2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-13473HIGH7.5The LTL Freight Quotes – Worldwide Express Edition plugin for WordPress is vulnerable to SQL Injection via the 'dropship...
CVE-2024-13435HIGH7.5The Ebook Downloader plugin for WordPress is vulnerable to SQL Injection via the 'download' parameter in all versions up...
CVE-2024-12296HIGH8.8The Apus Framework plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege es...
CVE-2024-13814HIGH8.8The The Global Gallery - WordPress Responsive Gallery plugin for WordPress is vulnerable to arbitrary shortcode executio...
CVE-2024-12315HIGH7.5The Export All Posts, Products, Orders, Refunds & Users plugin for WordPress is vulnerable to Sensitive Information Expo...
CVE-2024-13714HIGH8.8The All-Images.ai – IA Image Bank and Custom Image creation plugin for WordPress is vulnerable to arbitrary file uploads...
CVE-2024-13600HIGH7.5The Majestic Support – The Leading-Edge Help Desk & Customer Support Plugin plugin for WordPress is vulnerable to Sensit...
CVE-2024-13800HIGH8.1The ConvertPlus plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of ser...
CVE-2024-13656HIGH8.1The Click Mag - Viral WordPress News Magazine/Blog Theme theme for WordPress is vulnerable to unauthorized modification ...
CVE-2024-13654HIGH8.1The ZoxPress - The All-In-One WordPress News Theme theme for WordPress is vulnerable to unauthorized modification of dat...
CVE-2024-13653HIGH8.8The ZoxPress - The All-In-One WordPress News Theme theme for WordPress is vulnerable to unauthorized modification of dat...
CVE-2024-29172HIGH7.5Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains a deadlock vulnerability. A remote attack...
CVE-2024-29171HIGH7.5Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains an Improper certificate verification vuln...
CVE-2024-0112HIGH7.5NVIDIA Jetson AGX Orin™ and NVIDIA IGX Orin software contain a vulnerability where an attacker can cause an improper inp...
CVE-2024-33469HIGH7.9An issue in Team Amaze Amaze File Manager v.3.8.5 and fixed in v.3.10 allows a local attacker to execute arbitrary code ...
CVE-2024-21925HIGH8.2Improper input validation within the AmdPspP2CmboxV2 driver may allow a privileged attacker to overwrite SMRAM, leading ...
CVE-2024-21924HIGH8.2SMM callout vulnerability within the AmdPlatformRasSspSmm driver could allow a ring 0 attacker to modify boot services h...
CVE-2024-0179HIGH8.2SMM Callout vulnerability within the AmdCpmDisplayFeatureSMM driver could allow locally authenticated attackers to overw...
CVE-2024-21966HIGH7.3A DLL hijacking vulnerability in the AMD Ryzen™ Master Utility could allow an attacker to achieve privilege escalation,...
CVE-2024-12551HIGH7.8Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerabilit...
CVE-2024-12550HIGH7.8Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerabili...
CVE-2024-12549HIGH7.8Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerabilit...
CVE-2024-12547HIGH8.8Tungsten Automation Power PDF JPF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerabili...
CVE-2024-52968HIGH8.4An improper authentication in Fortinet FortiClientMac 7.0.11 through 7.2.4 allows attacker to gain improper access to Ma...
CVE-2024-50569HIGH7.2A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWeb 7.0.0 ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now