2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-28962HIGH7.5Dell Command | Update, Dell Update, and Alienware Update UWP, versions prior to 5.4, contain an Exposed Dangerous Method...
CVE-2024-7497HIGH8.8A vulnerability was found in itsourcecode Airline Reservation System 1.0 and classified as critical. This issue affects ...
CVE-2024-7496HIGH8.8A vulnerability has been found in itsourcecode Airline Reservation System 1.0 and classified as critical. This vulnerabi...
CVE-2024-7485HIGH7.2The Traffic Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'page' parameter in the 'U...
CVE-2024-7484HIGH7.2The CRM Perks Forms plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file validation on ...
CVE-2024-6315HIGH8.8The Blox Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation i...
CVE-2024-7547HIGH7.8oFono SMS Decoder Stack-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attack...
CVE-2024-7546HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7545HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7544HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7543HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7539HIGH7.8oFono CUSD Stack-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows local attackers to execut...
CVE-2024-7538HIGH7.8oFono CUSD AT Command Stack-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows local attacker...
CVE-2024-42352HIGH7.5Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. `nuxt/icon` pro...
CVE-2024-34344HIGH8.8Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. Due to the insu...
CVE-2024-23657HIGH8.8Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. Nuxt Devtools i...
CVE-2024-41958HIGH7.2mailcow: dockerized is an open source groupware/email suite based on docker. A vulnerability has been discovered in the ...
CVE-2024-42010HIGH7.5mod_css_styles in Roundcube through 1.5.7 and 1.6.x through 1.6.7 insufficiently filters Cascading Style Sheets (CSS) to...
CVE-2024-41376HIGH8.8dzzoffice 2.02.1 is vulnerable to Directory Traversal via user/space/about.php.
CVE-2024-40531HIGH8.8A mass assignment vulnerability exists in Pantera CRM versions 401.152 and 402.072. This flaw allows authenticated users...
CVE-2024-40530HIGH7.5A vulnerability in Pantera CRM versions 401.152 and 402.072 allows unauthorized attackers to bypass IP-based access cont...
CVE-2024-21980HIGH7.9Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to potentially overwrite a g...
CVE-2024-21978HIGH7.9Improper input validation in SEV-SNP could allow a malicious hypervisor to read or overwrite guest memory potentially le...
CVE-2024-33034HIGH7.8Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaimi...
CVE-2024-33028HIGH7.8Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now