2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-53857HIGH7.5rPGP is a pure Rust implementation of OpenPGP. Prior to 0.14.1, rPGP allows attackers to trigger resource exhaustion vul...
CVE-2024-53856HIGH7.5rPGP is a pure Rust implementation of OpenPGP. Prior to 0.14.1, rPGP allows an attacker to trigger rpgp crashes by provi...
CVE-2024-53472HIGH8.8WeGIA v3.2.0 was discovered to contain a Cross-Site Request Forgery (CSRF).
CVE-2024-11941HIGH7.5A vulnerability in Drupal Core allows Excessive Allocation.This issue affects Drupal Core: from 10.2.0 before 10.2.2, fr...
CVE-2024-53703HIGH8.1A vulnerability in the SonicWall SMA100 SSLVPN firmware 10.2.1.13-72sv and earlier versions mod_httprp library loaded by...
CVE-2024-52271HIGH8.2User Interface (UI) Misrepresentation of Critical Information vulnerability in Documenso allows Content Spoofing.Display...
CVE-2024-45318HIGH8.1A vulnerability in the SonicWall SMA100 SSLVPN web management interface allows remote attackers to cause Stack-based buf...
CVE-2024-40763HIGH7.5Heap-based buffer overflow vulnerability in the SonicWall SMA100 SSLVPN due to the use of strcpy. This allows remote aut...
CVE-2024-6515HIGH8.1Web browser interface may manipulate application username/password in clear text or Base64 encoding providing a higher p...
CVE-2024-54126HIGH8.5This vulnerability exists in the TP-Link Archer C50 due to improper signature verification mechanism in the firmware upg...
CVE-2024-51548HIGH8.8Dangerous File Upload vulnerabilities allow upload of malicious scripts.  Affected products: ABB ASPECT - Enterprise v...
CVE-2024-51546HIGH7.5Credentials Disclosure vulnerabilities allow access to on board project back-up bundles.  Affected products: ABB ASPEC...
CVE-2024-51544HIGH8.2Service Control vulnerabilities allow access to service restart requests and vm configuration settings.  Affected produc...
CVE-2024-51543HIGH7.5Information Disclosure vulnerabilities allow access to application configuration information.  Affected products: ABB ...
CVE-2024-51542HIGH8.2Configuration Download vulnerabilities allow access to dependency configuration information.  Affected products: ABB A...
CVE-2024-51541HIGH7.5Local File Inclusion vulnerabilities allow access to sensitive system information.  Affected products: ABB ASPECT - En...
CVE-2024-48846HIGH7.3Cross Site Request Forgery vulnerabilities where found providing a potiential for exposing sensitive information or chan...
CVE-2024-48843HIGH7.5Denial of Service vulnerabilities where found providing a potiential for device service disruptions.  Affected products:...
CVE-2024-11316HIGH7.5Fileszie Check vulnerabilities allow a malicious user to bypass size limits or overload to the product.  Affected produc...
CVE-2024-52270HIGH8.2User Interface (UI) Misrepresentation of Critical Information vulnerability in DropBox Sign(HelloSign) allows Content Sp...
CVE-2024-52564HIGH7.5Inclusion of undocumented features or chicken bits issue exists in UD-LT1 firmware Ver.2.1.8 and earlier and UD-LT1/EX f...
CVE-2024-47133HIGH7.2UD-LT1 firmware Ver.2.1.9 and earlier and UD-LT1/EX firmware Ver.2.1.9 and earlier allow a remote authenticated attacker...
CVE-2024-11429HIGH8.8The Free Responsive Testimonials, Social Proof Reviews, and Customer Reviews – Stars Testimonials plugin for WordPress i...
CVE-2024-12186HIGH7.8A vulnerability was found in code-projects Hotel Management System 1.0 and classified as problematic. This issue affects...
CVE-2024-12185HIGH7.8A vulnerability has been found in code-projects Hotel Management System 1.0 and classified as problematic. This vulnerab...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now