2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-27899HIGH8.8Self-Registration and Modify your own profile in User Admin Application of NetWeaver AS Java does not enforce proper sec...
CVE-2024-23084HIGH7.5Apfloat v1.10.1 was discovered to contain an ArrayIndexOutOfBoundsException via the component org.apfloat.internal.Doubl...
CVE-2024-27632HIGH8.8An issue in GNU Savane v.3.12 and before allows a remote attacker to escalate privileges via the form_id in the form_hea...
CVE-2024-0082HIGH8.2NVIDIA ChatRTX for Windows contains a vulnerability in the UI, where an attacker can cause improper privilege management...
CVE-2024-3466HIGH8.8A vulnerability was found in SourceCodester Laundry Management System 1.0. It has been declared as critical. Affected by...
CVE-2024-27630HIGH7.5Insecure Direct Object Reference (IDOR) in GNU Savane v.3.12 and before allows a remote attacker to delete arbitrary fil...
CVE-2024-24279HIGH8.8An issue in secdiskapp 1.5.1 (management program for NewQ Fingerprint Encryption Super Speed Flash Disk) allows attacker...
CVE-2024-23085HIGH7.5Apfloat v1.10.1 was discovered to contain a NullPointerException via the component org.apfloat.internal.DoubleScramble::...
CVE-2024-28270HIGH8.1An issue discovered in web-flash v3.0 allows attackers to reset passwords for arbitrary users via crafted POST request t...
CVE-2024-31442HIGH8.8Redon Hub is a Roblox Product Delivery Bot, also known as a Hub. In all hubs before version 1.0.2, all commands are capa...
CVE-2024-3442HIGH8.8A vulnerability classified as critical has been found in SourceCodester Prison Management System 1.0. This affects an un...
CVE-2024-3441HIGH8.8A vulnerability was found in SourceCodester Prison Management System 1.0. It has been rated as critical. Affected by thi...
CVE-2024-3440HIGH7.2A vulnerability was found in SourceCodester Prison Management System 1.0. It has been declared as critical. Affected by ...
CVE-2024-28732HIGH7.5An issue was discovered in OFPMatch in parser.py in Faucet SDN Ryu version 4.34, allows remote attackers to cause a deni...
CVE-2024-31817HIGH7.5In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensitive information without authorization through the...
CVE-2024-31816HIGH7.5In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensitive information without authorization through the...
CVE-2024-31814HIGH8.8TOTOLINK EX200 V4.0.3c.7646_B20201211 allows attackers to bypass login through the Form_Login function.
CVE-2024-31813HIGH8.4TOTOLINK EX200 V4.0.3c.7646_B20201211 does not contain an authentication mechanism by default.
CVE-2024-31811HIGH8TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the lang...
CVE-2024-31809HIGH8.8TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the File...
CVE-2024-31808HIGH8.8TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the webW...
CVE-2024-2834HIGH8.7A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Management Center and ArcSigh...
CVE-2024-28066HIGH8.8In Unify CP IP Phone firmware 1.10.4.3, Weak Credentials are used (a hardcoded root password).
CVE-2024-26574HIGH7.8Insecure Permissions vulnerability in Wondershare Filmora v.13.0.51 allows a local attacker to execute arbitrary code vi...
CVE-2024-27897HIGH7.5Input verification vulnerability in the call module. Impact: Successful exploitation of this vulnerability may affect se...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now