2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-49522HIGH7.8Substance3D - Painter versions 10.0.1 and earlier are affected by an out-of-bounds write vulnerability that could result...
CVE-2024-52022HIGH8Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a comman...
CVE-2024-52021HIGH8Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the wan_gateway parameter at bsw...
CVE-2024-52020HIGH8Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the wan_gateway parameter at wiz...
CVE-2024-52019HIGH8Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the wan_gateway parameter at gen...
CVE-2024-52018HIGH8Netgear XR300 v1.0.3.78 was discovered to contain a command injection vulnerability in the system_name parameter at geni...
CVE-2024-51024HIGH8D-Link DIR_823G 1.0.2B05 was discovered to contain a command injection vulnerability via the HostName parameter in the S...
CVE-2024-51023HIGH8.8D-Link DIR_823G 1.0.2B05 was discovered to contain a command injection vulnerability via the Address parameter in the Se...
CVE-2024-51021HIGH8Netgear XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 was discovered to contain a command injection vulnera...
CVE-2024-51010HIGH8Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a comman...
CVE-2024-51009HIGH8Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the wan_gateway parameter at eth...
CVE-2024-51008HIGH8Netgear XR300 v1.0.3.78 was discovered to contain a command injection vulnerability in the system_name parameter at wiz_...
CVE-2024-51005HIGH8Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the share_name parameter at usb_...
CVE-2024-50993HIGH8Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the sysNewPasswd parameter at ad...
CVE-2024-10841HIGH8A vulnerability classified as critical was found in romadebrian WEB-Sekolah 1.0. Affected by this vulnerability is an un...
CVE-2024-7059HIGH8.9A high-severity vulnerability that can lead to arbitrary code execution on the system hosting the Web SDK role was found...
CVE-2024-10263HIGH7.3The Tickera – WordPress Event Ticketing plugin for WordPress is vulnerable to arbitrary shortcode execution in all versi...
CVE-2024-51523HIGH7.5Information management vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may aff...
CVE-2024-51518HIGH7.5Vulnerability of message types not being verified in the advanced messaging modul Impact: Successful exploitation of thi...
CVE-2024-47255HIGH7.8In 2N Access Commander versions 3.1.1.2 and prior, a local attacker can escalate their privileges in the system which co...
CVE-2024-47254HIGH7.2In 2N Access Commander versions 3.1.1.2 and prior, an Insufficient Verification of Data Authenticity vulnerability coul...
CVE-2024-47253HIGH7.2In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administr...
CVE-2024-10711HIGH8.8The WooCommerce Report plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu...
CVE-2024-10114HIGH8.1The WooCommerce - Social Login plugin for WordPress is vulnerable to authentication bypass in all versions up to, and in...
CVE-2024-47797HIGH7.8in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sens...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now