2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-37742HIGH8.2Insecure Access Control in Safe Exam Browser (SEB) = 3.5.0 on Windows. The vulnerability allows an attacker to share cli...
CVE-2024-5019HIGH7.5In WhatsUp Gold versions released before 2023.1.3,  an unauthenticated Arbitrary File Read issue exists in Wug.UI.Areas...
CVE-2024-5018HIGH7.5In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Path Traversal vulnerability exists Wug.UI.Areas.W...
CVE-2024-5016HIGH7.2In WhatsUp Gold versions released before 2023.1.3, Distributed Edition installations can be exploited by using a deseria...
CVE-2024-5015HIGH8.8In WhatsUp Gold versions released before 2023.1.3, an authenticated SSRF vulnerability in Wug.UI.Areas.Wug.Controllers.S...
CVE-2024-5013HIGH7.5In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Denial of Service vulnerability was identified. ...
CVE-2024-5012HIGH8.6In WhatsUp Gold versions released before 2023.1.3, there is a missing authentication vulnerability in WUGDataAccess.Cred...
CVE-2024-38516HIGH8.8ai-client-html is an Aimeos e-commerce HTML client component. Debug information revealed sensitive information from envi...
CVE-2024-37855HIGH8.4An issue in Nepstech Wifi Router xpon (terminal) NTPL-Xpon1GFEVN, hardware verstion 1.0 firmware 2.0.1 allows a remote a...
CVE-2024-21740HIGH7.4Artery AT32F415CBT7 and AT32F421C8T7 devices have Incorrect Access Control.
CVE-2024-6206HIGH7.5A security vulnerability has been identified in HPE Athonet Mobile Core software. The core application contains a code i...
CVE-2024-5011HIGH7.5In WhatsUp Gold versions released before 2023.1.3, an uncontrolled resource consumption vulnerability exists. A speciall...
CVE-2024-5010HIGH7.5In WhatsUp Gold versions released before 2023.1.3, a vulnerability exists in the TestController functionality.  A specia...
CVE-2024-5009HIGH8.4In WhatsUp Gold versions released before 2023.1.3, an Improper Access Control vulnerability in Wug.UI.Controllers.Instal...
CVE-2024-5008HIGH8.8In WhatsUp Gold versions released before 2023.1.3, an authenticated user with certain permissions can upload an arbitr...
CVE-2024-4498HIGH7.7A Path Traversal and Remote File Inclusion (RFI) vulnerability exists in the parisneo/lollms-webui application, affectin...
CVE-2024-6257HIGH8.8HashiCorp’s go-getter library can be coerced into executing Git update on an existing maliciously modified Git Configura...
CVE-2024-5990HIGH7.5Due to an improper input validation, an unauthenticated threat actor can send a malicious message to a monitor thread wi...
CVE-2024-39471HIGH7.1In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add error handle to avoid out-of-bounds...
CVE-2024-39469HIGH7.1In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix nilfs_empty_dir() misjudgment and long ...
CVE-2024-39467HIGH7.1In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on i_xattr_nid in sani...
CVE-2024-39463HIGH7.8In the Linux kernel, the following vulnerability has been resolved: 9p: add missing locking around taking dentry fid li...
CVE-2024-37085HIGH7.2VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) per...
CVE-2024-37078HIGH7.1In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix potential kernel bug due to lack of wri...
CVE-2024-38952HIGH7.5PX4-Autopilot v1.14.3 was discovered to contain a buffer overflow via the topic_name parameter at /logger/logged_topics....

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now