2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-35410MEDIUM6.2wac commit 385e1 was discovered to contain a heap overflow via the interpret function at /wac-asan/wa.c. This vulnerabil...
CVE-2024-27532HIGH7.5wasm-micro-runtime (aka WebAssembly Micro Runtime or WAMR) 06df58f is vulnerable to NULL Pointer Dereference in function...
CVE-2024-27530HIGH8.4wasm3 139076a contains a Use-After-Free in ForEachModule.
CVE-2024-27529HIGH8.4wasm3 139076a contains memory leaks in Read_utf8.
CVE-2024-27528HIGH8.4wasm3 139076a suffers from Invalid Memory Read, leading to DoS and potential Code Execution.
CVE-2024-27527HIGH7.5wasm3 139076a is vulnerable to Denial of Service (DoS).
CVE-2024-11026HIGH7.4A vulnerability was found in Intelligent Apps Freenow App 12.10.0 on Android. It has been rated as problematic. Affected...
CVE-2024-51157MEDIUM4.707FLYCMS V1.3.9 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component http://erp.07fly.net:80/...
CVE-2024-50809HIGH8.8The theme.php file in SDCMS 2.8 has a command execution vulnerability that allows for the execution of system commands
CVE-2024-50808HIGH8.8SeaCms 13.1 is vulnerable to code injection in the notification module of the member message notification module in the ...
CVE-2024-21994MEDIUM4.3StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9 are susceptible to a Denial of Service (DoS) vulnerab...
CVE-2024-51997HIGH8.1Trustee is a set of tools and components for attesting confidential guests and providing secrets to them. The ART (**Att...
CVE-2024-51211CRITICAL9.8SQL injection vulnerability exists in OS4ED openSIS-Classic Version 9.1, specifically in the resetuserinfo.php file. The...
CVE-2024-51055MEDIUM6.5An issue Hoosk v1.7.1 allows a remote attacker to execute arbitrary code via a crafted script to the config.php componen...
CVE-2024-50811CRITICAL9.1hopetree izone lts c011b48 contains a server-side request forgery (SSRF) vulnerability in the active push function as \\...
CVE-2024-50810MEDIUM5.4hopetree izone lts c011b48 contains a Cross Site Scripting (XSS) vulnerability in the article comment function. In \apps...
CVE-2024-44765MEDIUM6.5An Improper Authorization (Access Control Misconfiguration) vulnerability in MGT-COMMERCE GmbH CloudPanel v2.0.0 to v2.4...
CVE-2024-9841MEDIUM6.1A Reflected Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Management Center and ArcS...
CVE-2024-51152HIGH7.2File Upload vulnerability in Laravel CMS v.1.4.7 and before allows a remote attacker to execute arbitrary code via the s...
CVE-2024-51032MEDIUM5.4A Cross-site Scripting (XSS) vulnerability in manage_recipient.php of Sourcecodester Toll Tax Management System 1.0 allo...
CVE-2024-51031MEDIUM5.4A Cross-site Scripting (XSS) vulnerability in manage_account.php in Sourcecodester Cab Management System 1.0 allows remo...
CVE-2024-51030MEDIUM6.5A SQL injection vulnerability in manage_client.php and view_cab.php of Sourcecodester Cab Management System 1.0 allows r...
CVE-2024-40240MEDIUM6.8An incorrect access control issue in HomeServe Home Repair' android app - 3.3.4 allows a physically proximate attacker t...
CVE-2024-40239MEDIUM6.8An incorrect access control issue in Life: Personal Diary, Journal android app 17.5.0 allows a physically proximate atta...
CVE-2024-50634HIGH8.8A vulnerability in a weak JWT token in Watcharr v1.43.0 and below allows attackers to perform privilege escalation using...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now