2024 CVE Vulnerabilities

39,243 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-35091CRITICAL9.8J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in SysTenantMapper.xml...
CVE-2024-35090HIGH8.2J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in SysUreportFileMappe...
CVE-2024-35086CRITICAL9.8J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in BpmTaskFromMapper.x...
CVE-2024-35085MEDIUM5.4J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in ProcessDefinitionMa...
CVE-2024-35084CRITICAL9.8J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in SysMsgPushMapper.xm...
CVE-2024-35083HIGH8.8J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in SysLoginInfoMapper....
CVE-2024-35082MEDIUM6.3J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the findPage function in SysOperLogMapper.xm...
CVE-2024-35081HIGH7.5LuckyFrameWeb v3.5.2 was discovered to contain an arbitrary file deletion vulnerability via the fileName parameter in th...
CVE-2024-34936HIGH8.6A SQL injection vulnerability in /view/event1.php in Campcodes Complete Web-Based School Management System 1.0 allows an...
CVE-2024-34935CRITICAL9.8A SQL injection vulnerability in /view/conversation_history_admin.php in Campcodes Complete Web-Based School Management ...
CVE-2024-34934CRITICAL9.8A SQL injection vulnerability in /view/emarks_range_grade_update_form.php in Campcodes Complete Web-Based School Managem...
CVE-2024-34933MEDIUM6.3A SQL injection vulnerability in /model/update_grade.php in Campcodes Complete Web-Based School Management System 1.0 al...
CVE-2024-34932CRITICAL9.8A SQL injection vulnerability in /model/update_exam.php in Campcodes Complete Web-Based School Management System 1.0 all...
CVE-2024-34931CRITICAL9.8A SQL injection vulnerability in /model/update_subject.php in Campcodes Complete Web-Based School Management System 1.0 ...
CVE-2024-34930MEDIUM5.3A SQL injection vulnerability in /model/all_events1.php in Campcodes Complete Web-Based School Management System 1.0 all...
CVE-2024-34929CRITICAL9.8A SQL injection vulnerability in /view/find_friends.php in Campcodes Complete Web-Based School Management System 1.0 all...
CVE-2024-34928HIGH7.3A SQL injection vulnerability in /model/update_subject_routing.php in Campcodes Complete Web-Based School Management Sys...
CVE-2024-34927CRITICAL9.8A SQL injection vulnerability in /model/update_classroom.php in Campcodes Complete Web-Based School Management System 1....
CVE-2024-2301HIGH7.6Certain HP LaserJet Pro devices are potentially vulnerable to a Cross-Site Scripting (XSS) attack via the web management...
CVE-2024-5085CRITICAL9.8The Hash Form – Drag & Drop Form Builder plugin for WordPress is vulnerable to PHP Object Injection in all versions up t...
CVE-2024-5084CRITICAL9.8The Hash Form – Drag & Drop Form Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing fil...
CVE-2024-35222MEDIUM5.9Tauri is a framework for building binaries for all major desktop platforms. Remote origin iFrames in Tauri applications ...
CVE-2024-5168CRITICAL9.8Improper access control vulnerability in Prodys' Quantum Audio codec affecting versions 2.3.4t and below. This vulnerabi...
CVE-2024-4471HIGH8The 140+ Widgets | Best Addons For Elementor – FREE for WordPress is vulnerable to PHP Object Injection in versions up t...
CVE-2024-35224MEDIUM5.4OpenProject is the leading open source project management software. OpenProject utilizes `tablesorter` inside of the Cos...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now