2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-48023HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in rconnect305 Restau...
CVE-2024-48021HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Paterson Con...
CVE-2024-49320HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dennis Encyclopedi...
CVE-2024-48043HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ShortPixel ShortPi...
CVE-2024-48024HIGH7.5Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Fahad Mahmood Keep Backup Da...
CVE-2024-10068HIGH8.5A vulnerability was found in OpenSight Software FlashFXP 5.4.0.3970. It has been classified as critical. Affected is an ...
CVE-2024-9184HIGH7.2The SendPulse Free Web Push plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and...
CVE-2024-49391HIGH7.3Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Files ...
CVE-2024-49390HIGH7.3Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Files ...
CVE-2024-49389HIGH7.8Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Files ...
CVE-2024-5429HIGH7.6The Logo Slider WordPress plugin before 4.1.0 does not validate and escape some of its Slider Settings before outputtin...
CVE-2024-9861HIGH8.1The Miniorange OTP Verification with Firebase plugin for WordPress is vulnerable to authentication bypass in versions up...
CVE-2024-9215HIGH8.8The Co-Authors, Multiple Authors and Guest Authors in an Author Box with PublishPress Authors plugin for WordPress is vu...
CVE-2024-45766HIGH8.8Dell OpenManage Enterprise, version(s) OME 4.1 and prior, contain(s) an Improper Control of Generation of Code ('Code In...
CVE-2024-7994HIGH7.8A maliciously crafted RFA file, when parsed through Autodesk Revit, can force a Stack-Based Buffer Overflow. A malicious...
CVE-2024-7993HIGH7.8A maliciously crafted PDF file, when parsed through Autodesk Revit, may force an Out-of-Bounds Write vulnerability. A ma...
CVE-2024-48918HIGH8.1RDS Light is a simplified version of the Reflective Dialogue System (RDS), a self-reflecting AI framework. Versions prio...
CVE-2024-46213HIGH7.2REDAXO CMS v2.11.0 was discovered to contain a remote code execution (RCE) vulnerability.
CVE-2024-47522HIGH7.5Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr...
CVE-2024-47188HIGH7.5Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr...
CVE-2024-47187HIGH7.5Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr...
CVE-2024-45797HIGH7.5LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces. Prior to version 0.5.49, unboun...
CVE-2024-45795HIGH7.5Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr...
CVE-2024-4690HIGH8Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD ...
CVE-2024-4189HIGH8Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now