2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-21786HIGH7.2An OS command injection vulnerability exists in the web interface configuration upload functionality of MC Technologies ...
CVE-2024-7026HIGH7.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Teknogis Informati...
CVE-2024-11088HIGH7.5The Simple Membership plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in...
CVE-2024-11589HIGH8.8A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. Affected by this vulne...
CVE-2024-11588HIGH7.5A vulnerability was found in AVL-DiTEST-DiagDev libdoip 1.0.0. It has been rated as problematic. This issue affects the ...
CVE-2024-7517HIGH7.8A command injection vulnerability in Brocade Fabric OS before 9.2.0c, and 9.2.1 through 9.2.1a on IP extension platforms...
CVE-2024-52797HIGH7.5Opencast is free and open source software for automated video capture and distribution. First noticed in Opencast 13 and...
CVE-2024-45663HIGH7.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1, 11.5, and 12.1 is vulnerable to a denial of serv...
CVE-2024-11409HIGH7.2The Grid View Gallery plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1...
CVE-2024-10898HIGH8.8The Contact Form 7 Email Add on plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and in...
CVE-2024-10788HIGH7.2The Activity Log – Monitor & Record User Changes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via t...
CVE-2024-10403HIGH7.5Brocade Fabric OS versions before 8.2.3e2, versions 9.0.0 through 9.2.0c, and 9.2.1 through 9.2.1a can capture the SFT...
CVE-2024-10400HIGH7.5The Tutor LMS plugin for WordPress is vulnerable to SQL Injection via the ‘rating_filter’ parameter in all versions up t...
CVE-2024-9875HIGH7.1Okta Privileged Access server agent (SFTD) versions 1.82.0 to 1.84.0 are affected by a privilege escalation vulnerabilit...
CVE-2024-52581HIGH7.5Litestar is an Asynchronous Server Gateway Interface (ASGI) framework. Prior to version 2.13.0, the multipart form parse...
CVE-2024-48986HIGH7.5An issue was discovered in MBed OS 6.16.0. Its hci parsing software dynamically determines the length of certain hci pac...
CVE-2024-48982HIGH7.5An issue was discovered in MBed OS 6.16.0. Its hci parsing software dynamically determines the length of certain hci pac...
CVE-2024-48536HIGH7.5Incorrect access control in eSoft Planner 3.24.08271-USA allow attackers to view all transactions performed by the compa...
CVE-2024-48530HIGH7.5An issue in the Instructor Appointment Availability module of eSoft Planner 3.24.08271-USA allows attackers to cause a D...
CVE-2024-48985HIGH7.5An issue was discovered in MBed OS 6.16.0. During processing of HCI packets, the software dynamically determines the len...
CVE-2024-48983HIGH7.5An issue was discovered in MBed OS 6.16.0. During processing of HCI packets, the software dynamically determines the len...
CVE-2024-48981HIGH7.5An issue was discovered in MBed OS 6.16.0. During processing of HCI packets, the software dynamically determines the len...
CVE-2024-52739HIGH8D-LINK DI-8400 v16.07.26A1 was discovered to contain multiple remote command execution (RCE) vulnerabilities in the msp_...
CVE-2024-52769HIGH7.2An arbitrary file upload vulnerability in the component /admin/friendlink_edit of DedeBIZ v6.3.0 allows attackers to exe...
CVE-2024-51163HIGH7.5A Local File Inclusion vulnerability in Vegam Solutions Vegam 4i versions 6.3.47.0 and earlier allows a remote attacker ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now