2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-39681HIGH8.8Cooked is a recipe plugin for WordPress. The Cooked plugin for WordPress is vulnerable to Cross-Site Request Forgery (CS...
CVE-2024-39680HIGH8.8Cooked is a recipe plugin for WordPress. The Cooked plugin for WordPress is vulnerable to Cross-Site Request Forgery (CS...
CVE-2024-39679HIGH8.8Cooked is a recipe plugin for WordPress. The Cooked plugin for WordPress is vulnerable to Cross-Site Request Forgery (CS...
CVE-2024-39678HIGH8.8Cooked is a recipe plugin for WordPress. The Cooked plugin is vulnerable to Cross-Site Request Forgery (CSRF) in version...
CVE-2024-40492HIGH7.1Cross Site Scripting vulnerability in Heartbeat Chat v.15.2.1 allows a remote attacker to execute arbitrary code via the...
CVE-2024-40119HIGH8.8Nepstech Wifi Router xpon (terminal) model NTPL-Xpon1GFEVN v.1.0 Firmware V2.0.1 contains a Cross-Site Request Forgery (...
CVE-2024-40641HIGH7.4Nuclei is a fast and customizable vulnerability scanner based on simple YAML based DSL. In affected versions it a way t...
CVE-2024-38447HIGH8.1NATO NCI ANET 3.4.1 allows Insecure Direct Object Reference via a modified ID field in a request for a private draft rep...
CVE-2024-20435HIGH7.8A vulnerability in the CLI of Cisco AsyncOS for Secure Web Appliance could allow an authenticated, local attacker to exe...
CVE-2024-20429HIGH7.2A vulnerability in the web-based management interface of Cisco AsyncOS for Secure Email Gateway could allow an authentic...
CVE-2024-20395HIGH7.3A vulnerability in the media retrieval functionality of Cisco Webex App could allow an unauthenticated, adjacent attacke...
CVE-2024-20323HIGH7.5A vulnerability in Cisco Intelligent Node (iNode) Software could allow an unauthenticated, remote attacker to hijack the...
CVE-2024-20296HIGH7.2A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat...
CVE-2024-6830HIGH7.5A vulnerability, which was classified as critical, was found in SourceCodester Simple Inventory Management System 1.0. A...
CVE-2024-28993HIGH8.3The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. ...
CVE-2024-28992HIGH8.3The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. ...
CVE-2024-28074HIGH8.8It was discovered that a previous vulnerability was not completely fixed with SolarWinds Access Rights Manager. While so...
CVE-2024-23475HIGH8.8The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. ...
CVE-2024-23474HIGH8.8The SolarWinds Access Rights Manager was found to be susceptible to an Arbitrary File Deletion and Information Disclosur...
CVE-2024-23472HIGH8SolarWinds Access Rights Manager (ARM) is susceptible to Directory Traversal vulnerability. This vulnerability allows an...
CVE-2024-23471HIGH8.8The SolarWinds Access Rights Manager was found to be susceptible to a Remote Code Execution Vulnerability. If exploited,...
CVE-2024-23470HIGH8.8The SolarWinds Access Rights Manager was found to be susceptible to a pre-authentication remote code execution vulnerabi...
CVE-2024-23469HIGH8.8SolarWinds Access Rights Manager (ARM) is susceptible to a Remote Code Execution vulnerability. If exploited, this vulne...
CVE-2024-23468HIGH8.3The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. ...
CVE-2024-23467HIGH8.8The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now