2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-48636HIGH8D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via th...
CVE-2024-48635HIGH8D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via th...
CVE-2024-48634HIGH8D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via th...
CVE-2024-48633HIGH8D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain multiple command injection vulnerabiliti...
CVE-2024-48632HIGH8D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain multiple command injection vulnerabiliti...
CVE-2024-48631HIGH8D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via th...
CVE-2024-48630HIGH8D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via th...
CVE-2024-48629HIGH8D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via th...
CVE-2024-47312HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Grim Classic Ed...
CVE-2024-47304HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Shahjahan Jewel Fl...
CVE-2024-43997HIGH7.1Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in easy.Jobs E...
CVE-2024-49399HIGH8.7The affected product is vulnerable to an attacker being able to use commands without providing a password which may allo...
CVE-2024-49398HIGH8.8The affected product is vulnerable to unrestricted file uploads, which may allow an attacker to remotely execute code.
CVE-2024-49396HIGH8.7The affected product is vulnerable due to insufficiently protected credentials, which may allow an attacker to impersona...
CVE-2024-48192HIGH8Tenda G3 v15.01.0.5(2848_755)_EN was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which a...
CVE-2024-10073HIGH7.5A vulnerability, which was classified as critical, was found in flairNLP flair 0.14.0. Affected is the function Clusteri...
CVE-2024-10072HIGH8.8A vulnerability, which was classified as critical, has been found in ESAFENET CDG 5. This issue affects the function act...
CVE-2024-9414HIGH7In LAquis SCADA version 4.7.1.511, a cross-site scripting vulnerability could allow an attacker to inject arbitrary code...
CVE-2024-10071HIGH8.8A vulnerability classified as critical was found in ESAFENET CDG 5. This vulnerability affects the function actionUpdate...
CVE-2024-10070HIGH8.8A vulnerability classified as critical has been found in ESAFENET CDG 5. This affects the function actionPolicyPush of t...
CVE-2024-10069HIGH8.8A vulnerability was found in ESAFENET CDG 5. It has been rated as critical. Affected by this issue is the function actio...
CVE-2024-6333HIGH7.2Authenticated Remote Code Execution in Altalink, Versalink & WorkCentre Products.
CVE-2024-49315HIGH8.6Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in CodeFlock FREE DOWNLOAD ...
CVE-2024-48048HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in GabbyKhrmon Wsify Widget wsify-widget allows Stored XSS.This issue af...
CVE-2024-48032HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sumitsurai Feature...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now