2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-27896HIGH7.5Input verification vulnerability in the log module. Impact: Successful exploitation of this vulnerability can affect int...
CVE-2024-27895HIGH7.5Vulnerability of permission control in the window module. Successful exploitation of this vulnerability may affect confi...
CVE-2024-28744HIGH8.8The password is empty in the initial configuration of ACERA 9010-08 firmware v02.04 and earlier, and ACERA 9010-24 firmw...
CVE-2024-3437HIGH7.2A vulnerability was found in SourceCodester Prison Management System 1.0. It has been rated as critical. This issue affe...
CVE-2024-3436HIGH7.2A vulnerability was found in SourceCodester Prison Management System 1.0. It has been declared as critical. This vulnera...
CVE-2024-3432HIGH8.8A vulnerability was found in PuneethReddyHC Event Management 1.0. It has been rated as critical. This issue affects some...
CVE-2024-3431HIGH8.8A vulnerability was found in EyouCMS 1.6.5. It has been declared as critical. This vulnerability affects unknown code of...
CVE-2024-31308HIGH7.2Deserialization of Untrusted Data vulnerability in VJInfotech WP Import Export Lite.This issue affects WP Import Export ...
CVE-2024-31292HIGH7.2Unrestricted Upload of File with Dangerous Type vulnerability in Moove Agency Import XML and RSS Feeds.This issue affect...
CVE-2024-31291HIGH7.1Authorization Bypass Through User-Controlled Key vulnerability in Metagauss ProfileGrid.This issue affects ProfileGrid :...
CVE-2024-31288HIGH7.2Server-Side Request Forgery (SSRF) vulnerability in RapidLoad RapidLoad Power-Up for Autoptimize.This issue affects Rapi...
CVE-2024-31280HIGH8.8Unrestricted Upload of File with Dangerous Type vulnerability in andy_moyle Church Admin church-admin.This issue affects...
CVE-2024-31277HIGH8.7Deserialization of Untrusted Data vulnerability in PickPlugins Product Designer.This issue affects Product Designer: fro...
CVE-2024-31260HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WisdmLabs Edwiser ...
CVE-2024-31256HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebinarPress allow...
CVE-2024-31255HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ELEXtensions ELEX ...
CVE-2024-31241HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ThimPress LearnPre...
CVE-2024-31234HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sizam REHub Framew...
CVE-2024-31233HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sizam Rehub.This i...
CVE-2024-30418HIGH7.5Vulnerability of insufficient permission verification in the app management module. Impact: Successful exploitation of t...
CVE-2024-30417HIGH7.5Path traversal vulnerability in the Bluetooth-based sharing module. Impact: Successful exploitation of this vulnerabilit...
CVE-2024-30416HIGH7.5Use After Free (UAF) vulnerability in the underlying driver module. Impact: Successful exploitation of this vulnerabilit...
CVE-2024-30414HIGH7.5Command injection vulnerability in the AccountManager module. Impact: Successful exploitation of this vulnerability may ...
CVE-2024-30413HIGH7.5Vulnerability of improper permission control in the window management module. Impact: Successful exploitation of this vu...
CVE-2024-28741HIGH8.8Cross Site Scripting vulnerability in EginDemirbilek NorthStar C2 v1 allows a remote attacker to execute arbitrary code ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now