2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-30375HIGH7.8Luxion KeyShot Viewer KSP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows rem...
CVE-2024-30374HIGH7.8Luxion KeyShot Viewer KSP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allow...
CVE-2024-30369HIGH7.8A10 Thunder ADC Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows loca...
CVE-2024-30368HIGH8.8A10 Thunder ADC CsrRequestView Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote a...
CVE-2024-2914HIGH8.8A TarSlip vulnerability exists in the deepjavalibrary/djl, affecting version 0.26.0 and fixed in version 0.27.0. This vu...
CVE-2024-1879HIGH8.8A Cross-Site Request Forgery (CSRF) vulnerability in significant-gravitas/autogpt version v0.5.0 allows attackers to exe...
CVE-2024-36742HIGH7.5An issue in the oneflow.scatter_nd parameter OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (...
CVE-2024-33655HIGH7.5The DNS protocol in RFC 1035 and updates allows remote attackers to cause a denial of service (resource consumption) by ...
CVE-2024-37152HIGH7.5Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. The vulnerability allows unauthorized access t...
CVE-2024-35178HIGH7.5The Jupyter Server provides the backend for Jupyter web applications. Jupyter Server on Windows has a vulnerability that...
CVE-2024-5684HIGH8.8An attacker with access to the private network (the charger is connected to) or local access to the Ethernet-Interface c...
CVE-2024-5657HIGH8.1The CraftCMS plugin Two-Factor Authentication in versions 3.3.1, 3.3.2 and 3.3.3 discloses the password hash of the curr...
CVE-2024-5329HIGH8.8The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin for WordPress is vulnerable to blind SQL I...
CVE-2024-28995HIGH7.5SolarWinds Serv-U was susceptible to a directory transversal vulnerability that would allow access to read sensitive fil...
CVE-2024-5324HIGH8.8Multiple plugins for WordPress utilizing the XootiX Framework are vulnerable to unauthorized modification of data due to...
CVE-2024-5179HIGH8.8The Cowidgets – Elementor Addons plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and i...
CVE-2024-4194HIGH7.3The The Album and Image Gallery plus Lightbox plugin for WordPress is vulnerable to arbitrary shortcode execution in all...
CVE-2024-36670HIGH8.8idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/vpsClass_deal.php?mud...
CVE-2024-36669HIGH8.8idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/type_deal.php?mudi=ad...
CVE-2024-36668HIGH8.8idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/type_deal.php?mudi=de...
CVE-2024-36667HIGH8.8idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/idcProType_deal.php?...
CVE-2024-28818HIGH7.5An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 1080, ...
CVE-2024-27382HIGH7.1An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-27379HIGH7.8An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...
CVE-2024-27378HIGH7.1An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. I...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now