2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-7603HIGH8.1Logsign Unified SecOps Platform Directory Traversal Arbitrary Directory Deletion Vulnerability. This vulnerability allow...
CVE-2024-7601HIGH8.1Logsign Unified SecOps Platform Directory data_export_delete_all Traversal Arbitrary File Deletion Vulnerability. This v...
CVE-2024-7600HIGH8.1Logsign Unified SecOps Platform Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows rem...
CVE-2024-6814HIGH8.8NETGEAR ProSAFE Network Management System getFilterString SQL Injection Remote Code Execution Vulnerability. This vulner...
CVE-2024-6813HIGH8.8NETGEAR ProSAFE Network Management System getSortString SQL Injection Remote Code Execution Vulnerability. This vulnerab...
CVE-2024-6812HIGH7.8IrfanView WSQ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote att...
CVE-2024-6811HIGH7.8IrfanView WSQ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote att...
CVE-2024-43410HIGH7.5Russh is a Rust SSH client & server library. Allocating an untrusted amount of memory allows any unauthenticated user to...
CVE-2024-43027HIGH8DrayTek Vigor 3900 before v1.5.1.5_Beta, DrayTek Vigor 2960 before v1.5.1.5_Beta and DrayTek Vigor 300B before v1.5.1.5_...
CVE-2024-39344HIGH8.1An issue was discovered in the Docusign API package 8.142.14 for Salesforce. The Apttus_DocuApi__DocusignAuthentication_...
CVE-2024-21690HIGH8.2This High severity Reflected XSS and CSRF (Cross-Site Request Forgery) vulnerability was introduced in versions 7.19.0, ...
CVE-2024-8007HIGH8.1A flaw was found in the openstack-tripleo-common component of the Red Hat OpenStack Platform (RHOSP) director. This vuln...
CVE-2024-7885HIGH7.5A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses the same StringBuilder instance across ...
CVE-2024-37008HIGH7.8A maliciously crafted DWG file, when parsed in Revit, can force a stack-based buffer overflow. A malicious actor can lev...
CVE-2024-7651HIGH7.5The App Builder – Create Native Android & iOS Apps On The Flight plugin for WordPress is vulnerable to limited SQL Injec...
CVE-2024-7134HIGH7.2The LiquidPoll – Polls, Surveys, NPS and Feedback Reviews plugin for WordPress is vulnerable to Stored Cross-Site Script...
CVE-2024-7013HIGH7.8Stack-based buffer overflow in Control FPWIN Pro version 7.7.2.0 and all previous versions may allow attackers to execut...
CVE-2024-6508HIGH8An insufficient entropy vulnerability was found in the Openshift Console. In the authorization code type and implicit gr...
CVE-2024-38305HIGH7.3Dell SupportAssist for Home PCs Installer exe version 4.0.3 contains a privilege escalation vulnerability in the install...
CVE-2024-43882HIGH7In the Linux kernel, the following vulnerability has been resolved: exec: Fix ToCToU between perm check and set-uid/gid...
CVE-2024-43881HIGH7.1In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: change DMA direction while mapping re...
CVE-2024-43878HIGH7.1In the Linux kernel, the following vulnerability has been resolved: xfrm: Fix input error path memory access When ther...
CVE-2024-43877HIGH7.1In the Linux kernel, the following vulnerability has been resolved: media: pci: ivtv: Add check for DMA map result In ...
CVE-2024-43873HIGH7.8In the Linux kernel, the following vulnerability has been resolved: vhost/vsock: always initialize seqpacket_allow The...
CVE-2024-22281HIGH7.5** UNSUPPORTED WHEN ASSIGNED ** The Apache Helix Front (UI) component contained a hard-coded secret, allowing an attacke...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now