2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-25253HIGH7.5Driver Booster v10.6 was discovered to contain a buffer overflow via the Host parameter under the Customize proxy module...
CVE-2024-23983MEDIUM5.8Improper handling of canonical URL-encoding may lead to bypass not properly constrained by request rules.
CVE-2024-51026MEDIUM5.4The NetAdmin IAM system (version 4.0.30319) has a Cross Site Scripting (XSS) vulnerability in the /BalloonSave.ashx endp...
CVE-2024-46966HIGH8.1The Ikhgur mn.ikhgur.khotoch (aka Video Downloader Pro & Browser) application through 1.0.42 for Android allows an attac...
CVE-2024-46964HIGH8.1The com.video.downloader.all (aka All Video Downloader) application through 11.28 for Android allows an attacker to exec...
CVE-2024-46963HIGH8.1The com.superfast.video.downloader (aka Super Unlimited Video Downloader - All in One) application through 5.1.9 for And...
CVE-2024-46962CRITICAL9.1The SYQ com.downloader.video.fast (aka Master Video Downloader) application through 2.0 for Android allows an attacker t...
CVE-2024-44546CRITICAL9.8Powerjob >= 3.20 is vulnerable to SQL injection via the version parameter.
CVE-2024-10694Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-9542. Reason: This candidate is a r...
CVE-2024-52532HIGH7.5GNOME libsoup before 3.6.1 has an infinite loop, and memory consumption. during the reading of certain patterns of WebSo...
CVE-2024-52531MEDIUM6.5GNOME libsoup before 3.6.1 allows a buffer overflow in applications that perform conversion to UTF-8 in soup_header_pars...
CVE-2024-52530HIGH7.5GNOME libsoup before 3.6.0 allows HTTP request smuggling in some configurations because '\0' characters at the end of he...
CVE-2024-52288MEDIUM5.1libosdp is an implementation of IEC 60839-11-5 OSDP (Open Supervised Device Protocol) and provides a C library with supp...
CVE-2024-52286LOW2Stirling-PDF is a locally hosted web application that allows you to perform various operations on PDF files. In affected...
CVE-2024-51992MEDIUM4.1Orchid is a @laravel package that allows for rapid application development of back-office applications, admin/user panel...
CVE-2024-51748HIGH7.2Kanboard is project management software that focuses on the Kanban methodology. An authenticated Kanboard admin can run ...
CVE-2024-51747HIGH7.2Kanboard is project management software that focuses on the Kanban methodology. An authenticated Kanboard admin can read...
CVE-2024-51490CRITICAL9Ampache is a web based audio/video streaming application and file manager. This vulnerability exists in the interface se...
CVE-2024-51489MEDIUM5.4Ampache is a web based audio/video streaming application and file manager. The current implementation of token parsing d...
CVE-2024-51488MEDIUM5.4Ampache is a web based audio/video streaming application and file manager. The current implementation of token parsing d...
CVE-2024-51487HIGH8.1Ampache is a web based audio/video streaming application and file manager. The current implementation of token parsing f...
CVE-2024-51486HIGH8.4Ampache is a web based audio/video streaming application and file manager. The vulnerability exists in the interface sec...
CVE-2024-51485HIGH8.1Ampache is a web based audio/video streaming application and file manager. The current implementation of token parsing f...
CVE-2024-51484HIGH8.1Ampache is a web based audio/video streaming application and file manager. The current implementation of token parsing f...
CVE-2024-51190MEDIUM4.8TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices contain a Store Cross-site scripting (XSS)...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now