2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-36081CRITICAL9.8Westermo EDW-100 devices through 2024-05-03 allow an unauthenticated user to download a configuration file containing a ...
CVE-2024-36080CRITICAL9.8Westermo EDW-100 devices through 2024-05-03 have a hidden root user account with a hardcoded password that cannot be cha...
CVE-2024-36053CRITICAL9In the mintupload package through 4.2.0 for Linux Mint, service-name mishandling leads to command injection via shell me...
CVE-2024-35870CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: smb: client: fix UAF in smb2_reconnect_server() Th...
CVE-2024-35869CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: smb: client: guarantee refcounted children from par...
CVE-2024-35865CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in smb2_is_valid_opl...
CVE-2024-28064CRITICAL9.8Kiteworks Totemomail 7.x and 8.x before 8.3.0 allows /responsiveUI/EnvelopeOpenServlet messageId directory traversal for...
CVE-2024-36048CRITICAL9.8QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.6, an...
CVE-2024-5094CRITICAL9.8A vulnerability was found in SourceCodester Best House Rental Management System 1.0 and classified as critical. This iss...
CVE-2024-5093CRITICAL9.8A vulnerability has been found in SourceCodester Best House Rental Management System 1.0 and classified as critical. Thi...
CVE-2024-2771CRITICAL9.8The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner...
CVE-2024-4264CRITICAL9.8A remote code execution (RCE) vulnerability exists in the berriai/litellm project due to improper control of the generat...
CVE-2024-5069CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Simple Online Mens Salon Management ...
CVE-2024-5065CRITICAL9.8A vulnerability classified as critical has been found in PHPGurukul Online Course Registration System 3.1. Affected is a...
CVE-2024-5064CRITICAL9.8A vulnerability was found in PHPGurukul Online Course Registration System 3.1. It has been rated as critical. This issue...
CVE-2024-5063CRITICAL9.8A vulnerability was found in PHPGurukul Online Course Registration System 3.1. It has been declared as critical. This vu...
CVE-2024-35845CRITICAL9.1In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: dbg-tlv: ensure NUL termination The...
CVE-2024-5048CRITICAL9.8A vulnerability classified as critical was found in code-projects Budget Management 1.0. Affected by this vulnerability ...
CVE-2024-5047CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Student Management System 1.0. Affected is an un...
CVE-2024-34982CRITICAL9.8An arbitrary file upload vulnerability in the component /include/file.php of lylme_spage v1.9.5 allows attackers to exec...
CVE-2024-34919CRITICAL9.8An arbitrary file upload vulnerability in the component \modstudent\controller.php of Pisay Online E-Learning System usi...
CVE-2024-5046CRITICAL9.8A vulnerability was found in SourceCodester Online Examination System 1.0. It has been rated as critical. This issue aff...
CVE-2024-32809CRITICAL10Unrestricted Upload of File with Dangerous Type vulnerability in JumpDEMAND Inc. ActiveDEMAND allows Using Malicious Fil...
CVE-2024-32786CRITICAL9.8Authentication Bypass by Spoofing vulnerability in WP Royal Royal Elementor Addons allows Functionality Bypass.This issu...
CVE-2024-33644CRITICAL9.9Improper Control of Generation of Code ('Code Injection') vulnerability in WPCustomify Customify Site Library allows Cod...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now