2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-33830HIGH8.1idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/readDeal.php?mudi=cl...
CVE-2024-33788HIGH8Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability via the PinCode parameter at /API/in...
CVE-2024-3576HIGH8.3The NPort 5100A Series firmware version v1.6 and prior versions are affected by web server XSS vulnerability. The vulner...
CVE-2024-33753HIGH8.2Section Camera V2.5.5.3116-S50-SMA-B20160811 and earlier versions allow the accounts and passwords of administrators and...
CVE-2024-3756HIGH7.5The MF Gig Calendar WordPress plugin through 1.2.1 does not have CSRF checks in some places, which could allow attackers...
CVE-2024-34538HIGH7.5Mateso PasswordSafe through 8.13.9.26689 has Weak Cryptography.
CVE-2024-20064HIGH7.8In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to local esca...
CVE-2024-20057HIGH7.2In keyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio...
CVE-2024-4510HIGH7.2A vulnerability was found in Ruijie RG-UAC up to 20240428. It has been rated as critical. Affected by this issue is some...
CVE-2024-4509HIGH7.2A vulnerability was found in Ruijie RG-UAC up to 20240428. It has been declared as critical. Affected by this vulnerabil...
CVE-2024-4508HIGH7.2A vulnerability was found in Ruijie RG-UAC up to 20240428. It has been classified as critical. Affected is an unknown fu...
CVE-2024-4507HIGH7.2A vulnerability was found in Ruijie RG-UAC up to 20240428 and classified as critical. This issue affects some unknown pr...
CVE-2024-34528HIGH7.7WordOps through 3.20.0 has a wo/cli/plugins/stack_pref.py TOCTOU race condition because the conf_path os.open does not u...
CVE-2024-34527HIGH7.5spaces_plugin/app.py in SolidUI 0.4.0 has an unnecessary print statement for an OpenAI key. The printed string might be ...
CVE-2024-4506HIGH7.2A vulnerability has been found in Ruijie RG-UAC up to 20240428 and classified as critical. This vulnerability affects un...
CVE-2024-4505HIGH7.2A vulnerability, which was classified as critical, was found in Ruijie RG-UAC up to 20240428. This affects an unknown pa...
CVE-2024-4504HIGH7.2A vulnerability, which was classified as critical, has been found in Ruijie RG-UAC up to 20240428. Affected by this issu...
CVE-2024-4503HIGH7.2A vulnerability classified as critical was found in Ruijie RG-UAC up to 20240428. Affected by this vulnerability is an u...
CVE-2024-4502HIGH7.2A vulnerability classified as critical has been found in Ruijie RG-UAC up to 20240428. Affected is an unknown function o...
CVE-2024-34515HIGH8.8image-optimizer before 1.7.3 allows PHAR deserialization, e.g., the phar:// protocol in arguments to file_exists().
CVE-2024-4501HIGH7.2A vulnerability was found in Ruijie RG-UAC up to 20240428. It has been rated as critical. This issue affects some unknow...
CVE-2024-34510HIGH7.5Gradio before 4.20 allows credential leakage on Windows.
CVE-2024-34507HIGH7.4An issue was discovered in includes/CommentFormatter/CommentParser.php in MediaWiki before 1.39.7, 1.40.x before 1.40.3,...
CVE-2024-34506HIGH7.5An issue was discovered in includes/specials/SpecialMovePage.php in MediaWiki before 1.39.7, 1.40.x before 1.40.3, and 1...
CVE-2024-4500HIGH8.8A vulnerability was found in SourceCodester Prison Management System 1.0. It has been declared as critical. This vulnera...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now