2024 CVE Vulnerabilities

39,223 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-45850HIGH8.8An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24.7.4.1 of the MindsDB platform, when the ...
CVE-2024-45849HIGH8.8An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24.7.4.1 of the MindsDB platform, when the ...
CVE-2024-45848HIGH8.8An arbitrary code execution vulnerability exists in versions 23.12.4.0 up to 24.7.4.1 of the MindsDB platform, when the ...
CVE-2024-45847HIGH8.8An arbitrary code execution vulnerability exists in versions 23.11.4.2 up to 24.7.4.1 of the MindsDB platform, when one ...
CVE-2024-45846HIGH8.8An arbitrary code execution vulnerability exists in versions 23.10.3.0 up to 24.7.4.1 of the MindsDB platform, when the ...
CVE-2024-3306HIGH7.5Authorization Bypass Through User-Controlled Key vulnerability in Utarit Information SoliClub allows Exploiting Incorrec...
CVE-2024-3305HIGH7.5Authorization Bypass Through User-Controlled Key, Missing Authorization vulnerability in Utarit Information SoliClub all...
CVE-2024-27321HIGH7.8An arbitrary code execution vulnerability exists in versions 0.0.8 and newer of the Refuel Autolabel library because of ...
CVE-2024-27320HIGH7.8An arbitrary code execution vulnerability exists in versions 0.0.8 and newer of the Refuel Autolabel library because of ...
CVE-2024-8749HIGH7.5SQL injection vulnerability in idoit pro version 28. This vulnerability could allow an attacker to send a specially craf...
CVE-2024-8529HIGH7.5The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to SQL Injection via the 'c_fields' parameter o...
CVE-2024-8522HIGH7.5The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to SQL Injection via the 'c_only_fields' parame...
CVE-2024-7766HIGH7.2The Adicon Server WordPress plugin through 1.2 does not sanitize and escape a parameter before using it in a SQL stateme...
CVE-2024-45624HIGH7.5Exposure of sensitive information due to incompatible policies issue exists in Pgpool-II. If a database user accesses a ...
CVE-2024-8711HIGH7.5A vulnerability, which was classified as problematic, has been found in SourceCodester Food Ordering Management System 1...
CVE-2024-8710HIGH8.8A vulnerability classified as critical was found in code-projects Inventory Management 1.0. Affected by this vulnerabili...
CVE-2024-8709HIGH8.8A vulnerability classified as critical has been found in SourceCodester Best House Rental Management System 1.0. Affecte...
CVE-2024-37397HIGH8.2An External XML Entity (XXE) vulnerability in the provisioning web service of Ivanti EPM before 2022 SU6, or the 2024 Se...
CVE-2024-34785HIGH7.2An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a...
CVE-2024-34783HIGH7.2An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a...
CVE-2024-34779HIGH7.2An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a...
CVE-2024-32848HIGH7.2An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a...
CVE-2024-32846HIGH7.2An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a...
CVE-2024-32845HIGH7.2An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a...
CVE-2024-32843HIGH7.2An unspecified SQL injection in Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated a...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now