can be manipulated to execute arbitrary commands. Additionally, even if a NIB file is modified within an application, Gatekeeper may still permit the execution of the application, enabling the execution of arbitrary commands within the application's context. NOTE: the vendor's perspective is that this is simply an instance of CVE-2022-48505, cannot properly be categorized as a product-level vulnerability, and cannot have a product-level fix because it is about incorrect caching of file signatures on macOS.

    Published:31 Jan 2024
    3.3
    Low

    CVE-2024-23743

    Last Modified: 21 Nov 2024

    Notion through 3.1.0 on macOS might allow code execution because of RunAsNode and enableNodeClilnspectArguments. NOTE: the vendor states "the attacker must launch the Notion Desktop application with nonstandard flags that turn the Electron-based application into a Node.js execution environment."

    Published:28 Jan 2024
    9.8
    Critical

    CVE-2024-23742

    Last Modified: 21 Nov 2024

    An issue in Loom on macOS version 0.196.1 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings. NOTE: the vendor disputes this because it requires local access to a victim's machine.

    Published:28 Jan 2024
    9.8
    Critical

    CVE-2024-23741

    Last Modified: 3 Jun 2025

    An issue in Hyper on macOS version 3.4.1 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.

    Published:28 Jan 2024
    9.8
    Critical

    CVE-2024-23740

    Last Modified: 16 Jun 2025

    An issue in Kap for macOS version 3.6.0 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.

    Published:28 Jan 2024
    9.8
    Critical

    CVE-2024-23739

    Last Modified: 29 May 2025

    An issue in Discord for macOS version 0.0.291 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.

    Published:28 Jan 2024
    9.8
    Critical

    CVE-2024-23738

    Last Modified: 21 Nov 2024

    An issue in Postman version 10.22 and before on macOS allows a remote attacker to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings. NOTE: the vendor states "we dispute the report's accuracy ... the configuration does not enable remote code execution.."

    Published:28 Jan 2024
    7.5
    High

    CVE-2024-23733

    Last Modified: 16 Apr 2025

    The /WmAdmin/,/invoke/vm.server/login login page in the Integration Server in Software AG webMethods 10.15.0 before Core_Fix7 allows remote attackers to reach the administration panel and discover hostname and version information by sending an arbitrary username and a blank password to the /WmAdmin/#/login/ URI.

    Source:Rasime Ekici
    Published:29 Jan 2025
    6.1
    Medium

    CVE-2024-23729

    Last Modified: 20 Aug 2024

    The ColorOS Internet Browser com.heytap.browser application 45.10.3.4.1 for Android allows a remote attacker to execute arbitrary JavaScript code via the com.android.browser.RealBrowserActivity component.

    Published:19 Aug 2024
    8.4
    High

    CVE-2024-23727

    Last Modified: 15 Apr 2026

    The YI Smart Kami Vision com.kamivision.yismart application through 1.0.0_20231219 for Android allows a remote attacker to execute arbitrary JavaScript code via an implicit intent to the com.ants360.yicamera.activity.WebViewActivity component.

    Published:28 Mar 2024
    9
    Critical

    CVE-2024-23724

    Last Modified: 21 Nov 2024

    Ghost through 5.76.0 allows stored XSS, and resultant privilege escalation in which a contributor can take over any account, via an SVG profile picture that contains JavaScript code to interact with the API on localhost TCP port 3001. NOTE: The discoverer reports that "The vendor does not view this as a valid vector."

    Published:11 Feb 2024
    7.5
    High

    CVE-2024-23722

    Last Modified: 30 Apr 2025

    In Fluent Bit 2.1.8 through 2.2.1, a NULL pointer dereference can be caused via an invalid HTTP payload with the content type of x-www-form-urlencoded. It crashes and does not restart. This could result in logs not being delivered properly.

    Published:26 Mar 2024
    6.5
    Medium

    CVE-2024-23709

    Last Modified: 17 Dec 2024

    In multiple locations, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.

    Published:7 May 2024
    9.8
    Critical

    CVE-2024-23708

    Last Modified: 16 Dec 2025

    In multiple functions of NotificationManagerService.java, there is a possible way to not show a toast message when a clipboard message has been accessed. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published:7 May 2024
    Unknown

    CVE-2024-23700

    https://github.com/canyie/CVE-2024-23700

    9.8
    Critical

    CVE-2024-23692

    Last Modified: 13 Apr 2025

    Rejetto HTTP File Server, up to and including version 2.3m, is vulnerable to a template injection vulnerability. This vulnerability allows a remote, unauthenticated attacker to execute arbitrary commands on the affected system by sending a specially crafted HTTP request. As of the CVE assignment date, Rejetto HFS 2.3m is no longer supported.

    Source:VeryLazyTech
    Published:31 May 2024
    8.5
    High

    CVE-2024-23673

    Last Modified: 9 May 2025

    Malicious code execution via path traversal in Apache Software Foundation Apache Sling Servlets Resolver.This issue affects all version of Apache Sling Servlets Resolver before 2.11.0. However, whether a system is vulnerable to this attack depends on the exact configuration of the system. If the system is vulnerable, a user with write access to the repository might be able to trick the Sling Servlet Resolver to load a previously uploaded script.  Users are recommended to upgrade to version 2.11.0, which fixes this issue. It is recommended to upgrade, regardless of whether your system configuration currently allows this attack or not.

    Published:6 Feb 2024
    7.1
    High

    CVE-2024-23666

    Last Modified: 21 Jan 2025

    A client-side enforcement of server-side security in Fortinet FortiAnalyzer-BigData at least version 7.4.0 and 7.2.0 through 7.2.6 and 7.0.1 through 7.0.6 and 6.4.5 through 6.4.7 and 6.2.5, FortiManager version 7.4.0 through 7.4.1 and 7.2.0 through 7.2.4 and 7.0.0 through 7.0.11 and 6.4.0 through 6.4.14, FortiAnalyzer version 7.4.0 through 7.4.1 and 7.2.0 through 7.2.4 and 7.0.0 through 7.0.11 and 6.4.0 through 6.4.14 allows attacker to improper access control via crafted requests.

    Published:12 Nov 2024
    6.1
    Medium

    CVE-2024-23659

    Last Modified: 2 Jun 2025

    SPIP before 4.1.14 and 4.2.x before 4.2.8 allows XSS via the name of an uploaded file. This is related to javascript/bigup.js and javascript/bigup.utils.js.

    Published:19 Jan 2024
    9.8
    Critical

    CVE-2024-23653

    Last Modified: 21 Nov 2024

    BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. In addition to running containers as build steps, BuildKit also provides APIs for running interactive containers based on built images. It was possible to use these APIs to ask BuildKit to run a container with elevated privileges. Normally, running such containers is only allowed if special `security.insecure` entitlement is enabled both by buildkitd configuration and allowed by the user initializing the build request. The issue has been fixed in v0.12.5 . Avoid using BuildKit frontends from untrusted sources.

    Published:31 Jan 2024
    10
    Critical

    CVE-2024-23652

    Last Modified: 17 Jun 2025

    BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. A malicious BuildKit frontend or Dockerfile using RUN --mount could trick the feature that removes empty files created for the mountpoints into removing a file outside the container, from the host system. The issue has been fixed in v0.12.5. Workarounds include avoiding using BuildKit frontends from an untrusted source or building an untrusted Dockerfile containing RUN --mount feature.

    Published:31 Jan 2024
    4.9
    Medium

    CVE-2024-23443

    Last Modified: 21 Nov 2024

    A high-privileged user, allowed to create custom osquery packs 17 could affect the availability of Kibana by uploading a maliciously crafted osquery pack.

    Published:14 Jun 2024
    9.4
    Critical

    CVE-2024-23346

    Last Modified: 15 Apr 2025

    Pymatgen (Python Materials Genomics) is an open-source Python library for materials analysis. A critical security vulnerability exists in the `JonesFaithfulTransformation.from_transformation_str()` method within the `pymatgen` library prior to version 2024.2.20. This method insecurely utilizes `eval()` for processing input, enabling execution of arbitrary code when parsing untrusted input. Version 2024.2.20 fixes this issue.

    Source:Mohammed Idrees Banyamer
    Published:21 Feb 2024
    6.3
    Medium

    CVE-2024-23339

    Last Modified: 17 Jun 2025

    hoolock is a suite of lightweight utilities designed to maintain a small footprint when bundled. Starting in version 2.0.0 and prior to version 2.2.1, utility functions related to object paths (`get`, `set`, and `update`) did not block attempts to access or alter object prototypes. Starting in version 2.2.1, the `get`, `set` and `update` functions throw a `TypeError` when a user attempts to access or alter inherited properties.

    Published:22 Jan 2024
    5.9
    Medium

    CVE-2024-23334

    Last Modified: 4 Feb 2026

    aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. When using aiohttp as a web server and configuring static routes, it is necessary to specify the root path for static files. Additionally, the option 'follow_symlinks' can be used to determine whether to follow symbolic links outside the static root directory. When 'follow_symlinks' is set to True, there is no validation to check if reading a file is within the root directory. This can lead to directory traversal vulnerabilities, resulting in unauthorized access to arbitrary files on the system, even when symlinks are not present. Disabling follow_symlinks and using a reverse proxy are encouraged mitigations. Version 3.9.2 fixes this issue.

    Source:Beatriz Fresno Naumova
    Published:29 Jan 2024
    4.3
    Medium

    CVE-2024-23298

    Last Modified: 2 Apr 2026

    A logic issue was addressed with improved state management. This issue is fixed in Xcode 15.3. An app may bypass Gatekeeper checks.

    Published:15 Mar 2024
    7.8
    High

    CVE-2024-23296

    Last Modified: 3 Apr 2026

    A memory corruption issue was addressed with improved validation. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.4 and iPadOS 17.4, macOS Monterey 12.7.6, macOS Sonoma 14.4, macOS Ventura 13.6.7, tvOS 17.4, visionOS 1.1, watchOS 10.4. An attacker with arbitrary kernel read and write capability may be able to bypass kernel memory protections. Apple is aware of a report that this issue may have been exploited.

    Published:5 Mar 2024
    8.8
    High

    CVE-2024-23222

    Last Modified: 3 Apr 2026

    A type confusion issue was addressed with improved checks. This issue is fixed in Safari 17.3, iOS 15.8.7 and iPadOS 15.8.7, iOS 16.7.5 and iPadOS 16.7.5, iOS 17.3 and iPadOS 17.3, macOS Monterey 12.7.3, macOS Sonoma 14.3, macOS Ventura 13.6.4, tvOS 17.3, visionOS 1.0.2. Processing maliciously crafted web content may lead to arbitrary code execution. This fix associated with the Coruna exploit was shipped in iOS 17.3 on January 22, 2024. This update brings that fix to devices that cannot update to the latest iOS version.

    Published:23 Jan 2024
    7.8
    High

    CVE-2024-23208

    Last Modified: 2 Apr 2026

    The issue was addressed with improved memory handling. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, tvOS 17.3, watchOS 10.3. An app may be able to execute arbitrary code with kernel privileges.

    Published:23 Jan 2024
    9.8
    Critical

    CVE-2024-23113

    Last Modified: 24 Oct 2025

    A use of externally-controlled format string in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, FortiProxy versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 7.0.14, FortiPAM versions 1.2.0, 1.1.0 through 1.1.2, 1.0.0 through 1.0.3, FortiSwitchManager versions 7.2.0 through 7.2.3, 7.0.0 through 7.0.3 allows attacker to execute unauthorized code or commands via specially crafted packets.

    Published:15 Feb 2024
    9.7
    Critical

    CVE-2024-23108

    Last Modified: 14 Jan 2026

    An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet allows attacker to execute unauthorized code or commands via via crafted API requests.

    Published:5 Feb 2024
    Unknown

    CVE-2024-23002

    https://github.com/xiaomaoxxx/CVE-2024-23002

    Items Per Page