2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-43391HIGH8.1A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, pa...
CVE-2024-43390HIGH8.1A low privileged remote attacker can perform configuration changes of the firewall services, including packet forwarding...
CVE-2024-43389HIGH8.1A low privileged remote attacker can perform configuration changes of the ospf service through OSPF_INTERFACE.SIMPLE_KEY...
CVE-2024-43388HIGH8.8A low privileged remote attacker with write permissions can reconfigure the SNMP service due to improper input validatio...
CVE-2024-43387HIGH8.8A low privileged remote attacker can read and write files as root due to improper neutralization of special elements in ...
CVE-2024-43386HIGH8.8A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralizati...
CVE-2024-43385HIGH8.8A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralizati...
CVE-2024-42427HIGH7.6Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used in a Command ('Command ...
CVE-2024-6979HIGH7.5Amin Aliakbari, member of the AXIS OS Bug Bounty Program, has found a broken access control which would lead to less-pri...
CVE-2024-8478HIGH7.3The The Affiliate Super Assistent plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up...
CVE-2024-8268HIGH8.8The Frontend Dashboard plugin for WordPress is vulnerable to unauthorized code execution due to insufficient filtering o...
CVE-2024-44725HIGH7.2AutoCMS v5.4 was discovered to contain a SQL injection vulnerability via the sidebar parameter at /admin/robot.php.
CVE-2024-44724HIGH7.2AutoCMS v5.4 was discovered to contain a PHP code injection vulnerability via the txtsite_url parameter at /admin/site_a...
CVE-2024-27387HIGH7.8An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-27383HIGH7.8An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-7341HIGH7.1A session fixation issue was discovered in the SAML adapters provided by Keycloak. The session ID and JSESSIONID cookie ...
CVE-2024-45411HIGH8.6Twig is a template language for PHP. Under some circumstances, the sandbox security checks are not run which allows user...
CVE-2024-45296HIGH7.5path-to-regexp turns path strings into a regular expressions. In certain cases, path-to-regexp will output a regular exp...
CVE-2024-44335HIGH8.8D-Link DI-7003G v19.12.24A1, DI-7003GV2 v24.04.18D1, DI-7100G+V2 v24.04.18D1, DI-7100GV2 v24.04.18D1, DI-7200GV2 v24.04....
CVE-2024-44334HIGH8.8D-Link DI-7003GV2 v24.04.18D1, DI-7100G+V2 v24.04.18D1, DI-7100GV2 v24.04.18D1, DI-7200GV2 v24.04.18E1, DI-7300G+V2 v24....
CVE-2024-44333HIGH8.8D-Link DI-7003GV2 v24.04.18D1, DI-7100G+V2 v24.04.18D1, DI-7100GV2 v24.04.18D1, DI-7200GV2 v24.04.18E1, DI-7300G+V2 v24....
CVE-2024-44720HIGH7.5SeaCMS v13.1 was discovered to an arbitrary file read vulnerability via the component admin_safe.php.
CVE-2024-45041HIGH8.8External Secrets Operator is a Kubernetes operator that integrates external secret management systems. The external-secr...
CVE-2024-44375HIGH7.5D-Link DI-8100 v16.07.26A1 has a stack overflow vulnerability in the dbsrv_asp function.
CVE-2024-6572HIGH7.4Improper host key checking in active check 'Check SFTP Service' and special agent 'VNX quotas and filesystem' in Checkmk...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now