2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-42681HIGH8.8Insecure Permissions vulnerability in xxl-job v.2.4.1 allows a remote attacker to execute arbitrary code via the Sub-Tas...
CVE-2024-7263HIGH7.8Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.17...
CVE-2024-7262HIGH7.8Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.16...
CVE-2024-43373HIGH7.8webcrack is a tool for reverse engineering javascript. An arbitrary file write vulnerability exists in the webcrack modu...
CVE-2024-7832HIGH8.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-...
CVE-2024-42679HIGH7.8SQL Injection vulnerability in Super easy enterprise management system v.1.0.0 and before allows a local attacker to exe...
CVE-2024-42676HIGH8.8File Upload vulnerability in Huizhi enterprise resource management system v.1.0 and before allows a remote attacker to e...
CVE-2024-7813HIGH7.5A vulnerability, which was classified as problematic, has been found in SourceCodester Prison Management System 1.0. Thi...
CVE-2024-7628HIGH8.1The MStore API – Create Native Android & iOS Apps On The Cloud plugin for WordPress is vulnerable to authentication bypa...
CVE-2024-7624HIGH8.1The Zephyr Project Manager plugin for WordPress is vulnerable to limited privilege escalation in all versions up to, and...
CVE-2024-7810HIGH8.8A vulnerability was found in SourceCodester Online Graduate Tracer System 1.0. It has been rated as critical. Affected b...
CVE-2024-7800HIGH7.5A vulnerability classified as critical has been found in SourceCodester Simple Online Bidding System 1.0. This affects a...
CVE-2024-7799HIGH7.3A vulnerability was found in SourceCodester Simple Online Bidding System 1.0. It has been rated as critical. Affected by...
CVE-2024-7515HIGH7.5CVE-2024-7515 IMPACT A denial-of-service vulnerability exists in the affected products. A malformed PTP management pack...
CVE-2024-7513HIGH8.8CVE-2024-7513 IMPACT A code execution vulnerability exists in the affected product. The vulnerability occurs due to imp...
CVE-2024-6078HIGH8.6CVE-2024-6078 IMPACT An improper authentication vulnerability exists in the affected product, which could allow a malic...
CVE-2024-40620HIGH7.5CVE-2024-40620 IMPACT A vulnerability exists in the affected product due to lack of encryption of sensitive information...
CVE-2024-40619HIGH7.5CVE-2024-40619 IMPACT A denial-of-service vulnerability exists in the affected products. The vulnerability occurs when ...
CVE-2024-27120HIGH7.5A Local File Inclusion vulnerability has been found in ComfortKey, a product of Celsius Benelux. Using this vulnerabilit...
CVE-2024-7792HIGH8.8A vulnerability was found in SourceCodester Task Progress Tracker 1.0. It has been classified as critical. Affected is a...
CVE-2024-5915HIGH7.8A privilege escalation (PE) vulnerability in the Palo Alto Networks GlobalProtect app on Windows devices enables a local...
CVE-2024-39825HIGH8.5Buffer overflow in some Zoom Workplace Apps and Rooms Clients may allow an authenticated user to conduct an escalation o...
CVE-2024-28799HIGH7.5IBM QRadar Suite Software 1.10.12.0 through 1.10.23.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 displays...
CVE-2024-41865HIGH7.8Dimension versions 3.4.11 and earlier are affected by an Untrusted Search Path vulnerability that could lead to arbitrar...
CVE-2024-41856HIGH7.8Illustrator versions 28.5, 27.9.4, 28.6, 27.9.5 and earlier are affected by an Improper Input Validation vulnerability t...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now