2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-27565CRITICAL9.8A Server-Side Request Forgery (SSRF) in weixin.php of ChatGPT-wechat-personal commit a0857f6 allows attackers to force t...
CVE-2024-26339CRITICAL9.1swftools v0.9.2 was discovered to contain a strcpy parameter overlap via /home/swftools/src/swfc+0x48318a.
CVE-2024-2048CRITICAL9.8Vault and Vault Enterprise (“Vault”) TLS certificate auth method did not correctly validate client certificates when con...
CVE-2024-27198CRITICAL9.8In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible
CVE-2024-22463CRITICAL9.1Dell PowerScale OneFS 8.2.x through 9.6.0.x contains a use of a broken or risky cryptographic algorithm vulnerability. A...
CVE-2024-20018CRITICAL9.8In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local escal...
CVE-2024-20017CRITICAL9.8In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to remote cod...
CVE-2024-2156CRITICAL9.8A vulnerability was found in SourceCodester Best POS Management System 1.0. It has been classified as critical. Affected...
CVE-2024-2154CRITICAL9.8A vulnerability has been found in SourceCodester Online Mobile Management Store 1.0 and classified as critical. This vul...
CVE-2024-2153CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Online Mobile Management Store 1.0. This ...
CVE-2024-2152CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Online Mobile Management Store 1.0. ...
CVE-2024-2147CRITICAL9.8A vulnerability was found in SourceCodester Online Mobile Management Store 1.0. It has been rated as critical. Affected ...
CVE-2024-25847CRITICAL9.8SQL Injection vulnerability in MyPrestaModules "Product Catalog (CSV, Excel) Import" (simpleimportproduct) modules for P...
CVE-2024-24302CRITICAL9.8An issue was discovered in Tunis Soft "Product Designer" (productdesigner) module for PrestaShop before version 1.178.36...
CVE-2024-27747CRITICAL9.8File Upload vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a cra...
CVE-2024-27746CRITICAL9.8SQL Injection vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a c...
CVE-2024-27101CRITICAL9.1SpiceDB is an open source, Google Zanzibar-inspired database for creating and managing security-critical application per...
CVE-2024-21767CRITICAL9.4 A remote attacker may be able to bypass access control of Commend WS203VICM by creating a malicious request.
CVE-2024-2077CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Simple Online Bidding System 1.0. This affects a...
CVE-2024-27298CRITICAL10parse-server is a Parse Server for Node.js / Express. This vulnerability allows SQL injection when Parse Server is confi...
CVE-2024-1624CRITICAL9.4An OS Command Injection vulnerability affecting documentation server on 3DEXPERIENCE from Release 3DEXPERIENCE R2022x th...
CVE-2024-2067CRITICAL9.8A vulnerability was found in SourceCodester Computer Inventory System 1.0. It has been declared as critical. This vulner...
CVE-2024-2057CRITICAL9.8A vulnerability was found in LangChain langchain_community 0.0.26. It has been classified as critical. Affected is the f...
CVE-2024-25091CRITICAL9.1Protection mechanism failure issue exists in RevoWorks SCVX prior to scvimage4.10.21_1013 (when using 'VirusChecker' or ...
CVE-2024-25293CRITICAL9.3mjml-app versions 3.0.4 and 3.1.0-beta were discovered to contain a remote code execution (RCE) via the href attribute.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now