2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-51162HIGH8.8An issue in Audimex EE versions 15.1.20 and earlier allowing a remote attacker to escalate privileges. Analyzing the off...
CVE-2024-11487HIGH8.8A vulnerability has been found in Code4Berry Decoration Management System 1.0 and classified as critical. This vulnerabi...
CVE-2024-11485HIGH8.1A vulnerability, which was classified as critical, has been found in Code4Berry Decoration Management System 1.0. Affect...
CVE-2024-11484HIGH8.8A vulnerability classified as critical was found in Code4Berry Decoration Management System 1.0. Affected by this vulner...
CVE-2024-52598HIGH7.52FAuth is a web app to manage Two-Factor Authentication (2FA) accounts and generate their security codes. Two interconne...
CVE-2024-52473HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sandeep Verma HTML...
CVE-2024-52472HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Weather Atlas Weat...
CVE-2024-52470HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in brainvireinfo Dyna...
CVE-2024-51208HIGH7.2File Upload vulnerability in change-image.php in Anuj Kumar's Boat Booking System version 1.0 allows local attackers to ...
CVE-2024-10913HIGH8.8The Clone plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.4.6 via des...
CVE-2024-11495HIGH7.8Buffer overflow vulnerability in OllyDbg, version 1.10, which could allow a local attacker to execute arbitrary code due...
CVE-2024-52451HIGH8.2Cross-Site Request Forgery (CSRF) vulnerability in aaronrobbins Post Ideas post-ideas allows SQL Injection.This issue af...
CVE-2024-52450HIGH7.5Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-52449HIGH7.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Navneil Naicer Bootscrap...
CVE-2024-52448HIGH7.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in webcodingplace Ultimate ...
CVE-2024-52447HIGH8.6Path Traversal: '.../...//' vulnerability in corporatezen222 Contact Page With Google Map contact-page-with-google-map a...
CVE-2024-52446HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Buying Buddy Buying Buddy IDX CRM buying-buddy-idx-crm allows Object ...
CVE-2024-52445HIGH8.8Deserialization of Untrusted Data vulnerability in ModelTheme QRMenu Restaurant QR Menu Lite qrmenu-lite allows Object I...
CVE-2024-52444HIGH7.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in wpopal Opal Woo Custom P...
CVE-2024-52438HIGH8.8Missing Authentication for Critical Function vulnerability in deco.agency de:branding debranding allows Privilege Escala...
CVE-2024-52437HIGH8.8Missing Authentication for Critical Function vulnerability in Saul Morales Pacheco Banner System banner-system allows Pr...
CVE-2024-45690HIGH7.5A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts...
CVE-2024-10382HIGH7.5There exists a code execution vulnerability in the Car App Android Jetpack Library. CarAppService uses deserialization l...
CVE-2024-11494HIGH7.5**UNSUPPORTED WHEN ASSIGNED** The improper authentication vulnerability in the Zyxel P-6101C ADSL modem firmware version...
CVE-2024-48895HIGH8.8Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in Rakuten Turbo...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now