2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-24004CRITICAL9.8jshERP v3.3 is vulnerable to SQL Injection. The com.jsh.erp.controller.DepotHeadController: com.jsh.erp.utils.BaseRespon...
CVE-2024-24002CRITICAL9.8jshERP v3.3 is vulnerable to SQL Injection. The com.jsh.erp.controller.MaterialController: com.jsh.erp.utils.BaseRespons...
CVE-2024-24001CRITICAL9.8jshERP v3.3 is vulnerable to SQL Injection. via the com.jsh.erp.controller.DepotHeadController: com.jsh.erp.utils.BaseRe...
CVE-2024-1284CRITICAL9.8Use after free in Mojo in Google Chrome prior to 121.0.6167.160 allowed a remote attacker to potentially exploit heap co...
CVE-2024-1283CRITICAL9.8Heap buffer overflow in Skia in Google Chrome prior to 121.0.6167.160 allowed a remote attacker to potentially exploit h...
CVE-2024-1264CRITICAL9.8A vulnerability has been found in Juanpao JPShop up to 1.5.02 and classified as critical. Affected by this vulnerability...
CVE-2024-1263CRITICAL9.8A vulnerability, which was classified as critical, was found in Juanpao JPShop up to 1.5.02. Affected is the function ac...
CVE-2024-1262CRITICAL9.8A vulnerability, which was classified as critical, has been found in Juanpao JPShop up to 1.5.02. This issue affects the...
CVE-2024-24577CRITICAL9.8libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing...
CVE-2024-1261CRITICAL9.8A vulnerability classified as critical was found in Juanpao JPShop up to 1.5.02. This vulnerability affects the function...
CVE-2024-1260CRITICAL9.8A vulnerability classified as critical has been found in Juanpao JPShop up to 1.5.02. This affects the function actionIn...
CVE-2024-1259CRITICAL9.8A vulnerability was found in Juanpao JPShop up to 1.5.02. It has been rated as critical. Affected by this issue is some ...
CVE-2024-1252CRITICAL9.8A vulnerability classified as critical was found in Tongda OA 2017 up to 11.9. Affected by this vulnerability is an unkn...
CVE-2024-24015CRITICAL9.8A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass in crafted offset...
CVE-2024-24013CRITICAL9.8A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass crafted offset, l...
CVE-2024-24000CRITICAL9.8jshERP v3.3 is vulnerable to Arbitrary File Upload. The jshERP-boot/systemConfig/upload interface does not check the upl...
CVE-2024-1251CRITICAL9.8A vulnerability classified as critical has been found in Tongda OA 2017 up to 11.10. Affected is an unknown function of ...
CVE-2024-24592CRITICAL9.8Lack of authentication in all versions of the fileserver component of Allegro AI’s ClearML platform allows a remote atta...
CVE-2024-23917CRITICAL9.8In JetBrains TeamCity before 2023.11.3 authentication bypass leading to RCE was possible
CVE-2024-25140CRITICAL9.8A default installation of RustDesk 1.2.3 on Windows places a WDKTestCert certificate under Trusted Root Certification Au...
CVE-2024-22433CRITICAL9.8 Dell Data Protection Search 19.2.0 and above contain an exposed password opportunity in plain text when using LdapSetti...
CVE-2024-22853CRITICAL9.8D-LINK Go-RT-AC750 GORTAC750_A1_FW_v101b03 has a hardcoded password for the Alphanetworks account, which allows remote a...
CVE-2024-22852CRITICAL9.8D-Link Go-RT-AC750 GORTAC750_A1_FW_v101b03 contains a stack-based buffer overflow via the function genacgi_main. This vu...
CVE-2024-24112CRITICAL9.8xmall v1.1 was discovered to contain a SQL injection vulnerability via the orderDir parameter.
CVE-2024-0244CRITICAL9.8Buffer overflow in CPCA PCFAX number process of Office Multifunction Printers and Laser Printers(*) which may allow an a...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now