2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-45261HIGH8An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The SID...
CVE-2024-45260HIGH8An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. Users w...
CVE-2024-10327HIGH8.1A vulnerability in Okta Verify for iOS versions 9.25.1 (beta) and 9.27.0 (including beta) allows push notification respo...
CVE-2024-45242HIGH7.8EnGenius ENH1350EXT A8J-ENH1350EXT devices through 3.9.3.2_c1.9.51 allow (blind) OS Command Injection via shell metachar...
CVE-2024-48454HIGH7.2An issue in SourceCodester Purchase Order Management System v1.0 allows a remote attacker to execute arbitrary code via ...
CVE-2024-48427HIGH8.8A SQL injection vulnerability in Sourcecodester Packers and Movers Management System v1.0 allows remote authenticated us...
CVE-2024-48142HIGH7.5A prompt injection vulnerability in the chatbox of Butterfly Effect Limited Monica ChatGPT AI Assistant v2.4.0 allows at...
CVE-2024-48141HIGH7.5A prompt injection vulnerability in the chatbox of Zhipu AI CodeGeeX v2.17.0 allows attackers to access and exfiltrate a...
CVE-2024-48140HIGH7.5A prompt injection vulnerability in the chatbox of Butterfly Effect Limited Monica Your AI Copilot powered by ChatGPT4 v...
CVE-2024-48139HIGH7.5A prompt injection vulnerability in the chatbox of Blackbox AI v1.3.95 allows attackers to access and exfiltrate all pre...
CVE-2024-48441HIGH8.8Wuhan Tianyu Information Industry Co., Ltd Tianyu CPE Router CommonCPExCPETS_v3.2.468.11.04_P4 was discovered to contain...
CVE-2024-48440HIGH8.8Shenzhen Tuoshi Network Communications Co.,Ltd 5G CPE Router NR500-EA RG500UEAABxCOMSLICv3.2.2543.12.18 was discovered t...
CVE-2024-10338HIGH7.2A vulnerability classified as critical was found in SourceCodeHero Clothes Recommendation System 1.0. Affected by this v...
CVE-2024-10337HIGH7.2A vulnerability classified as critical has been found in SourceCodeHero Clothes Recommendation System 1.0. Affected is a...
CVE-2024-10313HIGH8.6iniNet Solutions SpiderControl SCADA PC HMI Editor has a path traversal vulnerability. When the software loads a malici...
CVE-2024-10295HIGH7.5A flaw was found in Gateway. Sending a non-base64 'basic' auth with special characters can cause APICast to incorrectly ...
CVE-2024-48547HIGH8.4Incorrect access control in the firmware update and download processes of DreamCatcher Life v1.8.7 allows attackers to a...
CVE-2024-48546HIGH8.4Incorrect access control in the firmware update and download processes of Wear Sync v1.2.0 allows attackers to access se...
CVE-2024-48545HIGH8.4Incorrect access control in the firmware update and download processes of IVY Smart v4.5.0 allows attackers to access se...
CVE-2024-48544HIGH8.4Incorrect access control in the firmware update and download processes of Sylvania Smart Home v3.0.3 allows attackers to...
CVE-2024-48542HIGH8.4Incorrect access control in the firmware update and download processes of Yamaha Headphones Controller v1.6.7 allows att...
CVE-2024-48541HIGH8.4Incorrect access control in the firmware update and download processes of Ruochan Smart v4.4.7 allows attackers to acces...
CVE-2024-5608HIGH8.1Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to SQL Injection in the technician reports feature...
CVE-2024-49691HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WBW Plugins Produc...
CVE-2024-10331HIGH8.8A vulnerability, which was classified as critical, has been found in PHPGurukul Vehicle Record System 1.0. This issue af...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now