2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-4267CRITICAL9.8A remote code execution (RCE) vulnerability exists in the parisneo/lollms-webui, specifically within the 'open_file' mod...
CVE-2024-25738CRITICAL9.1A Server-Side Request Forgery (SSRF) vulnerability in the /Upgrade/FixConfig route in Open Library Foundation VuFind 2.0...
CVE-2024-33226CRITICAL9.9An issue in the component Access64.sys of Wistron Corporation TBT Force Power Control v1.0.0.0 allows attackers to escal...
CVE-2024-35409CRITICAL9.8WeBid 1.1.2 is vulnerable to SQL Injection via admin/tax.php.
CVE-2024-3495CRITICAL9.8The Country State City Dropdown CF7 plugin for WordPress is vulnerable to SQL Injection via the ‘cnt’ and 'sid' paramete...
CVE-2024-5147CRITICAL9.8The WPZOOM Addons for Elementor (Templates, Widgets) plugin for WordPress is vulnerable to Local File Inclusion in all v...
CVE-2024-31989CRITICAL9Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. It has been discovered that an unprivileged po...
CVE-2024-35056CRITICAL9.8NASA AIT-Core v2.5.2 was discovered to contain multiple SQL injection vulnerabilities via the query_packets and insert f...
CVE-2024-35361CRITICAL9.8MTab Bookmark v1.9.5 has an SQL injection vulnerability in /LinkStore/getIcon. An attacker can execute arbitrary SQL sta...
CVE-2024-4442CRITICAL9.1The Salon booking system plugin for WordPress is vulnerable to arbitrary file deletion in all versions up to, and includ...
CVE-2024-4985CRITICAL9.8An authentication bypass vulnerability was present in the GitHub Enterprise Server (GHES) when utilizing SAML single sig...
CVE-2024-35580CRITICAL9.8Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formSetIptv.
CVE-2024-35571CRITICAL9.8Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.
CVE-2024-34947CRITICAL9.4Quanxun Huiju Network Technology (Beijing) Co.,Ltd IK-Q3000 3.7.10 x64 Build202401261655 was discovered to be vulnerable...
CVE-2024-24294CRITICAL9.8A Prototype Pollution issue in Blackprint @blackprint/engine v.0.9.0 allows an attacker to execute arbitrary code via th...
CVE-2024-4323CRITICAL9.8A memory corruption vulnerability in Fluent Bit versions 2.0.7 thru 3.0.3. This issue lies in the embedded http server’s...
CVE-2024-35960CRITICAL9.1In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Properly link new fs rules into the tree ...
CVE-2024-5135CRITICAL9.8A vulnerability was found in PHPGurukul Directory Management System 1.0. It has been rated as critical. This issue affec...
CVE-2024-5134CRITICAL9.8A vulnerability was found in SourceCodester Electricity Consumption Monitoring Tool 1.0. It has been declared as critica...
CVE-2024-5122CRITICAL9.8A vulnerability was found in SourceCodester Event Registration System 1.0. It has been rated as critical. Affected by th...
CVE-2024-5120CRITICAL9.8A vulnerability was found in SourceCodester Event Registration System 1.0. It has been classified as critical. Affected ...
CVE-2024-5119CRITICAL9.8A vulnerability was found in SourceCodester Event Registration System 1.0 and classified as critical. This issue affects...
CVE-2024-5118CRITICAL9.8A vulnerability has been found in SourceCodester Event Registration System 1.0 and classified as critical. This vulnerab...
CVE-2024-5117CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Event Registration System 1.0. This affec...
CVE-2024-5116CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Online Examination System 1.0. Affec...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now