2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-33958HIGH7.5SQL injection vulnerability in E-Negosyo System affecting version 1.0. An attacker could exploit this vulnerability by s...
CVE-2024-33957HIGH7.5SQL injection vulnerability in E-Negosyo System affecting version 1.0. An attacker could exploit this vulnerability by s...
CVE-2024-41995HIGH7.5Initialization of a resource with an insecure default vulnerability exists in JavaTM Platform Ver.12.89 and earlier. If ...
CVE-2024-7055HIGH8.8A vulnerability was found in FFmpeg up to 7.0.1. It has been classified as critical. This affects the function pnm_decod...
CVE-2024-6203HIGH8.1HaloITSM versions up to 2.146.1 are affected by a Password Reset Poisoning vulnerability. Poisoned password reset links ...
CVE-2024-5709HIGH8.8The WPBakery Visual Composer plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and inclu...
CVE-2024-7506HIGH8.8A vulnerability has been found in itsourcecode Tailoring Management System 1.0 and classified as critical. Affected by t...
CVE-2024-7009HIGH7.1Unsanitized user-input in Calibre <= 7.15.0 allow users with permissions to perform full-text searches to achieve SQL in...
CVE-2024-6781HIGH7.5Path traversal in Calibre <= 7.14.0 allow unauthenticated attackers to achieve arbitrary file read.
CVE-2024-28962HIGH7.5Dell Command | Update, Dell Update, and Alienware Update UWP, versions prior to 5.4, contain an Exposed Dangerous Method...
CVE-2024-7497HIGH8.8A vulnerability was found in itsourcecode Airline Reservation System 1.0 and classified as critical. This issue affects ...
CVE-2024-7496HIGH8.8A vulnerability has been found in itsourcecode Airline Reservation System 1.0 and classified as critical. This vulnerabi...
CVE-2024-7485HIGH7.2The Traffic Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'page' parameter in the 'U...
CVE-2024-7484HIGH7.2The CRM Perks Forms plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file validation on ...
CVE-2024-6315HIGH8.8The Blox Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation i...
CVE-2024-7547HIGH7.8oFono SMS Decoder Stack-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attack...
CVE-2024-7546HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7545HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7544HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7543HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7539HIGH7.8oFono CUSD Stack-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows local attackers to execut...
CVE-2024-7538HIGH7.8oFono CUSD AT Command Stack-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows local attacker...
CVE-2024-42352HIGH7.5Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. `nuxt/icon` pro...
CVE-2024-34344HIGH8.8Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. Due to the insu...
CVE-2024-23657HIGH8.8Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. Nuxt Devtools i...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now