2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-6975HIGH8.8Cato Networks Windows SDP Client Local Privilege Escalation via openssl configuration file. This issue affects SDP Clien...
CVE-2024-6974HIGH7.8Cato Networks Windows SDP Client Local Privilege Escalation via self-upgradeThis issue affects SDP Client: before 5.10.3...
CVE-2024-6973HIGH8.8Remote Code Execution in Cato Windows SDP client via crafted URLs. This issue affects Windows SDP Client before 5.10.34.
CVE-2024-41950HIGH7.5Haystack is an end-to-end LLM framework that allows you to build applications powered by LLMs, Transformer models, vecto...
CVE-2024-37901HIGH8.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any user with e...
CVE-2024-7340HIGH8.8The Weave server API allows remote users to fetch files from a specific directory, but due to a lack of input validation...
CVE-2024-3083HIGH8.3A “CWE-352: Cross-Site Request Forgery (CSRF)” can be exploited by remote attackers to perform state-changing operations...
CVE-2024-31202HIGH7.8A “CWE-732: Incorrect Permission Assignment for Critical Resource” in the ThermoscanIP installation folder allows a loca...
CVE-2024-7308HIGH8.8A vulnerability was found in SourceCodester Establishment Billing Management System 1.0 and classified as critical. Affe...
CVE-2024-7307HIGH8.8A vulnerability has been found in SourceCodester Establishment Billing Management System 1.0 and classified as critical....
CVE-2024-37142HIGH7.8Dell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker...
CVE-2024-37129HIGH7.8Dell Inventory Collector, versions prior to 12.3.0.6 contains a Path Traversal vulnerability. A local authenticated mali...
CVE-2024-37127HIGH7.8Dell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker...
CVE-2024-32857HIGH7.8Dell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacke...
CVE-2024-7306HIGH8.8A vulnerability, which was classified as critical, was found in SourceCodester Establishment Billing Management System 1...
CVE-2024-7290HIGH8.8A vulnerability classified as critical has been found in SourceCodester Establishment Billing Management System 1.0. Thi...
CVE-2024-7289HIGH8.8A vulnerability was found in SourceCodester Establishment Billing Management System 1.0. It has been rated as critical. ...
CVE-2024-6770HIGH7.2The Lifetime free Drag & Drop Contact Form Builder for WordPress VForm plugin for WordPress is vulnerable to Stored Cros...
CVE-2024-42381HIGH8.3os/linux/elf.rb in Homebrew brew before 4.2.20 uses ldd to load ELF files obtained from untrusted sources, which allows ...
CVE-2024-7288HIGH8.8A vulnerability was found in SourceCodester Establishment Billing Management System 1.0. It has been declared as critica...
CVE-2024-7287HIGH8.8A vulnerability was found in SourceCodester Establishment Billing Management System 1.0. It has been classified as criti...
CVE-2024-39949HIGH7.5A vulnerability has been found in Dahua products. Attackers can send carefully crafted data packets to the interface wit...
CVE-2024-39948HIGH7.5A vulnerability has been found in Dahua products. Attackers can send carefully crafted data packets to the interface wit...
CVE-2024-39946HIGH7.2A vulnerability has been found in Dahua products.After obtaining the administrator's username and password, the attacker...
CVE-2024-39944HIGH7.5A vulnerability has been found in Dahua products.Attackers can send carefully crafted data packets to the interface with...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now