2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-37423HIGH8.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Automattic Newspack Bloc...
CVE-2024-37232HIGH8.8Missing Authorization vulnerability in Hercules Design Hercules Core allows Exploiting Incorrectly Configured Access Con...
CVE-2024-37108HIGH7.7Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WishList Products WishLi...
CVE-2024-37106HIGH8.2Missing Authorization vulnerability in WishList Products WishList Member X allows Exploiting Incorrectly Configured Acce...
CVE-2024-27524HIGH7.1Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 allows a remote attacker to escalate privileges via a crafte...
CVE-2024-48270HIGH7.5An issue in the component /logins of oasys v1.1 allows attackers to access sensitive information via a burst attack.
CVE-2024-10653HIGH7.2IDExpert from CHANGING Information Technology does not properly validate a specific parameter in the administrator inter...
CVE-2024-0106HIGH8.7NVIDIA ConnectX Host Firmware for the BlueField Data Processing Unit (DPU) contains a vulnerability where an attacker ma...
CVE-2024-0105HIGH8.9NVIDIA ConnectX Firmware contains a vulnerability where an attacker may cause an improper handling of insufficient privi...
CVE-2024-47939HIGH7.7Stack-based buffer overflow vulnerability exists in multiple laser printers and MFPs which implement Ricoh Web Image Mon...
CVE-2024-10613HIGH8.8A vulnerability was found in ESAFENET CDG 5. It has been declared as critical. Affected by this vulnerability is the fun...
CVE-2024-10612HIGH8.8A vulnerability was found in ESAFENET CDG 5. It has been classified as critical. Affected is the function removeHookInva...
CVE-2024-10611HIGH8.8A vulnerability was found in ESAFENET CDG 5 and classified as critical. This issue affects the function delProtocol of t...
CVE-2024-10610HIGH8.8A vulnerability has been found in ESAFENET CDG 5 and classified as critical. This vulnerability affects the function del...
CVE-2024-10599HIGH7.5A vulnerability, which was classified as problematic, has been found in Tongda OA 2017 up to 11.7. This issue affects so...
CVE-2024-10596HIGH8.8A vulnerability was found in ESAFENET CDG 5. It has been rated as critical. Affected by this issue is the function delEn...
CVE-2024-10594HIGH8.8A vulnerability was found in ESAFENET CDG 5. It has been classified as critical. Affected is the function docHistory of ...
CVE-2024-48360HIGH7.5Qualitor v8.24 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /request/viewValidacao.p...
CVE-2024-39722HIGH7.5An issue was discovered in Ollama before 0.1.46. It exposes which files exist on the server on which it is deployed via ...
CVE-2024-39721HIGH7.5An issue was discovered in Ollama before 0.1.34. The CreateModelHandler function uses os.Open to read a file until compl...
CVE-2024-39720HIGH8.2An issue was discovered in Ollama before 0.1.46. An attacker can use two HTTP requests to upload a malformed GGUF file c...
CVE-2024-39719HIGH7.5An issue was discovered in Ollama through 0.3.14. File existence disclosure can occur via api/create. When calling the C...
CVE-2024-51066HIGH7.5An Insecure Direct Object Reference (IDOR) vulnerability in appointment-detail.php in Phpgurukul's Beauty Parlour Manage...
CVE-2024-48200HIGH8.4An issue in MobaXterm v24.2 allows a local attacker to escalate privileges and execute arbitrary code via the remove fun...
CVE-2024-8185HIGH7.5Vault Community and Vault Enterprise (“Vault”) clusters using Vault’s Integrated Storage backend are vulnerable to a den...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now