2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-12485HIGH8.8A vulnerability, which was classified as critical, has been found in code-projects Online Class and Exam Scheduling Syst...
CVE-2024-12481HIGH8.8A vulnerability was found in cjbi wetech-cms 1.0/1.1/1.2. It has been declared as critical. Affected by this vulnerabili...
CVE-2024-12480HIGH8.8A vulnerability was found in cjbi wetech-cms 1.0/1.1/1.2. It has been classified as critical. Affected is the function s...
CVE-2024-12479HIGH8.8A vulnerability was found in cjbi wetech-cms 1.0/1.1/1.2 and classified as critical. This issue affects the function sea...
CVE-2024-12382HIGH8.8Use after free in Translate in Google Chrome prior to 131.0.6778.139 allowed a remote attacker to potentially exploit he...
CVE-2024-12381HIGH8.8Type Confusion in V8 in Google Chrome prior to 131.0.6778.139 allowed a remote attacker to potentially exploit heap corr...
CVE-2024-11950HIGH8.8XnSoft XnView Classic RWZ File Parsing Integer Underflow Remote Code Execution Vulnerability. This vulnerability allows ...
CVE-2024-11949HIGH8.8GFI Archiver Store Service Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability all...
CVE-2024-11947HIGH8.8GFI Archiver Core Service Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allo...
CVE-2024-11872HIGH7.8Epic Games Launcher Incorrect Default Permissions Local Privilege Escalation Vulnerability. This vulnerability allows lo...
CVE-2024-9845HIGH7.8Under specific circumstances, insecure permissions in Ivanti Automation before version 2024.4.0.1 allows a local authent...
CVE-2024-8496HIGH7.8Under specific circumstances, insecure permissions in Ivanti Workspace Control before version 10.18.40.0 allows a local ...
CVE-2024-48912HIGH8.1GLPI is a free asset and IT management software package. Starting in version 10.0.0 and prior to version 10.0.17, an aut...
CVE-2024-47761HIGH7.2GLPI is a free asset and IT management software package. Starting in version 0.80 and prior to version 10.0.17, an admin...
CVE-2024-47760HIGH8.8GLPI is a free asset and IT management software package. Starting in version 9.1.0 and prior to version 10.0.17, a techn...
CVE-2024-11598HIGH7.8Under specific circumstances, insecure permissions in Ivanti Application Control before version 2024.3 HF1, 2024.1 HF2, ...
CVE-2024-11597HIGH7.8Under specific circumstances, insecure permissions in Ivanti Performance Manager before version 2024.3 HF1, 2024.1 HF1, ...
CVE-2024-10251HIGH7.8Under specific circumstances, insecure permissions in Ivanti Security Controls before version 2024.4.1 allows a local au...
CVE-2024-47758HIGH8.8GLPI is a free asset and IT management software package. Starting in version 9.3.0 and prior to version 10.0.17, an auth...
CVE-2024-28139HIGH8.8The www-data user can elevate its privileges because sudo is configured to allow the execution of the mount command as r...
CVE-2024-11840HIGH7.1The RapidLoad – Optimize Web Vitals Automatically plugin for WordPress is vulnerable to unauthorized access of data and ...
CVE-2024-12363HIGH7.1Insufficient permissions in the TeamViewer Patch & Asset Management component prior to version 24.12 on Windows allows a...
CVE-2024-53290HIGH8.4Dell ThinOS version 2408 contains an Improper Neutralization of Special Elements used in a Command ('Command Injection')...
CVE-2024-53289HIGH7Dell ThinOS version 2408 contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. A low privileged at...
CVE-2024-53959HIGH7.8Adobe Framemaker versions 2020.7, 2022.5 and earlier are affected by a Stack-based Buffer Overflow vulnerability that co...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now