2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-29276CRITICAL9.8An issue was discovered in seeyonOA version 8, allows remote attackers to execute arbitrary code via the importProcess m...
CVE-2024-1863CRITICAL9.8Sante PACS Server Token Endpoint SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote att...
CVE-2024-29433CRITICAL9.8A deserialization vulnerability in the FASTJSON component of Alldata v0.4.6 allows attackers to execute arbitrary comman...
CVE-2024-30867CRITICAL9.8netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/edit_virtual_site_info.php.
CVE-2024-30858CRITICAL9.8netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/edit_fire_wall.php.
CVE-2024-25574CRITICAL9.8 SQL injection vulnerability exists in GetDIAE_usListParameters.
CVE-2024-30865CRITICAL9.8netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/edit_user_login.php.
CVE-2024-21473CRITICAL9.8Memory corruption while redirecting log file to any file location with any file name.
CVE-2024-21463CRITICAL9.8Memory corruption while processing Codec2 during v13k decoder pitch synthesis.
CVE-2024-30868CRITICAL9.8netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/add_getlogin.php.
CVE-2024-31115CRITICAL10Unrestricted Upload of File with Dangerous Type vulnerability in QuanticaLabs Chauffeur Taxi Booking System for WordPres...
CVE-2024-31114CRITICAL9.1Unrestricted Upload of File with Dangerous Type vulnerability in biplob018 Shortcode Addons.This issue affects Shortcode...
CVE-2024-3087CRITICAL9.8A vulnerability, which was classified as critical, has been found in PHPGurukul Emergency Ambulance Hiring Portal 1.0. A...
CVE-2024-3085CRITICAL9.8A vulnerability classified as critical has been found in PHPGurukul Emergency Ambulance Hiring Portal 1.0. Affected is a...
CVE-2024-2086CRITICAL10The Integrate Google Drive – Browse, Upload, Download, Embed, Play, Share, Gallery, and Manage Your Google Drive Files I...
CVE-2024-28288CRITICAL9.8Ruijie RG-NBR700GW 10.3(4b12) router lacks cookie verification when resetting the password, resulting in an administrato...
CVE-2024-29667CRITICAL9.8SQL Injection vulnerability in Tongtianxing Technology Co., Ltd CMSV6 v.7.31.0.2 through v.7.31.0.3 allows a remote atta...
CVE-2024-3094CRITICAL10Malicious code was discovered in the upstream tarballs of xz, starting with version 5.6.0. Through a series of complex...
CVE-2024-31032CRITICAL9.8An issue in Huashi Private Cloud CDN Live Streaming Acceleration Server hgateway-sixport v.1.1.2 allows a remote attacke...
CVE-2024-29640CRITICAL9.8An issue in aliyundrive-webdav v.2.3.3 and before allows a remote attacker to execute arbitrary code via a crafted paylo...
CVE-2024-30477CRITICAL9.8Missing Authorization vulnerability in Klarna Klarna Payments for WooCommerce.This issue affects Klarna Payments for Woo...
CVE-2024-30247CRITICAL9.8NextcloudPi is a ready to use image for Virtual Machines, Raspberry Pi, Odroid HC1, Rock64 and other boards. A command i...
CVE-2024-30508CRITICAL9.8Missing Authorization vulnerability in ThimPress WP Hotel Booking.This issue affects WP Hotel Booking: from n/a through ...
CVE-2024-30502CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Travel Engine.T...
CVE-2024-29202CRITICAL9.9JumpServer is an open source bastion host and an operation and maintenance security audit system. Attackers can exploit ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now