2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-56083HIGH8.1Cognition Devin before 2024-12-12 provides write access to code by an attacker who discovers the https://vscode-randomly...
CVE-2024-11858HIGH7.8A flaw was found in Radare2, which contains a command injection vulnerability caused by insufficient input validation wh...
CVE-2024-7701HIGH7.5Use of Password Hash With Insufficient Computational Effort vulnerability in percona percona-toolkit allows Encryption B...
CVE-2024-56073HIGH7.5An issue was discovered in FastNetMon Community Edition through 1.2.7. Zero-length templates for Netflow v9 allow remote...
CVE-2024-56072HIGH7.5An issue was discovered in FastNetMon Community Edition through 1.2.7. The sFlow v5 plugin allows remote attackers to ca...
CVE-2024-55970HIGH7.5File Manager in Syncfusion Essential Studio for ASP.NET MVC before 27.1.55 has a traversal issue that is related to the ...
CVE-2024-31892HIGH7.5IBM Storage Scale GUI 5.1.9.0 through 5.1.9.6 and 5.2.0.0 through 5.2.1.1 could allow a user to perform unauthorized act...
CVE-2024-31891HIGH7.8IBM Storage Scale GUI 5.1.9.0 through 5.1.9.6 and 5.2.0.0 through 5.2.1.1 contains a local privilege escalation vulner...
CVE-2024-11721HIGH8.1The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to privilege escalation in all versions up to, and i...
CVE-2024-11711HIGH7.5The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-9698HIGH7.2The Crafthemes Demo Import plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validat...
CVE-2024-12552HIGH7.8Wacom Center WTabletServicePro Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local ...
CVE-2024-55946HIGH8.7Playloom Engine is an open-source, high-performance game development engine. Engine Beta v0.0.1 has a security vulnerabi...
CVE-2024-47892HIGH7.8Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory...
CVE-2024-46971HIGH7.8Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory...
CVE-2024-55887HIGH8.6Ucum-java is a FHIR Java library providing UCUM Services. In versions prior to 1.0.9, XML parsing performed by the UcumE...
CVE-2024-55661HIGH8.8Laravel Pulse is a real-time application performance monitoring tool and dashboard for Laravel applications. A vulnerabi...
CVE-2024-54351HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Thomas K Landis Fancy Roller Scroller fancy-roller-scroller allows St...
CVE-2024-54347HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BAKKBONE Australia...
CVE-2024-54344HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fahad Mahmood WP Q...
CVE-2024-54343HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in thehowarde Connect...
CVE-2024-54342HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in STAGGS STAGGS stag...
CVE-2024-54341HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LabelGrid LabelGri...
CVE-2024-54340HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sylviavanos Simple...
CVE-2024-54339HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jbd7 geoFlickr geo...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now