2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-6407HIGH7.5CWE-200: Information Exposure vulnerability exists that could cause disclosure of credentials when a specially crafted m...
CVE-2024-5681HIGH7.8CWE-20: Improper Input Validation vulnerability exists that could cause local denial-of-service, privilege escalation, a...
CVE-2024-5679HIGH7.1CWE-787: Out-of-Bounds Write vulnerability exists that could cause local denial-of-service, or kernel memory leak when a...
CVE-2024-2602HIGH7.8CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could r...
CVE-2024-6666HIGH8.8The WP ERP plugin for WordPress is vulnerable to SQL Injection via the ‘vendor_id’ and 'status' parameter in all version...
CVE-2024-1845HIGH8.8The VikRentCar Car Rental Management System WordPress plugin before 1.3.2 does not have CSRF checks in some places, whic...
CVE-2024-22280HIGH8.1VMware Aria Automation does not apply correct input validation which allows for SQL-injection in the product. An authent...
CVE-2024-6676HIGH8.8A vulnerability has been found in witmy my-springsecurity-plus up to 2024-07-03 and classified as critical. Affected by ...
CVE-2024-6447HIGH7.2The FULL – Cliente plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the license plan parameter in a...
CVE-2024-6652HIGH8.8A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. This affects an...
CVE-2024-39565HIGH8.8An Improper Neutralization of Data within XPath Expressions ('XPath Injection') vulnerability in J-Web shipped with Juni...
CVE-2024-39562HIGH8.7A Missing Release of Resource after Effective Lifetime vulnerability the xinetd process, responsible for spawning SSH da...
CVE-2024-39560HIGH7.1An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Ju...
CVE-2024-39559HIGH8.2An Improper Check for Unusual or Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS ...
CVE-2024-39558HIGH7.1An Unchecked Return Value vulnerability in the Routing Protocol Daemon (rpd) on Juniper Networks Junos OS and Juniper Ne...
CVE-2024-39557HIGH7.1An Uncontrolled Resource Consumption vulnerability in the Layer 2 Address Learning Daemon (l2ald) of Juniper Network...
CVE-2024-39556HIGH7A Stack-Based Buffer Overflow vulnerability in Juniper Networks Junos OS and Juniper Networks Junos OS Evolved may allow...
CVE-2024-39555HIGH8.7An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (RPD) of Juniper Networks Ju...
CVE-2024-39554HIGH8.2A Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability the Routin...
CVE-2024-39518HIGH8.7A Heap-based Buffer Overflow vulnerability in the telemetry sensor process (sensord) of Juniper Networks Junos OS on MX2...
CVE-2024-39517HIGH7.1An Improper Check for Unusual or Exceptional Conditions vulnerability in the Layer 2 Address Learning Daemon (l2ald) on ...
CVE-2024-39514HIGH7.1An Improper Check or Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Ne...
CVE-2024-39512HIGH7An Improper Physical Access Control vulnerability in the console port control of Juniper Networks Junos OS Evolved allow...
CVE-2024-6286HIGH7.8Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows
CVE-2024-6236HIGH7.5Denial of Service in NetScaler Console (formerly NetScaler ADM), NetScaler Agent, and NetScaler SDX

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now