2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-53126HIGH7.8In the Linux kernel, the following vulnerability has been resolved: vdpa: solidrun: Fix UB bug with devres In psnet_op...
CVE-2024-51465HIGH8.8IBM App Connect Enterprise Certified Container 11.4, 11.5, 11.6, 12.0, 12.1, 12.2, and 12.3 could allow a remote authent...
CVE-2024-12138HIGH8.8A vulnerability classified as critical was found in horilla up to 1.2.1. This vulnerability affects the function request...
CVE-2024-8894HIGH8.1Out-of-bounds Write vulnerability was discovered in Open Design Alliance Drawings SDK before 2025.10. Reading crafted DW...
CVE-2024-52269HIGH8.2User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSign allows Content Spoofing. The Saa...
CVE-2024-52277HIGH8.2User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSeal allows Content Spoofing.Displaye...
CVE-2024-52276HIGH8.2User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSign allows Content Spoofing. 1. Disp...
CVE-2024-12107HIGH7.5Double-Free Vulnerability in uD3TN BPv7 Caused by Malformed Endpoint Identifier allows remote attacker to reliably cause...
CVE-2024-11952HIGH7.5The Classic Addons – WPBakery Page Builder plugin for WordPress is vulnerable to Limited Local PHP File Inclusion in all...
CVE-2024-10567HIGH7.5The TI WooCommerce Wishlist plugin for WordPress is vulnerable to unauthorized modification of data due to a missing cap...
CVE-2024-11293HIGH8.1The Registration Forms – User Registration Forms, Invitation-Based Registrations, Front-end User Profile, Login Form & ...
CVE-2024-11398HIGH8.1Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in OTP reset functionality ...
CVE-2024-9404HIGH8.7This vulnerability could lead to denial-of-service or service crashes. Exploitation of the moxa_cmd service, because of ...
CVE-2024-10952HIGH7.3The The Authors List plugin for WordPress is vulnerable to arbitrary shortcode execution via update_authors_list_ajax AJ...
CVE-2024-10587HIGH8.8The Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free plugin for WordPress...
CVE-2024-45207HIGH7DLL injection in Veeam Agent for Windows can occur if the system's PATH variable includes insecure locations. When the a...
CVE-2024-45205HIGH7.1An Improper Certificate Validation on the UniFi iOS App managing a standalone UniFi Access Point (not using UniFi Networ...
CVE-2024-42456HIGH8.8A vulnerability in Veeam Backup & Replication platform allows a low-privileged user with a specific role to exploit a me...
CVE-2024-42455HIGH8.1A vulnerability in Veeam Backup & Replication allows a low-privileged user to connect to remoting services and exploit i...
CVE-2024-42453HIGH8.1A vulnerability Veeam Backup & Replication allows low-privileged users to control and modify configurations on connected...
CVE-2024-42452HIGH8.8A vulnerability in Veeam Backup & Replication allows a low-privileged user to start an agent remotely in server mode and...
CVE-2024-42449HIGH7.1From the VSPC management agent machine, under condition that the management agent is authorized on the server, it is pos...
CVE-2024-40717HIGH8.8A vulnerability in Veeam Backup & Replication allows a low-privileged user with certain roles to perform remote code exe...
CVE-2024-46624HIGH8.8An issue in InfoDom Performa 365 v4.0.1 allows authenticated attackers to elevate their privileges to Administrator via ...
CVE-2024-46625HIGH8.8An authenticated arbitrary file upload vulnerability in the /documentCache/upload endpoint of InfoDom Performa 365 v4.0....

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now