2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-3495CRITICAL9.8The Country State City Dropdown CF7 plugin for WordPress is vulnerable to SQL Injection via the ‘cnt’ and 'sid' paramete...
CVE-2024-5147CRITICAL9.8The WPZOOM Addons for Elementor (Templates, Widgets) plugin for WordPress is vulnerable to Local File Inclusion in all v...
CVE-2024-31989CRITICAL9Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. It has been discovered that an unprivileged po...
CVE-2024-35056CRITICAL9.8NASA AIT-Core v2.5.2 was discovered to contain multiple SQL injection vulnerabilities via the query_packets and insert f...
CVE-2024-35361CRITICAL9.8MTab Bookmark v1.9.5 has an SQL injection vulnerability in /LinkStore/getIcon. An attacker can execute arbitrary SQL sta...
CVE-2024-4442CRITICAL9.1The Salon booking system plugin for WordPress is vulnerable to arbitrary file deletion in all versions up to, and includ...
CVE-2024-4985CRITICAL9.8An authentication bypass vulnerability was present in the GitHub Enterprise Server (GHES) when utilizing SAML single sig...
CVE-2024-35580CRITICAL9.8Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formSetIptv.
CVE-2024-35571CRITICAL9.8Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.
CVE-2024-34947CRITICAL9.4Quanxun Huiju Network Technology (Beijing) Co.,Ltd IK-Q3000 3.7.10 x64 Build202401261655 was discovered to be vulnerable...
CVE-2024-24294CRITICAL9.8A Prototype Pollution issue in Blackprint @blackprint/engine v.0.9.0 allows an attacker to execute arbitrary code via th...
CVE-2024-4323CRITICAL9.8A memory corruption vulnerability in Fluent Bit versions 2.0.7 thru 3.0.3. This issue lies in the embedded http server’s...
CVE-2024-35960CRITICAL9.1In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Properly link new fs rules into the tree ...
CVE-2024-5135CRITICAL9.8A vulnerability was found in PHPGurukul Directory Management System 1.0. It has been rated as critical. This issue affec...
CVE-2024-5134CRITICAL9.8A vulnerability was found in SourceCodester Electricity Consumption Monitoring Tool 1.0. It has been declared as critica...
CVE-2024-5122CRITICAL9.8A vulnerability was found in SourceCodester Event Registration System 1.0. It has been rated as critical. Affected by th...
CVE-2024-5120CRITICAL9.8A vulnerability was found in SourceCodester Event Registration System 1.0. It has been classified as critical. Affected ...
CVE-2024-5119CRITICAL9.8A vulnerability was found in SourceCodester Event Registration System 1.0 and classified as critical. This issue affects...
CVE-2024-5118CRITICAL9.8A vulnerability has been found in SourceCodester Event Registration System 1.0 and classified as critical. This vulnerab...
CVE-2024-5117CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Event Registration System 1.0. This affec...
CVE-2024-5116CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Online Examination System 1.0. Affec...
CVE-2024-36081CRITICAL9.8Westermo EDW-100 devices through 2024-05-03 allow an unauthenticated user to download a configuration file containing a ...
CVE-2024-36080CRITICAL9.8Westermo EDW-100 devices through 2024-05-03 have a hidden root user account with a hardcoded password that cannot be cha...
CVE-2024-36053CRITICAL9In the mintupload package through 4.2.0 for Linux Mint, service-name mishandling leads to command injection via shell me...
CVE-2024-35870CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: smb: client: fix UAF in smb2_reconnect_server() Th...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now