2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-56213HIGH8.8Path Traversal: '.../...//' vulnerability in Arraytics Eventin wp-event-solution allows Path Traversal.This issue affect...
CVE-2024-56212HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in DeluxeThemes Userp...
CVE-2024-56211HIGH8.8Missing Authorization vulnerability in DeluxeThemes Userpro userpro.This issue affects Userpro: from n/a through <= 5.1....
CVE-2024-49422LOW3.9Protection Mechanism Failure in bootloader prior to SMR Oct-2024 Release 1 allows physical attackers to reset lockscreen...
CVE-2024-13067MEDIUM5.3A vulnerability was found in CodeAstro Online Food Ordering System 1.0 and classified as critical. This issue affects so...
CVE-2024-11972CRITICAL9.8The Hunk Companion WordPress plugin before 1.9.0 does not correctly authorize some REST API endpoints, allowing unauthen...
CVE-2024-45497HIGH7.6A flaw was found in the OpenShift build process, where the docker-build container is configured with a hostPath volume m...
CVE-2024-13040HIGH8.8The QOCA aim from Quanta Computer has an Authorization Bypass Through User-Controlled Key vulnerability. By controlling ...
CVE-2024-12839HIGH8.8The login mechanism via device authentication of CGFIDO from Changing Information Technology has an Authentication Bypas...
CVE-2024-12838HIGH8.8The passwordless login mechanism in CGFIDO from Changing Information Technology has an Authentication Bypass vulnerabili...
CVE-2024-13058MEDIUM4.8An issue exists in SoftIron HyperCloud where authenticated, but non-admin users can create data pools, which could pote...
CVE-2024-13051HIGH7.8Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabili...
CVE-2024-13050HIGH7.8Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabili...
CVE-2024-13049HIGH7.8Ashlar-Vellum Cobalt XE File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remot...
CVE-2024-13048HIGH7.8Ashlar-Vellum Cobalt XE File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows ...
CVE-2024-13047HIGH7.8Ashlar-Vellum Cobalt CO File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remot...
CVE-2024-13046HIGH7.8Ashlar-Vellum Cobalt CO File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows ...
CVE-2024-13045HIGH7.8Ashlar-Vellum Cobalt AR File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability...
CVE-2024-13044HIGH7.8Ashlar-Vellum Cobalt AR File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows ...
CVE-2024-13043HIGH7.8Panda Security Dome Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers t...
CVE-2024-13042MEDIUM5.3A vulnerability was found in Tsinghua Unigroup Electronic Archives Management System 3.2.210802(62532). It has been clas...
CVE-2024-12753HIGH7.3Foxit PDF Reader Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to e...
CVE-2024-12752HIGH7.8Foxit PDF Reader AcroForm Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attack...
CVE-2024-12751HIGH7.8Foxit PDF Reader AcroForm Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attac...
CVE-2024-11946MEDIUM6.5iXsystems TrueNAS CORE fetch_plugin_packagesites tar Cleartext Transmission of Sensitive Information Vulnerability. This...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now