2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-51189MEDIUM4.8TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices contain a Store Cross-site scripting (XSS)...
CVE-2024-51188MEDIUM4.8TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices contain a Store Cross-site scripting (XSS)...
CVE-2024-51187MEDIUM4.8TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices contain a Store Cross-site scripting (XSS)...
CVE-2024-51186HIGH8D-Link DIR-820L 1.05b03 was discovered to contain a remote code execution (RCE) vulnerability via the ping_addr paramete...
CVE-2024-48322HIGH8.1UsersController.php in Run.codes 1.5.2 and older has a reset password race condition vulnerability.
CVE-2024-46965MEDIUM5.4The DS allvideo.downloader.browser (aka Fast Video Downloader: Browser) application through 1.6-RC1 for Android allows a...
CVE-2024-36061CRITICAL9.8EnGenius EWS356-FIT devices through 1.1.30 allow blind OS command injection. This allows an attacker to execute arbitrar...
CVE-2024-11078MEDIUM5.4A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic. Affected by this vuln...
CVE-2024-10315MEDIUM6.9In Gliffy Online an insecure configuration was discovered in versions before 4.14.0-6. Reported by Alpha Inferno PVT LTD...
CVE-2024-51135CRITICAL9.8An XML External Entity (XXE) vulnerability in the component DocumentBuilderFactory of powertac-server v1.9.0 allows atta...
CVE-2024-50667CRITICAL9.8The boa httpd of Trendnet TEW-820AP 1.01.B01 has a stack overflow vulnerability in /boafrm/formIPv6Addr, /boafrm/formIpv...
CVE-2024-11077CRITICAL9.8A vulnerability, which was classified as critical, was found in code-projects Job Recruitment 1.0. Affected is an unknow...
CVE-2024-11076CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Job Recruitment 1.0. This issue affec...
CVE-2024-11074CRITICAL9.8A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. This vulnerability aff...
CVE-2024-45087MEDIUM4.8IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows a privileg...
CVE-2024-11073HIGH8.1A vulnerability classified as problematic has been found in SourceCodester Hospital Management System 1.0. This affects ...
CVE-2024-10917MEDIUM5.3In Eclipse OpenJ9 versions up to 0.47, the JNI function GetStringUTFLength may return an incorrect value which has wrapp...
CVE-2024-45088MEDIUM5.4IBM Maximo Asset Management 7.6.1.3 is vulnerable to stored cross-site scripting. This vulnerability allows authenticate...
CVE-2024-43439MEDIUM6.1A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting...
CVE-2024-51054MEDIUM4.8A Cross Site Scriptng (XSS) vulnerability was found in /omrs/admin/search.php in PHPGurukul Online Marriage Registration...
CVE-2024-50991MEDIUM4.8A Cross Site Scripting (XSS) vulnerability was found in /ums-sp/admin/registered-users.php in PHPGurukul User Management...
CVE-2024-50990MEDIUM6.1A Reflected Cross Site Scriptng (XSS) vulnerability was found in /omrs/user/search.php in PHPGurukul Online Marriage Reg...
CVE-2024-50989CRITICAL9.8A SQL injection vulnerability in /omrs/admin/search.php in PHPGurukul Online Marriage Registration System v1.0 allows an...
CVE-2024-47131HIGH7.8If an attacker tricks a valid user into running Delta Electronics DIAScreen with a file containing malicious code, a sta...
CVE-2024-39605HIGH7.8If an attacker tricks a valid user into running Delta Electronics DIAScreen with a file containing malicious code, a sta...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now