2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-51005HIGH8Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the share_name parameter at usb_...
CVE-2024-50993HIGH8Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the sysNewPasswd parameter at ad...
CVE-2024-10841HIGH8A vulnerability classified as critical was found in romadebrian WEB-Sekolah 1.0. Affected by this vulnerability is an un...
CVE-2024-7059HIGH8.9A high-severity vulnerability that can lead to arbitrary code execution on the system hosting the Web SDK role was found...
CVE-2024-10263HIGH7.3The Tickera – WordPress Event Ticketing plugin for WordPress is vulnerable to arbitrary shortcode execution in all versi...
CVE-2024-51523HIGH7.5Information management vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may aff...
CVE-2024-51518HIGH7.5Vulnerability of message types not being verified in the advanced messaging modul Impact: Successful exploitation of thi...
CVE-2024-47255HIGH7.8In 2N Access Commander versions 3.1.1.2 and prior, a local attacker can escalate their privileges in the system which co...
CVE-2024-47254HIGH7.2In 2N Access Commander versions 3.1.1.2 and prior, an Insufficient Verification of Data Authenticity vulnerability coul...
CVE-2024-47253HIGH7.2In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administr...
CVE-2024-10711HIGH8.8The WooCommerce Report plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu...
CVE-2024-10114HIGH8.1The WooCommerce - Social Login plugin for WordPress is vulnerable to authentication bypass in all versions up to, and in...
CVE-2024-47797HIGH7.8in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sens...
CVE-2024-47404HIGH7.8in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sens...
CVE-2024-47137HIGH7.8in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sens...
CVE-2024-10097HIGH8.1The Loginizer Security and Loginizer plugins for WordPress are vulnerable to authentication bypass in all versions up to...
CVE-2024-9459HIGH8.8Zohocorp ManageEngine Exchange Reporter Plus versions 5718 and prior are vulnerable to authenticated SQL Injection in re...
CVE-2024-10810HIGH7.5A vulnerability was found in code-projects E-Health Care System 1.0. It has been classified as critical. Affected is an ...
CVE-2024-10809HIGH7.5A vulnerability was found in code-projects E-Health Care System 1.0 and classified as critical. This issue affects some ...
CVE-2024-10808HIGH7.5A vulnerability has been found in code-projects E-Health Care System 1.0 and classified as critical. This vulnerability ...
CVE-2024-31998HIGH8.8Combodo iTop is a simple, web based IT Service Management tool. A CSRF can be performed on CSV import simulation. This i...
CVE-2024-51734HIGH8.7Zope AccessControl provides a general security framework for use in Zope. In affected versions anonymous users can delet...
CVE-2024-51500HIGH7.5Meshtastic firmware is a device firmware for the Meshtastic project. The Meshtastic firmware does not check for packets ...
CVE-2024-10805HIGH8.8A vulnerability was found in code-projects University Event Management System 1.0. It has been classified as critical. T...
CVE-2024-30619HIGH7.5Chamilo LMS Version 1.11.26 is vulnerable to Incorrect Access Control. A non-authenticated attacker can request the numb...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now