2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-33625CRITICAL9.8CyberPower PowerPanel business application code contains a hard-coded JWT signing key. This could result in an attacke...
CVE-2024-32053CRITICAL9.8Hard-coded credentials are used by the  CyberPower PowerPanel platform to authenticate to the database, other servic...
CVE-2024-32047CRITICAL9.8Hard-coded credentials for the CyberPower PowerPanel test server can be found in the production code. This might resul...
CVE-2024-3968CRITICAL9.8Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code ex...
CVE-2024-3967CRITICAL9.8Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code ex...
CVE-2024-3488CRITICAL9.8File Upload vulnerability in unauthenticated session found in OpenText™ iManager 3.2.6.0200. The vulnerability could all...
CVE-2024-3487CRITICAL9.8Broken Authentication vulnerability discovered in OpenText™ iManager 3.2.6.0200. This vulnerability allows an attacker t...
CVE-2024-3486CRITICAL9.8XML External Entity injection vulnerability found in OpenText™ iManager 3.2.6.0200. This could lead to information discl...
CVE-2024-3484CRITICAL9.8Path Traversal found in OpenText™ iManager 3.2.6.0200. This can lead to privilege escalation or file disclosure.
CVE-2024-3483CRITICAL9.8Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger command inject...
CVE-2024-34082CRITICAL9.9Grav is a file-based Web platform. Prior to version 1.7.46, a low privilege user account with page edit privilege can re...
CVE-2024-3319CRITICAL9.1An issue was identified in the Identity Security Cloud (ISC) Transform preview and IdentityProfile preview API endpoints...
CVE-2024-34955CRITICAL9.8Code-projects Budget Management 1.0 is vulnerable to SQL Injection via the delete parameter.
CVE-2024-4893CRITICAL9.8DigiWin EasyFlow .NET lacks validation for certain input parameters, allowing remote attackers to inject arbitrary SQL c...
CVE-2024-32888CRITICAL10The Amazon JDBC Driver for Redshift is a Type 4 JDBC driver that provides database connectivity through the standard JDB...
CVE-2024-31473CRITICAL9.8There is a command injection vulnerability in the underlying deauthentication service that could lead to unauthenticated...
CVE-2024-31472CRITICAL9.8There are command injection vulnerabilities in the underlying Soft AP Daemon service that could lead to unauthenticated ...
CVE-2024-31471CRITICAL9.8There is a command injection vulnerability in the underlying Central Communications service that could lead to unauthent...
CVE-2024-31470CRITICAL9.8There is a buffer overflow vulnerability in the underlying SAE (Simultaneous Authentication of Equals) service that coul...
CVE-2024-31469CRITICAL9.8There are buffer overflow vulnerabilities in the underlying Central Communications service that could lead to unauthenti...
CVE-2024-31468CRITICAL9.8There are buffer overflow vulnerabilities in the underlying Central Communications service that could lead to unauthenti...
CVE-2024-31467CRITICAL9.8There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code e...
CVE-2024-31466CRITICAL9.8There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code e...
CVE-2024-32002CRITICAL9Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, reposito...
CVE-2024-4778CRITICAL9.8Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that w...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now