2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-39531HIGH8.7An Improper Handling of Values vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved ...
CVE-2024-39904HIGH8.8VNote is a note-taking platform. Prior to 3.18.1, a code execution vulnerability existed in VNote, which allowed an atta...
CVE-2024-39530HIGH7.5An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis management daemon (chassisd) of Jun...
CVE-2024-39529HIGH8.7A Use of Externally-Controlled Format String vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Jun...
CVE-2024-39524HIGH8.5An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a loca...
CVE-2024-39523HIGH8.5An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a loca...
CVE-2024-39522HIGH8.5An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a loca...
CVE-2024-39521HIGH8.5An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a loca...
CVE-2024-39520HIGH8.5An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a loca...
CVE-2024-39519HIGH7.1An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N...
CVE-2024-32753HIGH7Under certain circumstances the camera may be susceptible to known vulnerabilities associated with the JQuery versions p...
CVE-2024-38536HIGH7.5Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. A ...
CVE-2024-38535HIGH7.5Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Su...
CVE-2024-38534HIGH7.5Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Cr...
CVE-2024-37151HIGH7.5Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. M...
CVE-2024-28872HIGH8.1The TLS certificate validation code is flawed. An attacker can obtain a TLS certificate from the Stork server and use it...
CVE-2024-6407HIGH7.5CWE-200: Information Exposure vulnerability exists that could cause disclosure of credentials when a specially crafted m...
CVE-2024-5681HIGH7.8CWE-20: Improper Input Validation vulnerability exists that could cause local denial-of-service, privilege escalation, a...
CVE-2024-5679HIGH7.1CWE-787: Out-of-Bounds Write vulnerability exists that could cause local denial-of-service, or kernel memory leak when a...
CVE-2024-2602HIGH7.8CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could r...
CVE-2024-6666HIGH8.8The WP ERP plugin for WordPress is vulnerable to SQL Injection via the ‘vendor_id’ and 'status' parameter in all version...
CVE-2024-1845HIGH8.8The VikRentCar Car Rental Management System WordPress plugin before 1.3.2 does not have CSRF checks in some places, whic...
CVE-2024-22280HIGH8.1VMware Aria Automation does not apply correct input validation which allows for SQL-injection in the product. An authent...
CVE-2024-6676HIGH8.8A vulnerability has been found in witmy my-springsecurity-plus up to 2024-07-03 and classified as critical. Affected by ...
CVE-2024-6447HIGH7.2The FULL – Cliente plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the license plan parameter in a...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now