2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-6906HIGH8.8A vulnerability was found in SourceCodester Record Management System 1.0 and classified as critical. This issue affects ...
CVE-2024-6905HIGH8.8A vulnerability has been found in SourceCodester Record Management System 1.0 and classified as critical. This vulnerabi...
CVE-2024-6904HIGH8.8A vulnerability, which was classified as critical, was found in SourceCodester Record Management System 1.0. This affect...
CVE-2024-41172HIGH7.5In versions of Apache CXF before 3.6.4 and 4.0.5 (3.5.x and lower versions are not impacted), a CXF HTTP client conduit ...
CVE-2024-32007HIGH7.5An improper input validation of the p2c parameter in the Apache CXF JOSE code before 4.0.5, 3.6.4 and 3.5.9 allows an at...
CVE-2024-6903HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester Record Management System 1.0. Affect...
CVE-2024-6902HIGH8.8A vulnerability classified as critical was found in SourceCodester Record Management System 1.0. Affected by this vulner...
CVE-2024-6338HIGH8.8The FV Flowplayer Video Player plugin for WordPress is vulnerable to time-based SQL Injection via the ‘exclude’ paramete...
CVE-2024-40724HIGH7.8Heap-based buffer overflow vulnerability in Assimp versions prior to 5.4.2 allows a local attacker to execute arbitrary ...
CVE-2024-6901HIGH8.8A vulnerability classified as critical has been found in SourceCodester Record Management System 1.0. Affected is an unk...
CVE-2024-6900HIGH8.8A vulnerability was found in SourceCodester Record Management System 1.0. It has been rated as critical. This issue affe...
CVE-2024-21527HIGH8.2Versions of the package github.com/gotenberg/gotenberg/v8/pkg/gotenberg before 8.1.0; versions of the package github.com...
CVE-2024-35199HIGH8.2TorchServe is a flexible and easy-to-use tool for serving and scaling PyTorch models in production. In affected versions...
CVE-2024-30130HIGH7.5HCL Nomad server on Domino is vulnerable to the cache containing sensitive information which could potentially give an a...
CVE-2024-41111HIGH7.2Sliver is an open source cross-platform adversary emulation/red team framework, it can be used by organizations of all s...
CVE-2024-40642HIGH8.1The netty incubator codec.bhttp is a java language binary http parser. In affected versions the `BinaryHttpParser` class...
CVE-2024-34013HIGH7.8Local privilege escalation due to OS command injection vulnerability. The following products are affected: Acronis True ...
CVE-2024-31143HIGH7.5An optional feature of PCI MSI called "Multiple Message" allows a device to use multiple consecutive interrupt vectors. ...
CVE-2024-29178HIGH8.8On versions before 2.1.4, a user could log in and perform a template injection attack resulting in Remote Code Execution...
CVE-2024-40898HIGH7.5SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes t...
CVE-2024-3242HIGH8.8The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file extension vali...
CVE-2024-40764HIGH7.5Heap-based buffer overflow vulnerability in the SonicOS IPSec VPN allows an unauthenticated remote attacker to cause Den...
CVE-2024-29014HIGH8.8Vulnerability in SonicWall SMA100 NetExtender Windows (32 and 64-bit) client 10.2.339 and earlier versions allows an att...
CVE-2024-41011HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: don't allow mapping the MMIO HDP page w...
CVE-2024-5726HIGH8.8The Timeline Event History plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and includi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now