2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-50369HIGH7.2A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered aff...
CVE-2024-50368HIGH7.2A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered aff...
CVE-2024-50367HIGH7.2A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered aff...
CVE-2024-50366HIGH7.2A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered aff...
CVE-2024-50365HIGH7.2A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered aff...
CVE-2024-50364HIGH7.2A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered aff...
CVE-2024-50363HIGH7.2A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered aff...
CVE-2024-50362HIGH7.2A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered aff...
CVE-2024-50361HIGH7.2A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered aff...
CVE-2024-50360HIGH7.2A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered aff...
CVE-2024-50359HIGH7.2A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered aff...
CVE-2024-50358HIGH7.2A CWE-15 "External Control of System or Configuration Setting" was discovered affecting the following devices manufactur...
CVE-2024-9504HIGH7.2The Booking calendar, Appointment Booking System plugin for WordPress is vulnerable to Stored Cross-Site Scripting via S...
CVE-2024-47257HIGH7.5Florent Thiéry has found that selected Axis devices were vulnerable to handling certain ethernet frames which could lead...
CVE-2024-36254HIGH7.5Out-of-bounds read vulnerability exists in Sharp Corporation and Toshiba Tec Corporation multiple MFPs (multifunction pr...
CVE-2024-36251HIGH7.5The web interface of the affected devices process some crafted HTTP requests improperly, leading to a device crash. More...
CVE-2024-36249HIGH7.4Cross-site scripting vulnerability exists in Sharp Corporation and Toshiba Tech Corporation multiple MFPs (multifunction...
CVE-2024-33605HIGH7.5Improper processing of some parameters of installed_emanual_list.html leads to a path traversal vulnerability. As for th...
CVE-2024-10781HIGH7.5The Spam protection, Anti-Spam, FireWall by CleanTalk plugin for WordPress is vulnerable to unauthorized Arbitrary Plugi...
CVE-2024-10570HIGH7.5The Security & Malware scan by CleanTalk plugin for WordPress is vulnerable to unauthorized SQL Injection due to an auth...
CVE-2024-10542HIGH7.5The Spam protection, Anti-Spam, FireWall by CleanTalk plugin for WordPress is vulnerable to unauthorized Arbitrary Plugi...
CVE-2024-49597HIGH7.2Dell Wyse Management Suite, versions WMS 4.4 and prior, contain an Improper Restriction of Excessive Authentication Atte...
CVE-2024-10729HIGH8.8The Booking & Appointment Plugin for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data...
CVE-2024-52899HIGH8.8IBM Data Virtualization Manager for z/OS 1.1 and 1.2 could allow an authenticated user to inject malicious JDBC URL para...
CVE-2024-53843HIGH8.1@dapperduckling/keycloak-connector-server is an opinionated series of libraries for Node.js applications and frontend cl...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now