2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-39226CRITICAL9.8GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/...
CVE-2024-39225CRITICAL9.8GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/...
CVE-2024-23483CRITICAL9.8An Improper Input Validation vulnerability in Zscaler Client Connector on MacOS allows OS Command Injection. This issue ...
CVE-2024-33897CRITICAL9.1A compromised HMS Networks Cosy+ device could be used to request a Certificate Signing Request from Talk2m for another d...
CVE-2024-30170CRITICAL9.1PrivX before 34.0 allows data exfiltration and denial of service via the REST API. This is fixed in minor versions 33.1,...
CVE-2024-7519CRITICAL9.6Insufficient checks when processing graphics shared memory could have led to memory corruption. This could be leveraged ...
CVE-2024-6359CRITICAL9.8Privilege escalation vulnerability identified in OpenText ArcSight Intelligence.
CVE-2024-33974CRITICAL9.8SQL injection vulnerability in PayPal, Credit Card and Debit Card Payment affecting version 1.0. An attacker could explo...
CVE-2024-33960CRITICAL9.8SQL injection vulnerability in PayPal, Credit Card and Debit Card Payment affecting version 1.0. An attacker could explo...
CVE-2024-6202CRITICAL9.8HaloITSM versions up to 2.146.1 are affected by a SAML XML Signature Wrapping (XSW) vulnerability. When having a SAML in...
CVE-2024-7505CRITICAL9.8A vulnerability, which was classified as critical, was found in itsourcecode Bike Delivery System 1.0. Affected is an un...
CVE-2024-7500CRITICAL9.8A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been rated as critical. Affected by thi...
CVE-2024-6886CRITICAL10Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Gitea Gitea...
CVE-2024-6782CRITICAL9.8Improper access control in Calibre 6.9.0 ~ 7.14.0 allow unauthenticated attackers to achieve remote code execution.
CVE-2024-7499CRITICAL9.8A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been declared as critical. Affected by ...
CVE-2024-7498CRITICAL9.8A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been classified as critical. Affected i...
CVE-2024-5828CRITICAL9.8Expression Language Injection vulnerability in Hitachi Tuning Manager on Windows, Linux, Solaris allows Code Injection.T...
CVE-2024-7495CRITICAL9.8A vulnerability, which was classified as critical, was found in itsourcecode Laravel Accounting System 1.0. This affects...
CVE-2024-7494CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Clinics Patient Management System 1....
CVE-2024-6915CRITICAL9.3JFrog Artifactory versions below 7.90.6, 7.84.20, 7.77.14, 7.71.23, 7.68.22, 7.63.22, 7.59.23, 7.55.18 are vulnerable to...
CVE-2024-42009CRITICAL9.3A Cross-Site Scripting vulnerability in Roundcube through 1.5.7 and 1.6.x through 1.6.7 allows a remote attacker to stea...
CVE-2024-42008CRITICAL9.3A Cross-Site Scripting vulnerability in rcmail_action_mail_get->run() in Roundcube through 1.5.7 and 1.6.x through 1.6.7...
CVE-2024-40498CRITICAL9.8SQL Injection vulnerability in PuneethReddyHC Online Shopping sysstem advanced v.1.0 allows an attacker to execute arbit...
CVE-2024-7397CRITICAL9.3Improper filering of special characters result in a command ('command injection') vulnerability in Korenix JetPort 5601v...
CVE-2024-7395CRITICAL9.3An authentication bypass vulnerability in Korenix JetPort 5601v3 allows an attacker to access functionality on the devic...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now