2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-36730HIGH7.5Improper input validation in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) via inputti...
CVE-2024-30373HIGH7.8Kofax Power PDF JPF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remo...
CVE-2024-2928HIGH7.5A Local File Inclusion (LFI) vulnerability was identified in mlflow/mlflow, specifically in version 2.9.2, which was fix...
CVE-2024-2548HIGH7.5A path traversal vulnerability exists in the parisneo/lollms-webui application, specifically within the `lollms_core/lol...
CVE-2024-2288HIGH8.3A Cross-Site Request Forgery (CSRF) vulnerability exists in the profile picture upload functionality of the Lollms appli...
CVE-2024-1880HIGH7.8An OS command injection vulnerability exists in the MacOS Text-To-Speech class MacOSTTS of the significant-gravitas/auto...
CVE-2024-0520HIGH8.8A vulnerability in mlflow/mlflow version 8.2.1 allows for remote code execution due to improper neutralization of specia...
CVE-2024-5509HIGH7.8Luxion KeyShot BIP File Parsing Uncontrolled Search Path Element Remote Code Execution Vulnerability. This vulnerability...
CVE-2024-5508HIGH7.8Luxion KeyShot Viewer KSP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allow...
CVE-2024-5507HIGH7.8Luxion KeyShot Viewer KSP File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabili...
CVE-2024-5506HIGH7.8Luxion KeyShot Viewer KSP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allow...
CVE-2024-5505HIGH8.8NETGEAR ProSAFE Network Management System UpLoadServlet Directory Traversal Remote Code Execution Vulnerability. This vu...
CVE-2024-5303HIGH7.8Kofax Power PDF PSD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remo...
CVE-2024-5302HIGH7.8Kofax Power PDF PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remo...
CVE-2024-5301HIGH7.8Kofax Power PDF PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allo...
CVE-2024-5277HIGH7.5In lunary-ai/lunary version 1.2.4, a vulnerability exists in the password recovery mechanism where the reset password to...
CVE-2024-5269HIGH8.8Sonos Era 100 SMB2 Message Handling Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows networ...
CVE-2024-5267HIGH8.8Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows n...
CVE-2024-4941HIGH7.5A local file inclusion vulnerability exists in the JSON component of gradio-app/gradio version 4.25. The vulnerability a...
CVE-2024-4889HIGH7.2A code injection vulnerability exists in the berriai/litellm application, version 1.34.6, due to the use of unvalidated ...
CVE-2024-4325HIGH8.6A Server-Side Request Forgery (SSRF) vulnerability exists in the gradio-app/gradio version 4.21.0, specifically within t...
CVE-2024-3152HIGH8.8mintplex-labs/anything-llm is vulnerable to multiple security issues due to improper input validation in several endpoin...
CVE-2024-36745HIGH7.5An issue in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) via inputting a negative val...
CVE-2024-36743HIGH7.5An issue in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) when an empty array is proce...
CVE-2024-36737HIGH7.5Improper input validation in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) via inputti...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now