2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-51492HIGH8.8Zusam is a free and open-source way to self-host private forums. Prior to version 0.5.6, specially crafted SVG files upl...
CVE-2024-51248HIGH8.8In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman...
CVE-2024-51247HIGH8.8In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman...
CVE-2024-51245HIGH8.8In DrayTek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman...
CVE-2024-51244HIGH8.8In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman...
CVE-2024-49770HIGH7.7`oak` is a middleware framework for Deno's native HTTP server, Deno Deploy, Node.js 16.5 and later, Cloudflare Workers a...
CVE-2024-48352HIGH7.5Yealink Meeting Server before V26.0.0.67 is vulnerable to sensitive data exposure in the server response via sending HTT...
CVE-2024-48217HIGH8.8An Insecure Direct Object Reference (IDOR) in the dashboard of SiSMART v7.4.0 allows attackers to execute a horizontal-p...
CVE-2024-41744HIGH8.8IBM CICS TX Standard 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious...
CVE-2024-40490HIGH7.5An issue in Sourcebans++ before v.1.8.0 allows a remote attacker to obtain sensitive information via a crafted XAJAX cal...
CVE-2024-22733HIGH7.5TP Link MR200 V4 Firmware version 210201 was discovered to contain a null-pointer-dereference in the web administration ...
CVE-2024-10662HIGH8.8A vulnerability was found in Tenda AC15 15.03.05.19 and classified as critical. This issue affects the function formSetD...
CVE-2024-10661HIGH8.8A vulnerability has been found in Tenda AC15 15.03.05.19 and classified as critical. This vulnerability affects the func...
CVE-2024-49256HIGH8.8Incorrect Authorization vulnerability in WP Chill Htaccess File Editor htaccess-file-editor allows Accessing Functionali...
CVE-2024-48045HIGH8.8Missing Authorization vulnerability in HappyMonster Happy Addons for Elementor happy-elementor-addons allows Exploiting ...
CVE-2024-48044HIGH8.8Missing Authorization vulnerability in ShortPixel ShortPixel Image Optimizer shortpixel-image-optimiser allows Exploitin...
CVE-2024-48039HIGH8.8Missing Authorization vulnerability in Imran Tauqeer CubeWP cubewp-framework allows Exploiting Incorrectly Configured Ac...
CVE-2024-47362HIGH8.8Missing Authorization vulnerability in WP Chill Strong Testimonials strong-testimonials.This issue affects Strong Testim...
CVE-2024-47361HIGH8.8Missing Authorization vulnerability in WPVibes Elementor Addon Elements addon-elements-for-elementor-page-builder.This i...
CVE-2024-47318HIGH8.8Missing Authorization vulnerability in Magazine3 PWA for WP & AMP pwa-for-wp.This issue affects PWA for WP & AMP: from n...
CVE-2024-47317HIGH8.8Missing Authorization vulnerability in Ads by WPQuads Ads by WPQuads quick-adsense-reloaded.This issue affects Ads by WP...
CVE-2024-47314HIGH8.8Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incor...
CVE-2024-44052HIGH8.8Missing Authorization vulnerability in HelloAsso HelloAsso helloasso.This issue affects HelloAsso: from n/a through <= 1...
CVE-2024-44031HIGH8.8Missing Authorization vulnerability in beardev JoomSport joomsport-sports-league-results-management.This issue affects J...
CVE-2024-44021HIGH8.8Missing Authorization vulnerability in truepushplugin Truepush truepush-free-web-push-notifications.This issue affects T...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now