2024 CVE Vulnerabilities

39,220 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-49761HIGH7.5REXML is an XML toolkit for Ruby. The REXML gem before 3.3.9 has a ReDoS vulnerability when it parses an XML that has ma...
CVE-2024-45802HIGH7.5Squid is an open source caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to Input Validation, Premat...
CVE-2024-10455HIGH7.5Reachable Assertion in BPv7 parser in µD3TN v0.14.0 allows attacker to disrupt service via malformed Extension Block
CVE-2024-50574HIGH7.5In JetBrains YouTrack before 2024.3.47707 potential ReDoS exploit was possible via email header parsing in Helpdesk func...
CVE-2024-50488HIGH8.8Authentication Bypass Using an Alternate Path or Channel vulnerability in yespbs Token Login token-login allows Authenti...
CVE-2024-10447HIGH8.8A vulnerability classified as critical was found in Project Worlds Online Time Table Generator 1.0. Affected by this vul...
CVE-2024-50442HIGH7.2Improper Restriction of XML External Entity Reference vulnerability in WP Royal Royal Elementor Addons royal-elementor-a...
CVE-2024-50416HIGH8.8Deserialization of Untrusted Data vulnerability in WPClever WPC Shop as a Customer for WooCommerce wpc-shop-as-customer ...
CVE-2024-50408HIGH8.8Deserialization of Untrusted Data vulnerability in Bob Namaste! LMS namaste-lms allows Object Injection.This issue affec...
CVE-2024-48074HIGH8An authorized RCE vulnerability exists in the DrayTek Vigor2960 router version 1.4.4, where an attacker can place a mali...
CVE-2024-10446HIGH7.2A vulnerability classified as critical has been found in Project Worlds Online Time Table Generator 1.0. Affected is an ...
CVE-2024-9162HIGH7.2The All-in-One WP Migration and Backup plugin for WordPress is vulnerable to arbitrary PHP Code Injection due to missing...
CVE-2024-10439HIGH7.5The eHRD CTMS from Sunnet has an Insecure Direct Object Reference (IDOR) vulnerability, allowing unauthenticated remote ...
CVE-2024-10438HIGH7.5The eHRD CTMS from Sunnet has an Authentication Bypass vulnerability, allowing unauthenticated remote attackers to bypas...
CVE-2024-50067HIGH7.8In the Linux kernel, the following vulnerability has been resolved: uprobe: avoid out-of-bounds memory access of fetchi...
CVE-2024-50616HIGH8.8Ironman PowerShell Universal 5.x before 5.0.12 allows an authenticated attacker to elevate their privileges and view job...
CVE-2024-50611HIGH7.2CycloneDX cdxgen through 10.10.7, when run against an untrusted codebase, may execute code contained within build-relate...
CVE-2024-10429HIGH7.2A vulnerability classified as critical has been found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. Affected...
CVE-2024-10428HIGH7.2A vulnerability was found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. It has been rated as critical. This ...
CVE-2024-10417HIGH8.8A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been classified as critical. Affecte...
CVE-2024-10416HIGH8.8A vulnerability was found in code-projects Blood Bank Management System 1.0 and classified as critical. This issue affec...
CVE-2024-10415HIGH8.8A vulnerability has been found in code-projects Blood Bank Management System 1.0 and classified as critical. This vulner...
CVE-2024-10411HIGH7.2A vulnerability was found in SourceCodester Online Hotel Reservation System 1.0. It has been classified as critical. Aff...
CVE-2024-10410HIGH7.2A vulnerability classified as critical was found in SourceCodester Online Hotel Reservation System 1.0. Affected by this...
CVE-2024-10409HIGH8.8A vulnerability was found in code-projects Blood Bank Management 1.0 and classified as critical. This issue affects some...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now