2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41319 | CRITICAL | 9.8 | 5.5% | Jul 23, 2024 | TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the cmd parameter ... |
| CVE-2024-29070 | CRITICAL | 9.1 | 0.8% | Jul 23, 2024 | On versions before 2.1.4, session is not invalidated after logout. When the user logged in successfully, the Backend ser... |
| CVE-2024-6912 | CRITICAL | 9.8 | 1.1% | Jul 22, 2024 | Use of hard-coded MSSQL credentials in PerkinElmer ProcessPlus on Windows allows an attacker to login remove on all pron... |
| CVE-2024-6806 | CRITICAL | 9.8 | 1.0% | Jul 22, 2024 | The NI VeriStand Gateway is missing authorization checks when an actor attempts to access Project resources. These miss... |
| CVE-2024-6805 | CRITICAL | 9.8 | 1.0% | Jul 22, 2024 | The NI VeriStand Gateway is missing authorization checks when an actor attempts to access File Transfer resources. Thes... |
| CVE-2024-6794 | CRITICAL | 9.8 | 1.2% | Jul 22, 2024 | A deserialization of untrusted data vulnerability exists in NI VeriStand Waveform Streaming Server that may result in r... |
| CVE-2024-6793 | CRITICAL | 9.8 | 1.2% | Jul 22, 2024 | A deserialization of untrusted data vulnerability exists in NI VeriStand DataLogging Server that may result in remote c... |
| CVE-2024-40502 | CRITICAL | 9.8 | 1.3% | Jul 22, 2024 | SQL injection vulnerability in Hospital Management System Project in ASP.Net MVC 1 allows aremote attacker to execute ar... |
| CVE-2024-39250 | CRITICAL | 9.8 | 4.9% | Jul 22, 2024 | EfroTech Timetrax v8.3 was discovered to contain an unauthenticated SQL injection vulnerability via the q parameter in t... |
| CVE-2024-38944 | CRITICAL | 9.8 | 2.4% | Jul 22, 2024 | An issue in Intelight X-1L Traffic controller Maxtime v.1.9.6 allows a remote attacker to execute arbitrary code via the... |
| CVE-2024-28698 | CRITICAL | 9.8 | 1.5% | Jul 22, 2024 | Directory Traversal vulnerability in Marimer LLC CSLA .Net before 8.0 allows a remote attacker to execute arbitrary code... |
| CVE-2024-39686 | CRITICAL | 9.8 | 1.2% | Jul 22, 2024 | Bert-VITS2 is the VITS2 Backbone with multilingual bert. User input supplied to the data_dir variable is used directly i... |
| CVE-2024-39685 | CRITICAL | 9.8 | 1.1% | Jul 22, 2024 | Bert-VITS2 is the VITS2 Backbone with multilingual bert. User input supplied to the data_dir variable is used directly i... |
| CVE-2024-41827 | CRITICAL | 9.8 | 0.4% | Jul 22, 2024 | In JetBrains TeamCity before 2024.07 access tokens could continue working after deletion or expiration |
| CVE-2024-21552 | CRITICAL | 9.8 | 0.6% | Jul 22, 2024 | All versions of `SuperAGI` are vulnerable to Arbitrary Code Execution due to unsafe use of the ‘eval’ function. An attac... |
| CVE-2024-41318 | CRITICAL | 9.8 | 2.4% | Jul 22, 2024 | TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the ifname paramet... |
| CVE-2024-41316 | CRITICAL | 9.8 | 2.5% | Jul 22, 2024 | TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the ifname paramet... |
| CVE-2024-37998 | CRITICAL | 9.8 | 0.5% | Jul 22, 2024 | A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V5.40), SICORE Base syste... |
| CVE-2024-38773 | CRITICAL | 9.8 | 2.0% | Jul 22, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Adrian Tobey FormL... |
| CVE-2024-38759 | CRITICAL | 9.8 | 0.3% | Jul 22, 2024 | Deserialization of Untrusted Data vulnerability in WP MEDIA SAS Search & Replace search-and-replace.This issue affects S... |
| CVE-2024-41704 | CRITICAL | 9.8 | 0.7% | Jul 22, 2024 | LibreChat through 0.7.4-rc1 does not validate the normalized pathnames of images. |
| CVE-2024-41703 | CRITICAL | 9.8 | 0.4% | Jul 22, 2024 | LibreChat through 0.7.4-rc1 has incorrect access control for message updates. |
| CVE-2024-6970 | CRITICAL | 9.8 | 0.4% | Jul 22, 2024 | A vulnerability classified as critical has been found in itsourcecode Tailoring Management System 1.0. Affected is an un... |
| CVE-2024-6966 | CRITICAL | 9.8 | 0.7% | Jul 22, 2024 | A vulnerability was found in itsourcecode Online Blood Bank Management System 1.0 and classified as critical. Affected b... |
| CVE-2024-6957 | CRITICAL | 9.8 | 0.7% | Jul 21, 2024 | A vulnerability classified as critical has been found in itsourcecode University Management System 1.0. This affects an ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now