2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-24691CRITICAL9.8Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Wind...
CVE-2024-1485CRITICAL9.3A flaw was found in the decompression function of registry-support. This issue can be triggered if an unauthenticated re...
CVE-2024-24142CRITICAL9.8Sourcecodester School Task Manager 1.0 allows SQL Injection via the 'subject' parameter.
CVE-2024-1378CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-1374CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-1372CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-1369CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-1359CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-1355CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-21413CRITICAL9.8Microsoft Outlook Remote Code Execution Vulnerability
CVE-2024-21410CRITICAL9.8Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2024-21403CRITICAL9Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability
CVE-2024-21401CRITICAL9.8Microsoft Entra Jira Single-Sign-On Plugin Elevation of Privilege Vulnerability
CVE-2024-21376CRITICAL9Microsoft Azure Kubernetes Service Confidential Container Remote Code Execution Vulnerability
CVE-2024-21364CRITICAL9.3Microsoft Azure Site Recovery Elevation of Privilege Vulnerability
CVE-2024-22923CRITICAL9.8SQL injection vulnerability in adv radius v.2.2.5 allows a local attacker to execute arbitrary code via a crafted script...
CVE-2024-23816CRITICAL9.8A vulnerability has been identified in Location Intelligence Perpetual Large (9DE5110-8CA13-1AX0) (All versions < V4.3),...
CVE-2024-23813CRITICAL9.8A vulnerability has been identified in Polarion ALM (All versions < V2404.0). The REST API endpoints of doorsconnector o...
CVE-2024-23810CRITICAL9.8A vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application is vulnerable to SQ...
CVE-2024-23763CRITICAL9.8SQL Injection vulnerability in Gambio through 4.9.2.0 allows attackers to run arbitrary SQL commands via crafted GET req...
CVE-2024-23761CRITICAL9.8Server Side Template Injection in Gambio 4.9.2.0 allows attackers to run arbitrary code via crafted smarty email templat...
CVE-2024-23759CRITICAL9.8Deserialization of Untrusted Data in Gambio through 4.9.2.0 allows attackers to run arbitrary code via "search" paramete...
CVE-2024-23512CRITICAL9.8Deserialization of Untrusted Data vulnerability in wpxpo ProductX – WooCommerce Builder & Gutenberg WooCommerce Blocks.T...
CVE-2024-24797CRITICAL9.8Deserialization of Untrusted Data vulnerability in G5Theme ERE Recently Viewed – Essential Real Estate Add-On.This issue...
CVE-2024-23513CRITICAL9.8Deserialization of Untrusted Data vulnerability in PropertyHive.This issue affects PropertyHive: from n/a through 2.0.5.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now