2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-22520HIGH8.2An issue discovered in Dronetag Drone Scanner 1.5.2 allows attackers to impersonate other drones via transmission of cra...
CVE-2024-22519HIGH8.2An issue discovered in OpenDroneID OSM 3.5.1 allows attackers to impersonate other drones via transmission of crafted da...
CVE-2024-1261CRITICAL9.8A vulnerability classified as critical was found in Juanpao JPShop up to 1.5.02. This vulnerability affects the function...
CVE-2024-1260CRITICAL9.8A vulnerability classified as critical has been found in Juanpao JPShop up to 1.5.02. This affects the function actionIn...
CVE-2024-22515HIGH8.8Unrestricted File Upload vulnerability in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to upload arbitrary files v...
CVE-2024-22514HIGH8.8An issue discovered in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to run arbitrary files by restoring a crafted ...
CVE-2024-1259CRITICAL9.8A vulnerability was found in Juanpao JPShop up to 1.5.02. It has been rated as critical. Affected by this issue is some ...
CVE-2024-1258MEDIUM5.9A vulnerability was found in Juanpao JPShop up to 1.5.02. It has been declared as problematic. Affected by this vulnerab...
CVE-2024-22241MEDIUM4.8Aria Operations for Networks contains a cross site scripting vulnerability. A malicious actor with admin privileges can ...
CVE-2024-22240MEDIUM4.9Aria Operations for Networks contains a local file read vulnerability. A malicious actor with admin privileges may explo...
CVE-2024-22239HIGH7.8Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Ope...
CVE-2024-22238MEDIUM4.8Aria Operations for Networks contains a cross site scripting vulnerability. A malicious actor with admin privileges may ...
CVE-2024-22237HIGH7.8Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Ope...
CVE-2024-1257MEDIUM6.1A vulnerability was found in Jspxcms 10.2.0. It has been classified as problematic. Affected is an unknown function of t...
CVE-2024-1256MEDIUM4.3A vulnerability was found in Jspxcms 10.2.0 and classified as problematic. This issue affects some unknown processing of...
CVE-2024-1255HIGH7.5A vulnerability has been found in sepidz SepidzDigitalMenu up to 7.1.0728.1 and classified as problematic. This vulnerab...
CVE-2024-1254HIGH7.2A vulnerability, which was classified as critical, was found in Byzoro Smart S20 Management Platform up to 20231120. Thi...
CVE-2024-1048LOW3.3A flaw was found in the grub2-set-bootflag utility of grub2. After the fix of CVE-2019-14865, grub2-set-bootflag will cr...
CVE-2024-22331MEDIUM5.5IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.19, 7.1 through 7.1.2.15, 7.2 through 7.2.3.8, 7.3 through 7.3.2.3, and IBM...
CVE-2024-1253HIGH7.2A vulnerability, which was classified as critical, has been found in Byzoro Smart S40 Management Platform up to 20240126...
CVE-2024-1252CRITICAL9.8A vulnerability classified as critical was found in Tongda OA 2017 up to 11.9. Affected by this vulnerability is an unkn...
CVE-2024-24291MEDIUM6.1An issue in the component /member/index/login of yzmcms v7.0 allows attackers to direct users to malicious sites via a c...
CVE-2024-24015CRITICAL9.8A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass in crafted offset...
CVE-2024-24013CRITICAL9.8A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass crafted offset, l...
CVE-2024-24000CRITICAL9.8jshERP v3.3 is vulnerable to Arbitrary File Upload. The jshERP-boot/systemConfig/upload interface does not check the upl...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now