2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-51602HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in oleksandr87 Simple...
CVE-2024-51601HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Maksym Marko Websi...
CVE-2024-51579HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saleswonder Team: ...
CVE-2024-51570HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in odihost Easy Galle...
CVE-2024-9874HIGH7.2The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to time-based SQL Injecti...
CVE-2024-10674HIGH8.8The Th Shop Mania theme for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a missing capab...
CVE-2024-10673HIGH8.8The Top Store theme for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a missing capabilit...
CVE-2024-10626HIGH8.1The WooCommerce Support Ticket System plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient ...
CVE-2024-10294HIGH7.5The CE21 Suite plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check...
CVE-2024-10285HIGH7.5The CE21 Suite plugin for WordPress is vulnerable to sensitive information disclosure via the plugin-log.txt in versions...
CVE-2024-52007HIGH8.6HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. XSLT parsing pe...
CVE-2024-52004HIGH8.7MediaCMS is an open source video and media CMS, written in Python/Django and React, featuring a REST API. MediaCMS has b...
CVE-2024-52002HIGH8.8Combodo iTop is a simple, web based IT Service Management tool. Several url endpoints are subject to a Cross-Site Reques...
CVE-2024-35423HIGH7.8vmir e8117 was discovered to contain a heap buffer overflow via the wasm_parse_section_functions function at /src/vmir_w...
CVE-2024-35422HIGH7.8vmir e8117 was discovered to contain a heap buffer overflow via the wasm_call function at /src/vmir_wasm_parser.c.
CVE-2024-27532HIGH7.5wasm-micro-runtime (aka WebAssembly Micro Runtime or WAMR) 06df58f is vulnerable to NULL Pointer Dereference in function...
CVE-2024-27530HIGH8.4wasm3 139076a contains a Use-After-Free in ForEachModule.
CVE-2024-27529HIGH8.4wasm3 139076a contains memory leaks in Read_utf8.
CVE-2024-27528HIGH8.4wasm3 139076a suffers from Invalid Memory Read, leading to DoS and potential Code Execution.
CVE-2024-27527HIGH7.5wasm3 139076a is vulnerable to Denial of Service (DoS).
CVE-2024-11026HIGH7.4A vulnerability was found in Intelligent Apps Freenow App 12.10.0 on Android. It has been rated as problematic. Affected...
CVE-2024-50809HIGH8.8The theme.php file in SDCMS 2.8 has a command execution vulnerability that allows for the execution of system commands
CVE-2024-50808HIGH8.8SeaCms 13.1 is vulnerable to code injection in the notification module of the member message notification module in the ...
CVE-2024-51997HIGH8.1Trustee is a set of tools and components for attesting confidential guests and providing secrets to them. The ART (**Att...
CVE-2024-51152HIGH7.2File Upload vulnerability in Laravel CMS v.1.4.7 and before allows a remote attacker to execute arbitrary code via the s...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now