2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-37311HIGH8.2Collabora Online is a collaborative online office suite based on LibreOffice. In affected versions of Collabora Online, ...
CVE-2024-5586HIGH8.8Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to the authenticated SQL injection in extranet loc...
CVE-2024-5556HIGH8.8Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in reports modu...
CVE-2024-5490HIGH8.8Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in aggregate re...
CVE-2024-5467HIGH8.8Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to the authenticated SQL injection in account lock...
CVE-2024-5466HIGH8.8Zohocorp ManageEngine OpManager and Remote Monitoring and Management versions 128329 and below are vulnerable to the aut...
CVE-2024-36517HIGH8.8Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in alerts modul...
CVE-2024-36516HIGH8.8Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. N...
CVE-2024-36515HIGH8.8Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. N...
CVE-2024-36514HIGH8.8Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in file summary...
CVE-2024-43883HIGH7In the Linux kernel, the following vulnerability has been resolved: usb: vhci-hcd: Do not drop references before new re...
CVE-2024-7986HIGH7.5A vulnerability exists in the Rockwell Automation ThinManager® ThinServer that allows a threat actor to disclose sensiti...
CVE-2024-7258HIGH8.8The WooCommerce Google Feed Manager plugin for WordPress is vulnerable to unauthorized loss of data due to a missing cap...
CVE-2024-7559HIGH8.8The File Manager Pro plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation an...
CVE-2024-43477HIGH7.5Improper access control in Decentralized Identity Services resulted in a vulnerability that allows an unauthenticated at...
CVE-2024-38210HIGH7.8Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-38209HIGH7.8Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-8083HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester Online Computer and Laptop Store 1.0...
CVE-2024-45201HIGH8.8An issue was discovered in llama_index before 0.10.38. download/integration.py includes an exec call for import {cls_nam...
CVE-2024-42599HIGH8.8SeaCMS 13.0 has a remote code execution vulnerability. The reason for this vulnerability is that although admin_files.ph...
CVE-2024-42418HIGH7.5Avtec Outpost uses a default cryptographic key that can be used to decrypt sensitive information.
CVE-2024-39776HIGH7.5Avtec Outpost stores sensitive information in an insecure location without proper access controls in place.
CVE-2024-8088HIGH8.7There is a HIGH severity vulnerability affecting the CPython "zipfile" module affecting "zipfile.Path". Note that the mo...
CVE-2024-39717HIGH7.2The Versa Director GUI provides an option to customize the look and feel of the user interface. This option is only avai...
CVE-2024-42767HIGH7.2Kashipara Hotel Management System v1.0 is vulnerable to Unrestricted File Upload RCE via /admin/add_room_controller.php.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now