2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-51542HIGH8.2Configuration Download vulnerabilities allow access to dependency configuration information.  Affected products: ABB A...
CVE-2024-51541HIGH7.5Local File Inclusion vulnerabilities allow access to sensitive system information.  Affected products: ABB ASPECT - En...
CVE-2024-48846HIGH7.3Cross Site Request Forgery vulnerabilities where found providing a potiential for exposing sensitive information or chan...
CVE-2024-48843HIGH7.5Denial of Service vulnerabilities where found providing a potiential for device service disruptions.  Affected products:...
CVE-2024-11316HIGH7.5Fileszie Check vulnerabilities allow a malicious user to bypass size limits or overload to the product.  Affected produc...
CVE-2024-52270HIGH8.2User Interface (UI) Misrepresentation of Critical Information vulnerability in DropBox Sign(HelloSign) allows Content Sp...
CVE-2024-52564HIGH7.5Inclusion of undocumented features or chicken bits issue exists in UD-LT1 firmware Ver.2.1.8 and earlier and UD-LT1/EX f...
CVE-2024-47133HIGH7.2UD-LT1 firmware Ver.2.1.9 and earlier and UD-LT1/EX firmware Ver.2.1.9 and earlier allow a remote authenticated attacker...
CVE-2024-11429HIGH8.8The Free Responsive Testimonials, Social Proof Reviews, and Customer Reviews – Stars Testimonials plugin for WordPress i...
CVE-2024-12186HIGH7.8A vulnerability was found in code-projects Hotel Management System 1.0 and classified as problematic. This issue affects...
CVE-2024-12185HIGH7.8A vulnerability has been found in code-projects Hotel Management System 1.0 and classified as problematic. This vulnerab...
CVE-2024-53982HIGH8.7ZOO-Project is a C-based WPS (Web Processing Service) implementation. A path traversal vulnerability was discovered in Z...
CVE-2024-50947HIGH7.5An issue in kmqtt v0.2.7 allows attackers to cause a Denial of Service (DoS) via a crafted request.
CVE-2024-39219HIGH8.8An issue in Aginode GigaSwitch V5 before version 7.06G allows authenticated attackers with Administrator privileges to u...
CVE-2024-12149HIGH8.1Incorrect permission assignment in temporary access requests component in Devolutions Remote Desktop Manager 2024.3.19.0...
CVE-2024-12147HIGH7.1A vulnerability was found in Netgear R6900 1.0.1.26_1.0.20. It has been declared as critical. Affected by this vulnerabi...
CVE-2024-39163HIGH8.8binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints.
CVE-2024-54134HIGH8.3A publish-access account was compromised for `@solana/web3.js`, a JavaScript library that is commonly used by Solana dap...
CVE-2024-37575HIGH7.5The Mister org.mistergroup.shouldianswer application 1.4.264 for Android enables any installed application (with no perm...
CVE-2024-37574HIGH8.2The GriceMobile com.grice.call application 4.5.2 for Android enables any installed application (with no permissions) to ...
CVE-2024-11643HIGH8.8The Accessibility by AllAccessible plugin for WordPress is vulnerable to unauthorized modification of data that can lead...
CVE-2024-53139HIGH7.8In the Linux kernel, the following vulnerability has been resolved: sctp: fix possible UAF in sctp_v6_available() A lo...
CVE-2024-53133HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Handle dml allocation failure to a...
CVE-2024-53126HIGH7.8In the Linux kernel, the following vulnerability has been resolved: vdpa: solidrun: Fix UB bug with devres In psnet_op...
CVE-2024-51465HIGH8.8IBM App Connect Enterprise Certified Container 11.4, 11.5, 11.6, 12.0, 12.1, 12.2, and 12.3 could allow a remote authent...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now