2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-10135HIGH8.8A vulnerability was found in ESAFENET CDG 5. It has been classified as critical. This affects the function actionDelNetS...
CVE-2024-10134HIGH8.8A vulnerability was found in ESAFENET CDG 5 and classified as critical. Affected by this issue is the function connectLo...
CVE-2024-10133HIGH8.8A vulnerability has been found in ESAFENET CDG 5 and classified as critical. Affected by this vulnerability is the funct...
CVE-2024-21536HIGH7.5Versions of the package http-proxy-middleware before 2.0.7, from 3.0.0 and before 3.0.3 are vulnerable to Denial of Serv...
CVE-2024-10131HIGH8.8The `add_llm` function in `llm_app.py` in infiniflow/ragflow version 0.11.0 contains a remote code execution (RCE) vulne...
CVE-2024-37404HIGH8.8Improper Input Validation in the admin portal of Ivanti Connect Secure before 22.7R2.1 and 9.1R18.9, or Ivanti Policy Se...
CVE-2024-29821HIGH7.8Ivanti DSM < version 2024.2 allows authenticated users on the local machine to run code with elevated privileges due to ...
CVE-2024-29213HIGH7.8Ivanti DSM < version 2024.2 allows authenticated users on the local machine to run code with elevated privileges due to ...
CVE-2024-10130HIGH8.8A vulnerability classified as critical was found in Tenda AC8 16.03.34.06. This vulnerability affects the function formS...
CVE-2024-10123HIGH8.8A vulnerability was found in Tenda AC8 16.03.34.06. It has been declared as critical. Affected by this vulnerability is ...
CVE-2024-49361HIGH8.1ACON is a widely-used library of tools for machine learning that focuses on adaptive correlation optimization. A potenti...
CVE-2024-9593HIGH8.3The Time Clock plugin and Time Clock Pro plugin for WordPress are vulnerable to Remote Code Execution in versions up to,...
CVE-2024-48016HIGH8.8Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains a Use of a Broken or Risky Cryptographi...
CVE-2024-47241HIGH8.1Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains an Improper Certificate Validation vuln...
CVE-2024-49243HIGH8.8Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-4740HIGH7.5MXsecurity software versions v1.1.0 and prior are vulnerable because of the use of hard-coded credentials. This vulnerab...
CVE-2024-4739HIGH7.5The lack of access restriction to a resource from unauthorized users makes MXsecurity software versions v1.1.0 and prior...
CVE-2024-47487HIGH8.8There is a SQL injection vulnerability in some HikCentral Professional versions. This could allow an authenticated user ...
CVE-2024-10079HIGH8.8The WP Easy Post Types plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.4....
CVE-2024-9264HIGH8.8The SQL Expressions experimental feature of Grafana allows for the evaluation of `duckdb` queries containing user input....
CVE-2024-43596HIGH8.8Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-43595HIGH8.8Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-43587HIGH8.1Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-43579HIGH8.3Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-43578HIGH8.3Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now