2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-54226HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in karlkiesinger Country Blocker country-blocker allows Stored XSS.This ...
CVE-2024-54225HIGH7.5Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-54220HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in roninwp FAT Servic...
CVE-2024-54219HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in thehp AIO Contact ...
CVE-2024-53816HIGH8.8Missing Authorization vulnerability in Themeum Tutor LMS Elementor Addons tutor-lms-elementor-addons.This issue affects ...
CVE-2024-53790HIGH7.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Ogun Labs Lenxel Core fo...
CVE-2024-12360HIGH8.8A vulnerability was found in code-projects Online Class and Exam Scheduling System 1.0. It has been rated as critical. T...
CVE-2024-12358HIGH8.8A vulnerability was found in WeiYe-Jing datax-web 2.1.1. It has been classified as critical. This affects an unknown par...
CVE-2024-55580HIGH7.5An issue was discovered in Qlik Sense Enterprise for Windows before November 2024 IR. Unprivileged users with network ac...
CVE-2024-55579HIGH8.8An issue was discovered in Qlik Sense Enterprise for Windows before November 2024 IR. An unprivileged user with network ...
CVE-2024-12355HIGH7.8A vulnerability has been found in SourceCodester Phone Contact Manager System 1.0 and classified as problematic. Affecte...
CVE-2024-12354HIGH7.8A vulnerability, which was classified as critical, was found in SourceCodester Phone Contact Manager System 1.0. Affecte...
CVE-2024-12353HIGH7.8A vulnerability, which was classified as problematic, has been found in SourceCodester Phone Contact Manager System 1.0....
CVE-2024-12351HIGH8.8A vulnerability classified as critical has been found in JFinalCMS 1.0. This affects the function findPage of the file s...
CVE-2024-12350HIGH8.8A vulnerability was found in JFinalCMS 1.0. It has been rated as critical. Affected by this issue is the function update...
CVE-2024-12349HIGH8.8A vulnerability was found in JFinalCMS 1.0. It has been declared as problematic. Affected by this vulnerability is an un...
CVE-2024-12343HIGH8.8A vulnerability classified as critical has been found in TP-Link VN020 F3v(T) TT_V6.2.1021. Affected is an unknown funct...
CVE-2024-12342HIGH7.1A vulnerability was found in TP-Link VN020 F3v(T) TT_V6.2.1021. It has been rated as critical. This issue affects some u...
CVE-2024-53473HIGH7.5WeGIA 3.2.0 before 3998672 does not verify permission to change a password.
CVE-2024-47115HIGH7.8IBM AIX 7.2, 7.3 and VIOS 3.1 and 4.1 could allow a local user to execute arbitrary commands on the system due to improp...
CVE-2024-11501HIGH8.8The Gallery plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.3 via des...
CVE-2024-12270HIGH7.5The Beautiful taxonomy filters plugin for WordPress is vulnerable to SQL Injection via the 'selects[0][term]' parameter ...
CVE-2024-11010HIGH7.2The FileOrganizer – Manage WordPress and Website Files plugin for WordPress is vulnerable to Local JavaScript File Inclu...
CVE-2024-53143HIGH7.8In the Linux kernel, the following vulnerability has been resolved: fsnotify: Fix ordering of iput() and watched_object...
CVE-2024-44856HIGH7.5Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now