2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-20419CRITICAL10A vulnerability in the authentication system of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauth...
CVE-2024-20401CRITICAL9.8A vulnerability in the content scanning and message filtering features of Cisco Secure Email Gateway could allow an unau...
CVE-2024-6834CRITICAL9A vulnerability in APIML Spring Cloud Gateway which leverages user privileges by unexpected signing proxied request by Z...
CVE-2024-5471CRITICAL9.8Zohocorp ManageEngine DDI Central versions 4001 and prior were vulnerable to agent takeover vulnerability due to the har...
CVE-2024-36491CRITICAL9.8FutureNet NXR series, VXR series and WXR series provided by Century Systems Co., Ltd. allow an administrative user to ex...
CVE-2024-31070CRITICAL9.1Initialization of a resource with an insecure default vulnerability in FutureNet NXR series, VXR series and WXR series p...
CVE-2024-6220CRITICAL9.8The 简数采集器 (Keydatas) plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in...
CVE-2024-6808CRITICAL9.8A vulnerability was found in itsourcecode Simple Task List 1.0. It has been classified as critical. This affects the fun...
CVE-2024-6803CRITICAL9.8A vulnerability has been found in itsourcecode Document Management System 1.0 and classified as critical. Affected by th...
CVE-2024-6802CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Computer Laboratory Management System 1.0...
CVE-2024-6801CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Online Student Management System 1.0...
CVE-2024-21181CRITICAL9.8Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t...
CVE-2024-21175CRITICAL9.1Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t...
CVE-2024-6779CRITICAL9.6Out of bounds memory access in V8 in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to potentially perf...
CVE-2024-40535CRITICAL9.8Shenzhen Libituo Technology Co., Ltd LBT-T300-T400 v3.2 was discovered to contain a stack overflow via the apn_name_3g p...
CVE-2024-40515CRITICAL9.8An issue in SHENZHEN TENDA TECHNOLOGY CO.,LTD Tenda AX2pro V16.03.29.48_cn allows a remote attacker to execute arbitrary...
CVE-2024-40505CRITICAL9.3Directory Traversal vulnerability in D-Link DAP-1650 Firmware v.1.03 allows a local attacker to escalate privileges via ...
CVE-2024-40456CRITICAL9.8ThinkSAAS v3.7.0 was discovered to contain a SQL injection vulnerability via the name parameter at \system\action\update...
CVE-2024-40394CRITICAL9.8Simple Library Management System Project Using PHP/MySQL v1.0 was discovered to contain an arbitrary file upload vulnera...
CVE-2024-40393CRITICAL9.8Online Clinic Management System In PHP With Free Source code v1.0 was discovered to contain a SQL injection vulnerabilit...
CVE-2024-40392CRITICAL9.8SourceCodester Pharmacy/Medical Store Point of Sale System Using PHP/MySQL and Bootstrap Framework with Source Code 1.0 ...
CVE-2024-40130CRITICAL9.8open5gs v2.6.4 is vulnerable to Buffer Overflow. via /lib/core/abts.c.
CVE-2024-40129CRITICAL9.8Open5GS v2.6.4 is vulnerable to Buffer Overflow. via /lib/pfcp/context.c.
CVE-2024-40425CRITICAL9.8File Upload vulnerability in Nanjin Xingyuantu Technology Co Sparkshop (Spark Mall B2C Mall v.1.1.6 and before allows a ...
CVE-2024-39700CRITICAL9.8JupyterLab extension template is a `copier` template for JupyterLab extensions. Repositories created using this templat...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now