2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-24133CRITICAL9.8Atmail v6.6.0 was discovered to contain a SQL injection vulnerability via the username parameter on the login page.
CVE-2024-24303CRITICAL9.8SQL Injection vulnerability in HiPresta "Gift Wrapping Pro" (hiadvancedgiftwrapping) module for PrestaShop before versio...
CVE-2024-1268CRITICAL9.8A vulnerability, which was classified as critical, was found in CodeAstro Restaurant POS System 1.0. This affects an unk...
CVE-2024-24019CRITICAL9.8A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass in crafted offset...
CVE-2024-24004CRITICAL9.8jshERP v3.3 is vulnerable to SQL Injection. The com.jsh.erp.controller.DepotHeadController: com.jsh.erp.utils.BaseRespon...
CVE-2024-24002CRITICAL9.8jshERP v3.3 is vulnerable to SQL Injection. The com.jsh.erp.controller.MaterialController: com.jsh.erp.utils.BaseRespons...
CVE-2024-24001CRITICAL9.8jshERP v3.3 is vulnerable to SQL Injection. via the com.jsh.erp.controller.DepotHeadController: com.jsh.erp.utils.BaseRe...
CVE-2024-1284CRITICAL9.8Use after free in Mojo in Google Chrome prior to 121.0.6167.160 allowed a remote attacker to potentially exploit heap co...
CVE-2024-1283CRITICAL9.8Heap buffer overflow in Skia in Google Chrome prior to 121.0.6167.160 allowed a remote attacker to potentially exploit h...
CVE-2024-1264CRITICAL9.8A vulnerability has been found in Juanpao JPShop up to 1.5.02 and classified as critical. Affected by this vulnerability...
CVE-2024-1263CRITICAL9.8A vulnerability, which was classified as critical, was found in Juanpao JPShop up to 1.5.02. Affected is the function ac...
CVE-2024-1262CRITICAL9.8A vulnerability, which was classified as critical, has been found in Juanpao JPShop up to 1.5.02. This issue affects the...
CVE-2024-24577CRITICAL9.8libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing...
CVE-2024-1261CRITICAL9.8A vulnerability classified as critical was found in Juanpao JPShop up to 1.5.02. This vulnerability affects the function...
CVE-2024-1260CRITICAL9.8A vulnerability classified as critical has been found in Juanpao JPShop up to 1.5.02. This affects the function actionIn...
CVE-2024-1259CRITICAL9.8A vulnerability was found in Juanpao JPShop up to 1.5.02. It has been rated as critical. Affected by this issue is some ...
CVE-2024-1252CRITICAL9.8A vulnerability classified as critical was found in Tongda OA 2017 up to 11.9. Affected by this vulnerability is an unkn...
CVE-2024-24015CRITICAL9.8A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass in crafted offset...
CVE-2024-24013CRITICAL9.8A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass crafted offset, l...
CVE-2024-24000CRITICAL9.8jshERP v3.3 is vulnerable to Arbitrary File Upload. The jshERP-boot/systemConfig/upload interface does not check the upl...
CVE-2024-1251CRITICAL9.8A vulnerability classified as critical has been found in Tongda OA 2017 up to 11.10. Affected is an unknown function of ...
CVE-2024-24592CRITICAL9.8Lack of authentication in all versions of the fileserver component of Allegro AI’s ClearML platform allows a remote atta...
CVE-2024-23917CRITICAL9.8In JetBrains TeamCity before 2023.11.3 authentication bypass leading to RCE was possible
CVE-2024-25140CRITICAL9.8A default installation of RustDesk 1.2.3 on Windows places a WDKTestCert certificate under Trusted Root Certification Au...
CVE-2024-22433CRITICAL9.8 Dell Data Protection Search 19.2.0 and above contain an exposed password opportunity in plain text when using LdapSetti...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now