2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-42256CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: cifs: Fix server re-repick on subrequest retry Whe...
CVE-2024-7350CRITICAL9.8The Appointment Booking Calendar Plugin and Online Scheduling Plugin – BookingPress plugin for WordPress is vulnerable t...
CVE-2024-41912CRITICAL9.8A vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The firmware flaw...
CVE-2024-41237CRITICAL9.8A SQL injection vulnerability in /smsa/teacher_login.php in Kashipara Responsive School Management System v1.0 allows an...
CVE-2024-7585CRITICAL9.8A vulnerability has been found in Tenda i22 1.0.0.3(4687) and classified as critical. Affected by this vulnerability is ...
CVE-2024-7584CRITICAL9.8A vulnerability, which was classified as critical, was found in Tenda i22 1.0.0.3(4687). Affected is the function formAp...
CVE-2024-20454CRITICAL9.8Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco...
CVE-2024-20450CRITICAL9.8Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco...
CVE-2024-7583CRITICAL9.8A vulnerability, which was classified as critical, has been found in Tenda i22 1.0.0.3(4687). This issue affects the fun...
CVE-2024-7582CRITICAL9.8A vulnerability classified as critical was found in Tenda i22 1.0.0.3(4687). This vulnerability affects the function for...
CVE-2024-34480CRITICAL9.8SourceCodester Computer Laboratory Management System 1.0 allows admin/category/view_category.php id SQL Injection.
CVE-2024-34479CRITICAL9.8SourceCodester Computer Laboratory Management System 1.0 allows classes/Master.php id SQL Injection.
CVE-2024-7581CRITICAL9.8A vulnerability classified as critical has been found in Tenda A301 15.13.08.12. This affects the function formWifiBasic...
CVE-2024-7580CRITICAL9.8A vulnerability was found in Alien Technology ALR-F800 up to 19.10.24.00. It has been rated as critical. Affected by thi...
CVE-2024-7578CRITICAL9.8A vulnerability was found in Alien Technology ALR-F800 up to 19.10.24.00. It has been classified as critical. Affected i...
CVE-2024-6522CRITICAL9.6The Modern Events Calendar plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and ...
CVE-2024-36130CRITICAL9.8An insufficient authorization vulnerability in web component of EPMM prior to 12.1.0.1 allows an unauthorized attacker w...
CVE-2024-41270CRITICAL9.1An issue discovered in the RunHTTPServer function in Gorush v1.18.4 allows attackers to intercept and manipulate data du...
CVE-2024-42395CRITICAL9.8There is a vulnerability in the AP Certificate Management Service which could allow a threat actor to execute an unauthe...
CVE-2024-42394CRITICAL9.8There are vulnerabilities in the Soft AP Daemon Service which could allow a threat actor to execute an unauthenticated R...
CVE-2024-42393CRITICAL9.8There are vulnerabilities in the Soft AP Daemon Service which could allow a threat actor to execute an unauthenticated R...
CVE-2024-28740CRITICAL9.6Cross Site Scripting vulnerability in Koha ILS 23.05 and before allows a remote attacker to execute arbitrary code via t...
CVE-2024-39227CRITICAL9.8GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/...
CVE-2024-41616CRITICAL9.8D-Link DIR-300 REVA FIRMWARE v1.06B05_WW contains hardcoded credentials in the Telnet service.
CVE-2024-39228CRITICAL9.8GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now