2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-4184HIGH8Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD ...
CVE-2024-38814HIGH8.8An authenticated SQL injection vulnerability in VMware HCX was privately reported to VMware. A malicious authenticated ...
CVE-2024-20463HIGH7.1A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could al...
CVE-2024-20459HIGH7.2A vulnerability in the web-based management interface of Cisco ATA 190 Multiplatform Series Analog Telephone Adapter fir...
CVE-2024-20458HIGH8.2A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could al...
CVE-2024-20420HIGH8.8A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could al...
CVE-2024-9348HIGH8.9Docker Desktop before v4.34.3 allows RCE via unsanitized GitHub source link in Build view.
CVE-2024-45844HIGH8.6BIG-IP monitor functionality may allow an attacker to bypass access control restrictions, regardless of the port lockdow...
CVE-2024-49253HIGH8.6Relative Path Traversal vulnerability in JamesPark.ninja Analyse Uploads analyse-uploads allows Relative Path Traversal....
CVE-2024-49251HIGH7.5Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-49245HIGH7.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in nahimsalami Ahime Image ...
CVE-2024-49226HIGH8.8Deserialization of Untrusted Data vulnerability in taketin TAKETIN To WP Membership taketin-to-wp-membership allows Obje...
CVE-2024-48029HIGH7.5Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2024-47645HIGH7.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Danish Ali Malik Top Bar...
CVE-2024-47637HIGH8.8Relative Path Traversal vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Path Traversal.Th...
CVE-2024-47351HIGH7.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The CSSIgniter Team MaxS...
CVE-2024-22032HIGH7.1A vulnerability has been identified in which an RKE1 cluster keeps constantly reconciling when secrets encryption confi...
CVE-2024-22030HIGH8A vulnerability has been identified within Rancher that can be exploited in narrow circumstances through a man-in-the-m...
CVE-2024-22029HIGH7.8Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalat...
CVE-2024-49271HIGH7.2Deserialization of Untrusted Data vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Ad...
CVE-2024-10024HIGH8.8A vulnerability, which was classified as critical, has been found in code-projects Pharmacy Management System 1.0. This ...
CVE-2024-10023HIGH8.8A vulnerability classified as critical was found in code-projects Pharmacy Management System 1.0. This vulnerability aff...
CVE-2024-8040HIGH7.7An authorization bypass through user-controlled key vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R...
CVE-2024-9858HIGH7.8There exists an insecure default user permission in Google Cloud Migrate to containers from version 1.1.0 to 1.2.2 Windo...
CVE-2024-45711HIGH8.8SolarWinds Serv-U is vulnerable to a directory traversal vulnerability where remote code execution is possible dependi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now