2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-8748HIGH7.5A buffer overflow vulnerability in the packet parser of the third-party library "libclinkc" in Zyxel VMG8825-T50K firmwa...
CVE-2024-53937HIGH8.8An issue was discovered on Victure RX1800 WiFi 6 Router (software EN_V1.0.0_r12_110933, hardware 1.0) devices. The TELNE...
CVE-2024-53941HIGH8.8An issue was discovered in Victure RX1800 WiFi 6 Router (software EN_V1.0.0_r12_110933, hardware 1.0) devices. A remote ...
CVE-2024-53940HIGH8.8An issue was discovered in Victure RX1800 WiFi 6 Router (software EN_V1.0.0_r12_110933, hardware 1.0) devices. Certain /...
CVE-2024-53939HIGH8.8An issue was discovered in Victure RX1800 WiFi 6 Router (software EN_V1.0.0_r12_110933, hardware 1.0) devices. The /cgi-...
CVE-2024-53938HIGH8.8An issue was discovered in Victure RX1800 WiFi 6 Router (software EN_V1.0.0_r12_110933, hardware 1.0) devices. The TELNE...
CVE-2024-53375HIGH8An Authenticated Remote Code Execution (RCE) vulnerability affects the TP-Link Archer router series. A vulnerability exi...
CVE-2024-39890HIGH8.1An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, 850, 108...
CVE-2024-39343HIGH7An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 2100, 1280, 2200, 1330, 1380, 1480, 24...
CVE-2024-53484HIGH8.8Ever Traduora 0.20.0 and below is vulnerable to Privilege Escalation due to the use of a hard-coded JWT signing key.
CVE-2024-53564HIGH7.2A vulnerability was discovered in FreePBX 17.0.19.17. It does not verify the type of uploaded (valid FreePBX module) fil...
CVE-2024-53992HIGH8.8unzip-bot is a Telegram bot to extract various types of archives. Users could exploit unsanitized inputs to inject malic...
CVE-2024-52806HIGH8.3SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. When loading an (untrusted) XML document, ...
CVE-2024-52596HIGH8.8SimpleSAMLphp xml-common is a common classes for handling XML-structures. When loading an (untrusted) XML document, for ...
CVE-2024-50381HIGH8.8A vulnerability exists in Snap One OVRC cloud where an attacker can impersonate a Hub device and send requests to claim ...
CVE-2024-50380HIGH8.7Snap One OVRC cloud uses the MAC address as an identifier to provide information when requested. An attacker can imperso...
CVE-2024-49763HIGH8.7PlexRipper is a cross-platform media downloader for Plex. PlexRipper’s open CORS policy allows attackers to gain sensiti...
CVE-2024-53981HIGH7.5python-multipart is a streaming multipart parser for Python. When parsing form data, python-multipart skips line breaks ...
CVE-2024-53862HIGH7.5Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. When us...
CVE-2024-46908HIGH8.8In WhatsUp Gold versions released before 2024.0.1, a SQL Injection vulnerability allows an authenticated low-privileged ...
CVE-2024-46907HIGH8.8In WhatsUp Gold versions released before 2024.0.1, a SQL Injection vulnerability allows an authenticated low-privileged ...
CVE-2024-46906HIGH8.8In WhatsUp Gold versions released before 2024.0.1, a SQL Injection vulnerability allows an authenticated low-privileged ...
CVE-2024-46905HIGH8.8In WhatsUp Gold versions released before 2024.0.1, a SQL Injection vulnerability allows an authenticated lower-privilege...
CVE-2024-31669HIGH7.5rizin before Release v0.6.3 is vulnerable to Uncontrolled Resource Consumption via bin_pe_parse_imports, Pe_r_bin_pe_par...
CVE-2024-29645HIGH7.8Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the parse_die...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now