2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-49657HIGH7.7Missing Authorization vulnerability in Renata Bracichowicz 3D Work In Progress renee-work-in-progress allows Exploiting ...
CVE-2024-49675HIGH8.8Authentication Bypass Using an Alternate Path or Channel vulnerability in Vitalii iBryl Switch User ibryl-switch-user al...
CVE-2024-47904HIGH8.5A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fir...
CVE-2024-10290HIGH7.5A vulnerability, which was classified as problematic, was found in ZZCMS 2023. This affects an unknown part of the file ...
CVE-2024-10283HIGH8.8A vulnerability, which was classified as critical, has been found in Tenda RX9 and RX9 Pro 22.03.02.20. Affected by this...
CVE-2024-10282HIGH8.8A vulnerability classified as critical was found in Tenda RX9 and RX9 Pro 22.03.02.10/22.03.02.20. Affected by this vuln...
CVE-2024-10281HIGH8.8A vulnerability classified as critical has been found in Tenda RX9 and RX9 Pro 22.03.02.10/22.03.02.20. Affected is the ...
CVE-2024-10280HIGH7.5A vulnerability was found in Tenda AC6, AC7, AC8, AC9, AC10, AC10U, AC15, AC18, AC500 and AC1206 up to 20241022. It has ...
CVE-2024-50066HIGH7In the Linux kernel, the following vulnerability has been resolved: mm/mremap: fix move_normal_pmd/retract_page_tables ...
CVE-2024-9927HIGH7.2The WooCommerce Order Proposal plugin for WordPress is vulnerable to privilege escalation via order proposal in all vers...
CVE-2024-7587HIGH7.8Incorrect Default Permissions vulnerability in GenBroker32, which is included in the installers for Mitsubishi Electric ...
CVE-2024-48657HIGH7.2SQL Injection vulnerability in hospital management system in php with source code v.1.0.0 allows a remote attacker to ex...
CVE-2024-46482HIGH8.2An arbitrary file upload vulnerability in the Ticket Generation function of Ladybird Web Solution Faveo-Helpdesk v2.0.3 ...
CVE-2024-44331HIGH7.5Incorrect Access Control in GStreamer RTSP server 1.25.0 in gst-rtsp-server/rtsp-media.c allows remote attackers to caus...
CVE-2024-43812HIGH8.6Kieback & Peter's DDC4000 series has an insufficiently protected credentials vulnerability, which may allow an unauthent...
CVE-2024-42643HIGH7.5Integer Overflow in fast_ping.c in SmartDNS Release46 allows remote attackers to cause a Denial of Service via misaligne...
CVE-2024-31029HIGH8.2An issue in the server_handle_regular function of the test_coap_server.c file within the FreeCoAP project allows remote ...
CVE-2024-10231HIGH8.8Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corru...
CVE-2024-10230HIGH8.8Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corru...
CVE-2024-10229HIGH8.1Inappropriate implementation in Extensions in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to bypass s...
CVE-2024-48903HIGH7.8An improper access control vulnerability in Trend Micro Deep Security Agent 20 could allow a local attacker to escalate ...
CVE-2024-45334HIGH7.8Trend Micro Antivirus One versions 3.10.4 and below (Consumer) is vulnerable to an Arbitrary Configuration Update that c...
CVE-2024-41183HIGH7.8Trend Micro VPN, version 5.8.1012 and below is vulnerable to an arbitrary file overwrite under specific conditions that ...
CVE-2024-39753HIGH7.5An modOSCE SQL Injection vulnerability in Trend Micro Apex One could allow a remote attacker to execute arbitrary code o...
CVE-2024-9287HIGH7.8A vulnerability has been found in the CPython `venv` module and CLI where path names provided when creating a virtual en...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now