2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-32836CRITICAL9.1Unrestricted Upload of File with Dangerous Type vulnerability in WP Lab WP-Lister Lite for eBay wp-lister-for-ebay.This ...
CVE-2024-32709CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Plechev Andrey WP-...
CVE-2024-32948CRITICAL9.1Missing Authorization vulnerability in Repute Infosystems ARMember.This issue affects ARMember: from n/a through 4.0.28.
CVE-2024-28613CRITICAL9.8SQL Injection vulnerability in PHP Task Management System v.1.0 allows a remote attacker to escalate privileges and obta...
CVE-2024-32662CRITICAL9.8FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulner...
CVE-2024-32659CRITICAL9.8FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulner...
CVE-2024-32658CRITICAL9.8FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulner...
CVE-2024-33215CRITICAL9.8Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the mitInterfac...
CVE-2024-21511CRITICAL9.8Versions of the package mysql2 before 3.9.7 are vulnerable to Arbitrary Code Injection due to improper sanitization of t...
CVE-2024-32460CRITICAL9.8FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based based clients using `/bpp:32` legacy `GDI...
CVE-2024-32459CRITICAL9.8FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients and servers that use a version of...
CVE-2024-32458CRITICAL9.8FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP pri...
CVE-2024-32041CRITICAL9.8FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP pri...
CVE-2024-32040CRITICAL9.8FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP pri...
CVE-2024-32039CRITICAL9.8FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients using a version of FreeRDP prior ...
CVE-2024-27574CRITICAL9.1SQL Injection vulnerability in Trainme Academy version Ichin v.1.3.2 allows a remote attacker to obtain sensitive inform...
CVE-2024-4040CRITICAL10A server side template injection vulnerability in CrushFTP in all versions before 10.7.1 and 11.1.0 on all platforms all...
CVE-2024-32238CRITICAL9.8H3C ER8300G2-X is vulnerable to Incorrect Access Control. The password for the router's management system can be accesse...
CVE-2024-31545CRITICAL9.4Computer Laboratory Management System v1.0 is vulnerable to SQL Injection via the "id" parameter of /admin/?page=user/ma...
CVE-2024-31666CRITICAL9.8An issue in flusity-CMS v.2.33 allows a remote attacker to execute arbitrary code via a crafted script to the edit_addon...
CVE-2024-27349CRITICAL9.1Authentication Bypass by Spoofing vulnerability in Apache HugeGraph-Server.This issue affects Apache HugeGraph-Server: f...
CVE-2024-27348CRITICAL9.8RCE-Remote Command Execution vulnerability in Apache HugeGraph-Server.This issue affects Apache HugeGraph-Server: from 1...
CVE-2024-29661CRITICAL9.8A File Upload vulnerability in DedeCMS v5.7 allows a local attacker to execute arbitrary code via a crafted payload.
CVE-2024-32418CRITICAL9.8An issue in flusity CMS v2.33 allows a remote attacker to execute arbitrary code via the add_addon.php component.
CVE-2024-31547CRITICAL9.1Computer Laboratory Management System v1.0 is vulnerable to SQL Injection via the "id" parameter of /admin/item/view_ite...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now