2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-28054HIGH7.4Amavis before 2.12.3 and 2.13.x before 2.13.1, in part because of its use of MIME-tools, has an Interpretation Conflict ...
CVE-2024-2390HIGH7.8 As a part of Tenable’s vulnerability disclosure program, a vulnerability in a Nessus plugin was identified and reported...
CVE-2024-2229HIGH7.8 CWE-502: Deserialization of Untrusted Data vulnerability exists that could cause remote code execution when a malicious...
CVE-2024-2052HIGH7.5 CWE-552: Files or Directories Accessible to External Parties vulnerability exists that could allow unauthenticated file...
CVE-2024-2050HIGH8.2 CWE-79: Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability exists when ...
CVE-2024-20756HIGH7.8Bridge versions 13.0.5, 14.0.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arb...
CVE-2024-20755HIGH7.8Bridge versions 13.0.5, 14.0.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result ...
CVE-2024-20752HIGH7.8Bridge versions 13.0.5, 14.0.1 and earlier are affected by a Use After Free vulnerability that could result in arbitrary...
CVE-2024-22257HIGH8.2In Spring Security, versions 5.7.x prior to 5.7.12, 5.8.x prior to 5.8.11, versions 6.0.x prior to 6.0.9, versions 6.1....
CVE-2024-20746HIGH7.8Premiere Pro versions 24.1, 23.6.2 and earlier are affected by an out-of-bounds write vulnerability that could result in...
CVE-2024-20745HIGH7.8Premiere Pro versions 24.1, 23.6.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could res...
CVE-2024-1753HIGH8.6A flaw was found in Buildah (and subsequently Podman Build) which allows containers to mount arbitrary locations on the ...
CVE-2024-2599HIGH8.8File upload restriction evasion vulnerability in AMSS++ version 4.31. This vulnerability could allow an authenticated us...
CVE-2024-2592HIGH7.5Vulnerability in AMSS++ version 4.31 that allows SQL injection through /amssplus/modules/person/pic_show.php, in the 'pe...
CVE-2024-2591HIGH7.5Vulnerability in AMSS++ version 4.31 that allows SQL injection through /amssplus/modules/book/main/bookdetail_group.php,...
CVE-2024-2590HIGH7.5Vulnerability in AMSS++ version 4.31 that allows SQL injection through /amssplus/modules/mail/main/select_send.php, in t...
CVE-2024-2589HIGH7.5Vulnerability in AMSS++ version 4.31 that allows SQL injection through /amssplus/modules/book/main/bookdetail_school_per...
CVE-2024-2588HIGH7.5Vulnerability in AMSS++ version 4.31 that allows SQL injection through /amssplus/admin/index.php, in the 'id' parameter....
CVE-2024-2587HIGH7.5Vulnerability in AMSS++ version 4.31 that allows SQL injection through /amssplus/modules/book/main/bookdetail_khet_perso...
CVE-2024-2586HIGH7.5Vulnerability in AMSS++ version 4.31 that allows SQL injection through /amssplus/index.php, in the 'username' parameter....
CVE-2024-2585HIGH7.5Vulnerability in AMSS++ version 4.31 that allows SQL injection through /amssplus/modules/book/main/select_send_2.php, in...
CVE-2024-2584HIGH7.5Vulnerability in AMSS++ version 4.31 that allows SQL injection through /amssplus/modules/book/main/select_send.php, in t...
CVE-2024-27773HIGH8.8 Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-348: Use of Less Trusted Source may allow RCE
CVE-2024-27772HIGH8.8 Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-78: 'OS Command Injection' may allow RCE
CVE-2024-27771HIGH8.8 Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-22: 'Path Traversal' may allow RCE

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now