2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-22641HIGH7.5TCPDF version 6.6.5 and before is vulnerable to ReDoS (Regular Expression Denial of Service) if parsing an untrusted SVG...
CVE-2024-28060HIGH7.3An issue was discovered in Apiris Kafeo 6.4.4. It permits DLL hijacking, allowing a user to trigger the execution of arb...
CVE-2024-36110HIGH8.2ansibleguy-webui is an open source WebUI for using Ansible. Multiple forms in versions < 0.0.21 allowed injection of HTM...
CVE-2024-36109HIGH7.6CoCalc is web-based software that enables collaboration in research, teaching, and scientific publishing. In affected ve...
CVE-2024-33450HIGH7.5SQL Injection in Finereport v.8.0 allows a remote attacker to obtain sensitive information
CVE-2024-24919HIGH8.6Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the inte...
CVE-2024-33402HIGH8.1A SQL injection vulnerability in /model/approve_petty_cash.php in campcodes Complete Web-Based School Management System ...
CVE-2024-35341HIGH7.5Certain Anpviz products allow unauthenticated users to download the running configuration of the device via a HTTP GET r...
CVE-2024-30165HIGH7.1Amazon AWS Client VPN before 3.9.1 on macOS has a buffer overflow that could potentially allow a local actor to execute ...
CVE-2024-26024HIGH8.6SUBNET Solutions Inc. has identified vulnerabilities in third-party components used in Substation Server.
CVE-2024-30212HIGH7If a SCSI READ(10) command is initiated via USB using the largest LBA (0xFFFFFFFF) with it's default block size of 512 ...
CVE-2024-24959HIGH8.2Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of...
CVE-2024-24958HIGH8.2Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of...
CVE-2024-24957HIGH8.2Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of...
CVE-2024-24956HIGH8.2Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of...
CVE-2024-24955HIGH8.2Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of...
CVE-2024-24954HIGH8.2Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of...
CVE-2024-24947HIGH8.2A heap-based buffer overflow vulnerability exists in the Programming Software Connection CurrDir functionality of Automa...
CVE-2024-24946HIGH8.2A heap-based buffer overflow vulnerability exists in the Programming Software Connection CurrDir functionality of Automa...
CVE-2024-24851HIGH7.5A heap-based buffer overflow vulnerability exists in the Programming Software Connection FiBurn functionality of Automat...
CVE-2024-23315HIGH7.5A read-what-where vulnerability exists in the Programming Software Connection IMM 01A1 Memory Read functionality of Auto...
CVE-2024-4429HIGH7.4Cross-Site Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to sensit...
CVE-2024-35399HIGH8.8TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a stack overflow via the password parameter in the func...
CVE-2024-35397HIGH8.8TOTOLINK CP900L v4.1.5cu.798_B20221228 weas discovered to contain a command injection vulnerability in the NTPSyncWithHo...
CVE-2024-29072HIGH8.2A privilege escalation vulnerability exists in the Foxit Reader 2024.2.0.25138. The vulnerability occurs due to improper...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now