2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-45562HIGH7.8Memory corruption during concurrent access to server info object due to unprotected critical field.
CVE-2024-45554HIGH7Memory corruption during concurrent SSR execution due to race condition on the global maps list.
CVE-2024-58134HIGH8.1Mojolicious versions from 0.999922 for Perl uses a hard coded string, or the application's class name, as an HMAC sessio...
CVE-2024-13738HIGH7.3The The Motors - Car Dealer, Rental & Listing WordPress theme theme for WordPress is vulnerable to arbitrary shortcode e...
CVE-2024-11142HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Gosoft Software Proticaret E-Commerce allows Cross Site Request Forge...
CVE-2024-13418HIGH8.8Multiple plugins and/or themes for WordPress are vulnerable to Arbitrary File Uploads due to a missing capability check ...
CVE-2024-13344HIGH7.5The Advance Seat Reservation Management for WooCommerce plugin for WordPress is vulnerable to SQL Injection via the 'pro...
CVE-2024-13322HIGH7.5The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to SQL Injection via...
CVE-2024-52903HIGH7.5IBM Db2 for Linux, UNIX and Windows 12.1.0 and 12.1.1 is vulnerable to a denial of service as the server may crash under...
CVE-2024-48907HIGH7.5Sematell ReplyOne 7.4.3.0 allows SSRF via the application server API.
CVE-2024-52979HIGH7.5Uncontrolled Resource Consumption in Elasticsearch while evaluating specifically crafted search templates with Mustache ...
CVE-2024-52976HIGH7.8Inclusion of functionality from an untrusted control sphere in Elastic Agent subprocess, osqueryd, allows local attacker...
CVE-2024-6032HIGH7.8Tesla Model S Iris Modem ql_atfwd Command Injection Code Execution Vulnerability. This vulnerability allows local attack...
CVE-2024-6031HIGH7.8Tesla Model S oFono AT Command Heap-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows local ...
CVE-2024-6030HIGH7Tesla Model S oFono Unnecessary Privileges Sandbox Escape Vulnerability. This vulnerability allows local attackers to es...
CVE-2024-13943HIGH7.8Tesla Model S Iris Modem QCMAP_ConnectionManager Improper Input Validation Sandbox Escape Vulnerability. This vulnerabil...
CVE-2024-9876HIGH8.5: Modification of Assumed-Immutable Data (MAID) vulnerability in ABB ANC, ABB ANC-L, ABB ANC-mini.This issue affects ANC...
CVE-2024-57698HIGH7.5An issue in modernwms v.1.0 allows an attacker view the MD5 hash of the administrator password and other attributes with...
CVE-2024-13808HIGH8.8The Xpro Elementor Addons - Pro plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and i...
CVE-2024-6199HIGH7.7An unauthenticated attacker on the WAN interface, with the ability to intercept Dynamic DNS (DDNS) traffic between DDNS ...
CVE-2024-6198HIGH7.7The device exposes a web interface on ports TCP/3030 and TCP/9882. This web service runs lighttpd, which implements the ...
CVE-2024-11917HIGH8.1The JobSearch WP Job Board plugin for WordPress is vulnerable to authentication bypass in all versions up to, and includ...
CVE-2024-33452HIGH7.7An issue in OpenResty lua-nginx-module v.0.10.26 and before allows a remote attacker to conduct HTTP request smuggling v...
CVE-2024-46546HIGH7.3NEXTU FLETA AX1500 WIFI6 Router v1.0.3 was discovered to contain a stack overflow via the url parameter at /boafrm/formF...
CVE-2024-40445HIGH7.3A directory traversal vulnerability in forkosh Mime TeX before version 1.77 allows attackers on Windows systems to read ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now