2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-37288HIGH8.8A deserialization issue in Kibana can lead to arbitrary code execution when Kibana attempts to parse a YAML document con...
CVE-2024-8580HIGH8.1A vulnerability classified as critical was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. This vulnerability affects...
CVE-2024-8578HIGH8.8A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. It has been rated as critical. Affected by this i...
CVE-2024-8577HIGH8.8A vulnerability was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/4.1.8cu.5207. It has been declared ...
CVE-2024-8576HIGH8.8A vulnerability was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/4.1.8cu.5207. It has been classifie...
CVE-2024-8575HIGH8.8A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220 and classified as critical. This issue affects the...
CVE-2024-42343HIGH7.5Loway - CWE-204: Observable Response Discrepancy
CVE-2024-8574HIGH8.8A vulnerability has been found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220 and classified as critical. This vulnerabilit...
CVE-2024-8573HIGH8.8A vulnerability, which was classified as critical, was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/...
CVE-2024-8564HIGH8.8A vulnerability was found in SourceCodester PHP CRUD 1.0. It has been declared as critical. This vulnerability affects u...
CVE-2024-8560HIGH8.8A vulnerability, which was classified as critical, was found in SourceCodester Simple Invoice Generator System 1.0. Affe...
CVE-2024-8559HIGH7.2A vulnerability, which was classified as critical, has been found in SourceCodester Online Food Menu 1.0. This issue aff...
CVE-2024-42024HIGH8.8A vulnerability that allows an attacker in possession of the Veeam ONE Agent service account credentials to perform remo...
CVE-2024-42023HIGH8.8An improper access control vulnerability allows low-privileged users to execute code with Administrator privileges remot...
CVE-2024-42019HIGH8A vulnerability that allows an attacker to access the NTLM hash of the Veeam Reporter Service service account. This atta...
CVE-2024-40718HIGH8.8A server side request forgery vulnerability allows a low-privileged user to perform local privilege escalation through e...
CVE-2024-40714HIGH8.3An improper certificate validation vulnerability in TLS certificate validation allows an attacker on the same network to...
CVE-2024-40713HIGH7.8A vulnerability that allows a user who has been assigned a low-privileged role within Veeam Backup & Replication to alte...
CVE-2024-40712HIGH7.8A path traversal vulnerability allows an attacker with a low-privileged account and local access to the system to perfor...
CVE-2024-40710HIGH8.8A series of related high-severity vulnerabilities, the most notable enabling remote code execution (RCE) as the service ...
CVE-2024-40709HIGH7.8A missing authorization vulnerability allows a local low-privileged user on the machine to escalate their privileges to ...
CVE-2024-39718HIGH8.1An improper input validation vulnerability that allows a low-privileged user to remotely remove files on the system with...
CVE-2024-39715HIGH8.5A code injection vulnerability that allows a low-privileged user with REST API access granted to remotely upload arbitra...
CVE-2024-38651HIGH8.5A code injection vulnerability can allow a low-privileged user to overwrite files on that VSPC server, which can lead to...
CVE-2024-36138HIGH8.1Bypass incomplete fix of CVE-2024-27980, that arises from improper handling of batch files with all possible extensions ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now