2024 CVE Vulnerabilities

39,223 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-20433HIGH7.5A vulnerability in the Resource Reservation Protocol (RSVP) feature of Cisco IOS Software and Cisco IOS XE Software coul...
CVE-2024-20350HIGH8.1A vulnerability in the SSH server of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, r...
CVE-2024-44825HIGH7.5Directory Traversal vulnerability in Centro de Tecnologia da Informaco Renato Archer InVesalius3 v3.1.99995 allows attac...
CVE-2024-46461HIGH8VLC media player 3.0.20 and earlier is vulnerable to denial of service through an integer overflow which could be trigge...
CVE-2024-43959HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themepoints Testim...
CVE-2024-22893HIGH7.5OpenSlides 4.0.15 verifies passwords by comparing password hashes using a function with content-dependent runtime. This ...
CVE-2024-22892HIGH7.5OpenSlides 4.0.15 was discovered to be using a weak hashing algorithm to store passwords.
CVE-2024-8316HIGH7.8In Progress Telerik UI for WPF versions prior to 2024 Q3 (2024.3.924), a code execution attack is possible through an in...
CVE-2024-7679HIGH7.8In Progress Telerik UI for WinForms versions prior to 2024 Q3 (2024.3.924), a command injection attack is possible throu...
CVE-2024-6594HIGH7.5Improper Handling of Exceptional Conditions vulnerability in the WatchGuard Single Sign-On Client on Windows causes the ...
CVE-2024-7481HIGH8.8Improper verification of cryptographic signature during installation of a Printer driver via the TeamViewer_service.exe ...
CVE-2024-7479HIGH8.8Improper verification of cryptographic signature during installation of a VPN driver via the TeamViewer_service.exe comp...
CVE-2024-45817HIGH7.3In x86's APIC (Advanced Programmable Interrupt Controller) architecture, error conditions are reported in a status regis...
CVE-2024-31146HIGH7.5When multiple devices share resources and one of them is to be passed through to a guest, security of the entire system ...
CVE-2024-31145HIGH7.5Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Reserved Memory Region Reportin...
CVE-2024-8175HIGH7.5An unauthenticated remote attacker can causes the CODESYS web server to access invalid memory which results in a DoS.
CVE-2024-8290HIGH8.8The WCFM – Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible plugin for WordPress is...
CVE-2024-8514HIGH7.2The Prisna GWT – Google Website Translator plugin for WordPress is vulnerable to PHP Object Injection in all versions up...
CVE-2024-7385HIGH7.2The WordPress Simple HTML Sitemap plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all vers...
CVE-2024-8484HIGH7.5The REST API TO MiniProgram plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter of the /wp-jso...
CVE-2024-8481HIGH7.3The The Special Text Boxes plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, an...
CVE-2024-8349HIGH7.2The Uncanny Groups for LearnDash plugin for WordPress is vulnerable to privilege escalation in all versions up to, and i...
CVE-2024-9123HIGH8.8Integer overflow in Skia in Google Chrome prior to 129.0.6668.70 allowed a remote attacker to perform an out of bounds m...
CVE-2024-9122HIGH8.8Type Confusion in V8 in Google Chrome prior to 129.0.6668.70 allowed a remote attacker to perform out of bounds memory a...
CVE-2024-9121HIGH8.8Inappropriate implementation in V8 in Google Chrome prior to 129.0.6668.70 allowed a remote attacker to potentially perf...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now