2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-29201CRITICAL9.9JumpServer is an open source bastion host and an operation and maintenance security audit system. Attackers can bypass t...
CVE-2024-23539CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Fineract.Th...
CVE-2024-23538CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Fineract.Th...
CVE-2024-30635CRITICAL9.8Tenda F1202 v1.2.0.20(408) has a stack overflow vulnerability located in the funcpara1 parameter in the formSetCfm funct...
CVE-2024-30510CRITICAL9.8Unrestricted Upload of File with Dangerous Type vulnerability in Salon Booking System Salon booking system.This issue af...
CVE-2024-30498CRITICAL10Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CRM Perks CRM Perk...
CVE-2024-30490CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Metagauss ProfileG...
CVE-2024-3078CRITICAL9.8A vulnerability was found in Qdrant up to 1.6.1/1.7.4/1.8.2 and classified as critical. This issue affects some unknown ...
CVE-2024-30630CRITICAL9.8Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the time parameter from saveParentControlInfo function.
CVE-2024-30628CRITICAL9.8Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the page parameter from fromAddressNat function.
CVE-2024-30622CRITICAL9.8Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the mitInterface parameter from fromAddressNat function...
CVE-2024-2411CRITICAL9.8The MasterStudy LMS plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.3...
CVE-2024-2409CRITICAL9.8The MasterStudy LMS plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.3...
CVE-2024-28713CRITICAL9.8An issue in Mblog Blog system v.3.5.0 allows an attacker to execute arbitrary code via a crafted file to the theme manag...
CVE-2024-3042CRITICAL9.1A vulnerability was found in SourceCodester Simple Subscription Website 1.0 and classified as critical. This issue affec...
CVE-2024-3041CRITICAL9.8A vulnerability has been found in Netentsec NS-ASG Application Security Gateway 6.3 and classified as critical. This vul...
CVE-2024-3040CRITICAL9.8A vulnerability, which was classified as critical, was found in Netentsec NS-ASG Application Security Gateway 6.3. This ...
CVE-2024-3039CRITICAL9.8A vulnerability classified as critical has been found in Shanghai Brad Technology BladeX 3.4.0. Affected is an unknown f...
CVE-2024-30602CRITICAL9.8Tenda FH1203 v2.0.1.6 has a stack overflow vulnerability in the schedStartTime parameter of the setSchedWifi function.
CVE-2024-30589CRITICAL9.8Tenda FH1202 v1.2.0.14(408) firmware has a stack overflow vulnerability in the entrys parameter of the fromAddressNat fu...
CVE-2024-30587CRITICAL9.8Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the urls parameter of the saveParentControlInfo functi...
CVE-2024-30584CRITICAL9.8Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the security parameter of the formWifiBasicSet functio...
CVE-2024-30596CRITICAL9.8Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the deviceId parameter of the formSetDeviceName functi...
CVE-2024-30593CRITICAL9.8Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability located in the deviceName parameter of the formSetDeviceN...
CVE-2024-30595CRITICAL9.8Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the deviceId parameter of the addWifiMacFilter functio...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now