2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-28582HIGH8.4Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod...
CVE-2024-28581HIGH8.4Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod...
CVE-2024-28580HIGH8.4Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod...
CVE-2024-28578HIGH8.4Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod...
CVE-2024-28569HIGH7.8Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod...
CVE-2024-28566HIGH8.4Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary cod...
CVE-2024-22084HIGH7.5An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Cleartext passwords and hashes...
CVE-2024-22082HIGH7.5An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Unauthenticated directory list...
CVE-2024-22079HIGH7.5An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Directory traversal can occur ...
CVE-2024-22078HIGH8.8An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Privilege escalation can occur...
CVE-2024-1983HIGH7.1The Simple Ajax Chat WordPress plugin before 20240223 does not prevent visitors from using malicious Names when using t...
CVE-2024-0856HIGH8.8The Appointment Booking Calendar WordPress plugin before 1.3.83 does not have CSRF checks in some places, which could al...
CVE-2024-1799HIGH8.8The GamiPress – The #1 gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPr...
CVE-2024-2642HIGH7.3A vulnerability was found in Ruijie RG-NBS2009G-P up to 20240305. It has been declared as critical. Affected by this vul...
CVE-2024-28715HIGH8.8Cross Site Scripting vulnerability in DOraCMS v.2.18 and before allows a remote attacker to execute arbitrary code via t...
CVE-2024-28092HIGH7.2UBEE DDW365 XCNDDW365 8.14.3105 software on hardware 3.13.1 allows a remote attacker within Wi-Fi proximity to conduct s...
CVE-2024-24336HIGH8.1A multiple Cross-site scripting (XSS) vulnerability in the '/members/moremember.pl', and ‘/members/members-home.pl’ endp...
CVE-2024-2169HIGH7.5Implementations of UDP application protocol are vulnerable to network loops. An unauthenticated attacker can use malic...
CVE-2024-2442HIGH7.5 Franklin Fueling System EVO 550 and EVO 5000 are vulnerable to a Path Traversal vulnerability that could allow an attac...
CVE-2024-29091HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dnesscarkey WP Arm...
CVE-2024-27998HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dmitry V. (CEO of ...
CVE-2024-21677HIGH8.8This High severity Path Traversal vulnerability was introduced in version 6.13.0 of Confluence Data Center. This Path Tr...
CVE-2024-29103HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NinjaTeam Database...
CVE-2024-29126HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jose Mortellaro Sp...
CVE-2024-29125HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Elliot Sowersby / ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now