2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-28809HIGH8.8An issue was discovered in Infinera hiT 7300 5.60.50. Cleartext storage of sensitive password in firmware update package...
CVE-2024-46549HIGH7.6An issue in the TP-Link MQTT Broker and API gateway of TP-Link Kasa KP125M v1.0.3 allows attackers to establish connecti...
CVE-2024-46510HIGH7.6ESAFENET CDG v5 was discovered to contain a SQL injection vulnerability via the id parameter in the NavigationAjax inter...
CVE-2024-46313HIGH8TP-Link WR941ND V6 has a stack overflow vulnerability in the ssid parameter in /userRpm/popupSiteSurveyRpm.htm.
CVE-2024-46280HIGH8.8PIX-LINK LV-WR22 RE3002-P1-01_V117.0 is vulnerable to Improper Access Control. The TELNET service is enabled with weak c...
CVE-2024-45772HIGH8Deserialization of Untrusted Data vulnerability in Apache Lucene Replicator. This issue affects Apache Lucene's replica...
CVE-2024-8458HIGH8.8Certain switch models from PLANET Technology have a web application that is vulnerable to Cross-Site Request Forgery (CS...
CVE-2024-8454HIGH7.5The swctrl service is used to detect and remotely manage PLANET Technology devices. Certain switch models have a Denial-...
CVE-2024-6394HIGH7.5A Local File Inclusion vulnerability exists in parisneo/lollms-webui versions below v9.8. The vulnerability is due to un...
CVE-2024-8452HIGH7.5Certain switch models from PLANET Technology only support obsolete algorithms for authentication protocol and encryption...
CVE-2024-8451HIGH7.5Certain switch models from PLANET Technology have an SSH service that improperly handles insufficiently authenticated co...
CVE-2024-8448HIGH8.8Certain switch models from PLANET Technology have a hard-coded credential in the specific command-line interface, allowi...
CVE-2024-8379HIGH7.2The Cost Calculator Builder WordPress plugin before 3.2.29 does not properly sanitise and escape a parameter before usin...
CVE-2024-9325HIGH7.8A vulnerability classified as critical has been found in Intelbras InControl up to 2.21.56. This affects an unknown part...
CVE-2024-9324HIGH8.8A vulnerability was found in Intelbras InControl up to 2.21.57. It has been rated as critical. Affected by this issue is...
CVE-2024-9319HIGH8.8A vulnerability, which was classified as critical, was found in SourceCodester Online Timesheet App 1.0. This affects an...
CVE-2024-9317HIGH8.8A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerabili...
CVE-2024-9316HIGH7.5A vulnerability classified as critical has been found in code-projects Blood Bank Management System 1.0. Affected is an ...
CVE-2024-9315HIGH8.8A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. It has been rated as crit...
CVE-2024-23967HIGH8Autel MaxiCharger AC Elite Business C50 WebSocket Base64 Decoding Stack-based Buffer Overflow Remote Code Execution Vuln...
CVE-2024-23959HIGH8Autel MaxiCharger AC Elite Business C50 BLE AppChargingControl Stack-based Buffer Overflow Remote Code Execution Vulnera...
CVE-2024-23958HIGH8.8Autel MaxiCharger AC Elite Business C50 BLE Hardcoded Credentials Authentication Bypass Vulnerability. This vulnerabilit...
CVE-2024-23935HIGH7.5Alpine Halo9 DecodeUTF7 Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows netwo...
CVE-2024-23923HIGH8.8Alpine Halo9 prh_l2_sar_data_ind Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows network-a...
CVE-2024-23957HIGH8.8Autel MaxiCharger AC Elite Business C50 DLB_HostHeartBeat Stack-based Buffer Overflow Remote Code Execution Vulnerabilit...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now