2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-4798CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Online Computer and Laptop Store 1.0...
CVE-2024-4701CRITICAL9.9A path traversal issue potentially leading to remote code execution in Genie for all versions prior to 4.3.18
CVE-2024-4699CRITICAL9.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in D-Link DAR-8000-10 ...
CVE-2024-4671CRITICAL9.6Use after free in Visuals in Google Chrome prior to 124.0.6367.201 allowed a remote attacker who had compromised the ren...
CVE-2024-4560CRITICAL9.8The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file typ...
CVE-2024-4434CRITICAL9.8The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the ‘term_id’ p...
CVE-2024-4413CRITICAL9.8The Hotel Booking Lite plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, ...
CVE-2024-3806CRITICAL9.8The Porto theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 7.1.0 via the ...
CVE-2024-3263CRITICAL9.8YMS VIS Pro is an information system for veterinary and food administration, veterinarians and farm. Due to a combinatio...
CVE-2024-3070CRITICAL9.8The Last Viewed Posts by WPBeginner plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, an...
CVE-2024-3016CRITICAL9.1NEC Platforms DT900 and DT900S Series 5.0.0.0 – v5.3.4.4, v5.4.0.0 – v5.6.0.20 allows an attacker to access a non-docume...
CVE-2024-35099CRITICAL9.8TOTOLINK LR350 V9.3.5u.6698_B20230810 was discovered to contain a stack overflow via the password parameter in the funct...
CVE-2024-35049CRITICAL9.1SurveyKing v1.3.1 was discovered to keep users' sessions active after logout. Related to an incomplete fix for CVE-2022-...
CVE-2024-34945CRITICAL9.8Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the PPW paramet...
CVE-2024-34943CRITICAL9.8Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the page parame...
CVE-2024-34706CRITICAL9.8Valtimo is an open source business process and case management platform. When opening a form in Valtimo, the access toke...
CVE-2024-34555CRITICAL10Unrestricted Upload of File with Dangerous Type vulnerability in URBAN BASE Z-Downloads.This issue affects Z-Downloads: ...
CVE-2024-34416CRITICAL9.1Unrestricted Upload of File with Dangerous Type vulnerability in Pk Favicon Manager.This issue affects Pk Favicon Manage...
CVE-2024-34411CRITICAL9.9Unrestricted Upload of File with Dangerous Type vulnerability in Thomas Scholl canvasio3D Light.This issue affects canva...
CVE-2024-34365CRITICAL9.1** UNSUPPORTED WHEN ASSIGNED ** Improper Input Validation vulnerability in Apache Karaf Cave.This issue affects all vers...
CVE-2024-34359CRITICAL9.6llama-cpp-python is the Python bindings for llama.cpp. `llama-cpp-python` depends on class `Llama` in `llama.py` to load...
CVE-2024-34340CRITICAL9.1Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, Cacti calls `compat_pa...
CVE-2024-34226CRITICAL9.4SQL injection vulnerability in /php-sqlite-vms/?page=manage_visitor&id=1 in SourceCodester Visitor Management System 1.0...
CVE-2024-34213CRITICAL9.8TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the SetPortForw...
CVE-2024-34209CRITICAL9.8TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setIpPortFi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now