2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-21532HIGH7.3All versions of the package ggit are vulnerable to Command Injection via the fetchTags(branch) API, which allows user in...
CVE-2024-8927HIGH7.5In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, HTTP_REDIRECT_STATUS variable is used to ...
CVE-2024-8926HIGH8.8In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, when using a certain non-standard configu...
CVE-2024-45291HIGH8.8PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. It's possible for an attacker to constru...
CVE-2024-45290HIGH7.5PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. It's possible for an attacker to constru...
CVE-2024-45051HIGH8.2Discourse is an open source platform for community discussion. A maliciously crafted email address could allow an attack...
CVE-2024-43365HIGH8.2Cacti is an open source performance and fault management framework. The`consolenewsection` parameter is not properly san...
CVE-2024-43364HIGH8.2Cacti is an open source performance and fault management framework. The `title` parameter is not properly sanitized when...
CVE-2024-43363HIGH7.2Cacti is an open source performance and fault management framework. An admin user can create a device with a malicious h...
CVE-2024-45293HIGH7.5PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. The security scanner responsible for pre...
CVE-2024-31449HIGH8.8Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua...
CVE-2024-47975HIGH7Improper access control validation in firmware of some Solidigm DC Products may allow an attacker with physical access t...
CVE-2024-47559HIGH8.8Authenticated RCE via Path Traversal
CVE-2024-47558HIGH8.8Authenticated RCE via Path Traversal
CVE-2024-44068HIGH8.1An issue was discovered in the m2m scaler driver in Samsung Mobile Processor and Wearable Processor Exynos 9820, 9825, 9...
CVE-2024-47555HIGH8.3Missing Authentication - User & System Configuration
CVE-2024-27458HIGH8.8A potential security vulnerability has been identified in the HP Hotkey Support software, which might allow local escala...
CVE-2024-9570HIGH8.8A vulnerability was found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this issue is the function ...
CVE-2024-46278HIGH8.4Teedy 1.11 is vulnerable to Cross Site Scripting (XSS) via the management console.
CVE-2024-46041HIGH8.8IoT Haat Smart Plug IH-IN-16A-S v5.16.1 is vulnerable to Authentication Bypass by Capture-replay.
CVE-2024-9576HIGH7.8Vulnerability in Distro Linux Workbooth v2.5 that allows to escalate privileges to the root user by manipulating the net...
CVE-2024-9569HIGH8.8A vulnerability has been found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this vulnerability is ...
CVE-2024-9568HIGH8.8A vulnerability, which was classified as critical, was found in D-Link DIR-619L B1 2.06. Affected is the function formAd...
CVE-2024-9567HIGH8.8A vulnerability, which was classified as critical, has been found in D-Link DIR-619L B1 2.06. This issue affects the fun...
CVE-2024-9566HIGH8.8A vulnerability classified as critical was found in D-Link DIR-619L B1 2.06. This vulnerability affects the function for...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now