2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-43022HIGH7.5An issue in the downloader.php component of TOSEI online store management system v4.02, v4.03, and v4.04 allows attacker...
CVE-2024-33657HIGH7.8This SMM vulnerability affects certain modules, allowing privileged attackers to execute arbitrary code, manipulate stac...
CVE-2024-33656HIGH7.8The DXE module SmmComputrace contains a vulnerability that allows local attackers to leak stack or global memory. This c...
CVE-2024-20375HIGH7.5A vulnerability in the SIP call processing function of Cisco Unified Communications Manager (Unified CM) and Cisco Unifi...
CVE-2024-7795HIGH8.8Autel MaxiCharger AC Elite Business C50 AppAuthenExchangeRandomNum Stack-Based Buffer Overflow Remote Code Execution Vul...
CVE-2024-7725HIGH8.8Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
CVE-2024-7724HIGH8.8Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
CVE-2024-7723HIGH8.8Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
CVE-2024-7604HIGH7.8Logsign Unified SecOps Platform Incorrect Authorization Authentication Bypass Vulnerability. This vulnerability allows l...
CVE-2024-7603HIGH8.1Logsign Unified SecOps Platform Directory Traversal Arbitrary Directory Deletion Vulnerability. This vulnerability allow...
CVE-2024-7601HIGH8.1Logsign Unified SecOps Platform Directory data_export_delete_all Traversal Arbitrary File Deletion Vulnerability. This v...
CVE-2024-7600HIGH8.1Logsign Unified SecOps Platform Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows rem...
CVE-2024-6814HIGH8.8NETGEAR ProSAFE Network Management System getFilterString SQL Injection Remote Code Execution Vulnerability. This vulner...
CVE-2024-6813HIGH8.8NETGEAR ProSAFE Network Management System getSortString SQL Injection Remote Code Execution Vulnerability. This vulnerab...
CVE-2024-6812HIGH7.8IrfanView WSQ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote att...
CVE-2024-6811HIGH7.8IrfanView WSQ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote att...
CVE-2024-43410HIGH7.5Russh is a Rust SSH client & server library. Allocating an untrusted amount of memory allows any unauthenticated user to...
CVE-2024-43027HIGH8DrayTek Vigor 3900 before v1.5.1.5_Beta, DrayTek Vigor 2960 before v1.5.1.5_Beta and DrayTek Vigor 300B before v1.5.1.5_...
CVE-2024-39344HIGH8.1An issue was discovered in the Docusign API package 8.142.14 for Salesforce. The Apttus_DocuApi__DocusignAuthentication_...
CVE-2024-21690HIGH8.2This High severity Reflected XSS and CSRF (Cross-Site Request Forgery) vulnerability was introduced in versions 7.19.0, ...
CVE-2024-8007HIGH8.1A flaw was found in the openstack-tripleo-common component of the Red Hat OpenStack Platform (RHOSP) director. This vuln...
CVE-2024-7885HIGH7.5A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses the same StringBuilder instance across ...
CVE-2024-37008HIGH7.8A maliciously crafted DWG file, when parsed in Revit, can force a stack-based buffer overflow. A malicious actor can lev...
CVE-2024-7651HIGH7.5The App Builder – Create Native Android & iOS Apps On The Flight plugin for WordPress is vulnerable to limited SQL Injec...
CVE-2024-7134HIGH7.2The LiquidPoll – Polls, Surveys, NPS and Feedback Reviews plugin for WordPress is vulnerable to Stored Cross-Site Script...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now