2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-51053CRITICAL9.8An arbitrary file upload vulnerability in the component /main/fileupload.php of AVSCMS v8.2.0 allows attackers to execut...
CVE-2024-50849MEDIUM4.8A Stored Cross-Site Scripting (XSS) vulnerability in the "Rules" functionality of WorldServer v11.8.2 allows a remote au...
CVE-2024-50848MEDIUM6.5An XML External Entity (XXE) vulnerability in the Import object and Translation Memory import functionalities of WorldSe...
CVE-2024-50804HIGH7.8Insecure Permissions vulnerability in Micro-star International MSI Center Pro 2.1.37.0 allows a local attacker to execut...
CVE-2024-52303HIGH8.7aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. In versions starting with 3.10.6 and pri...
CVE-2024-51743HIGH8.8MarkUs is a web application for the submission and grading of student assignments. In versions prior to 2.4.8, an arbitr...
CVE-2024-51499HIGH8.8MarkUs is a web application for the submission and grading of student assignments. In versions prior to 2.4.8, an arbitr...
CVE-2024-50919CRITICAL9.8Jpress until v5.1.1 has arbitrary file uploads on the windows platform, and the construction of non-standard file format...
CVE-2024-48917HIGH7.5PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. The `XmlScanner` class has a scan method whic...
CVE-2024-48294MEDIUM5.5A NULL pointer dereference in the component libPdfCore.dll of Wondershare PDF Reader v1.0.9.2544 allows attackers to cau...
CVE-2024-48293MEDIUM6.5Incorrect access control in QuickHeal Antivirus Pro 24.1.0.182 and earlier allows authenticated attackers with low-level...
CVE-2024-48292HIGH8.8An issue in the wssrvc.exe service of QuickHeal Antivirus Pro Version v24.0 and Quick Heal Total Security v24.0 allows a...
CVE-2024-47873HIGH7.5PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. The XmlScanner class has a scan method which ...
CVE-2024-47820LOW3.5MarkUs, a web application for the submission and grading of student assignments, is vulnerable to path traversal in vers...
CVE-2024-47533CRITICAL9.8Cobbler, a Linux installation server that allows for rapid setup of network installation environments, has an improper a...
CVE-2024-44757HIGH7.5An arbitrary file download vulnerability in the component /Basics/DownloadInpFile of NUS-M9 ERP Management Software v3.0...
CVE-2024-44756CRITICAL9.8NUS-M9 ERP Management Software v3.0.0 was discovered to contain a SQL injection vulnerability via the usercode parameter...
CVE-2024-43416MEDIUM5.3GLPI is a free asset and IT management software package. Starting in version 0.80 and prior to version 10.0.17, an unaut...
CVE-2024-10390MEDIUM6.4The Elfsight Telegram Chat CC plugin for WordPress is vulnerable to unauthorized modification of data to a missing capab...
CVE-2024-9474HIGH7.2A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to ...
CVE-2024-52574HIGH7.8A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualizat...
CVE-2024-52573HIGH7.8A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualizat...
CVE-2024-52572HIGH7.8A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualizat...
CVE-2024-52571HIGH7.8A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualizat...
CVE-2024-52570HIGH7.8A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualizat...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now