2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-25211CRITICAL9.8Simple Expense Tracker v1.0 was discovered to contain a SQL injection vulnerability via the category parameter at /endpo...
CVE-2024-25210CRITICAL9.8Simple Expense Tracker v1.0 was discovered to contain a SQL injection vulnerability via the expense parameter at /endpoi...
CVE-2024-25209CRITICAL9.8Barangay Population Monitoring System 1.0 was discovered to contain a SQL injection vulnerability via the resident param...
CVE-2024-23786CRITICAL9.3Cross-site scripting vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and...
CVE-2024-24691CRITICAL9.8Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Wind...
CVE-2024-1485CRITICAL9.3A flaw was found in the decompression function of registry-support. This issue can be triggered if an unauthenticated re...
CVE-2024-24142CRITICAL9.8Sourcecodester School Task Manager 1.0 allows SQL Injection via the 'subject' parameter.
CVE-2024-1378CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-1374CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-1372CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-1369CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-1359CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-1355CRITICAL9.1A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol...
CVE-2024-21413CRITICAL9.8Microsoft Outlook Remote Code Execution Vulnerability
CVE-2024-21410CRITICAL9.8Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2024-21403CRITICAL9Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability
CVE-2024-21401CRITICAL9.8Microsoft Entra Jira Single-Sign-On Plugin Elevation of Privilege Vulnerability
CVE-2024-21376CRITICAL9Microsoft Azure Kubernetes Service Confidential Container Remote Code Execution Vulnerability
CVE-2024-21364CRITICAL9.3Microsoft Azure Site Recovery Elevation of Privilege Vulnerability
CVE-2024-22923CRITICAL9.8SQL injection vulnerability in adv radius v.2.2.5 allows a local attacker to execute arbitrary code via a crafted script...
CVE-2024-23816CRITICAL9.8A vulnerability has been identified in Location Intelligence Perpetual Large (9DE5110-8CA13-1AX0) (All versions < V4.3),...
CVE-2024-23813CRITICAL9.8A vulnerability has been identified in Polarion ALM (All versions < V2404.0). The REST API endpoints of doorsconnector o...
CVE-2024-23810CRITICAL9.8A vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application is vulnerable to SQ...
CVE-2024-23763CRITICAL9.8SQL Injection vulnerability in Gambio through 4.9.2.0 allows attackers to run arbitrary SQL commands via crafted GET req...
CVE-2024-23761CRITICAL9.8Server Side Template Injection in Gambio 4.9.2.0 allows attackers to run arbitrary code via crafted smarty email templat...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now