2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-27355HIGH7.5An issue was discovered in phpseclib 1.x before 1.0.23, 2.x before 2.0.47, and 3.x before 3.0.36. When processing the AS...
CVE-2024-27354HIGH7.5An issue was discovered in phpseclib 1.x before 1.0.23, 2.x before 2.0.47, and 3.x before 3.0.36. An attacker can constr...
CVE-2024-1869HIGH7.5Certain HP DesignJet print products are potentially vulnerable to information disclosure related to accessing memory out...
CVE-2024-22182HIGH8.6A remote, unauthenticated attacker may be able to send crafted messages to the web server of the Commend WS203VICM caus...
CVE-2024-1174HIGH8.2Previous versions of HP ThinPro (prior to HP ThinPro 8.0 SP 8) could potentially contain security vulnerabilities. HP ha...
CVE-2024-2076HIGH7.5A vulnerability was found in CodeAstro House Rental Management System 1.0. It has been rated as problematic. Affected by...
CVE-2024-1453HIGH7.8 In Sante DICOM Viewer Pro versions 14.0.3 and prior, a user must open a malicious DICOM file, which could allow a local...
CVE-2024-2073HIGH8.8A vulnerability has been found in SourceCodester Block Inserter for Dynamic Content 1.0 and classified as critical. This...
CVE-2024-27689HIGH8.8Stupid Simple CMS v1.2.4 was discovered to contain a Cross-Site Request Forgery (CSRF) via /update-article.php.
CVE-2024-27295HIGH8.2Directus is a real-time API and App dashboard for managing SQL database content. The password reset mechanism of the Dir...
CVE-2024-27139HIGH7.5** UNSUPPORTED WHEN ASSIGNED ** Incorrect Authorization vulnerability in Apache Archiva: a vulnerability in Apache Arch...
CVE-2024-27138HIGH7.5** UNSUPPORTED WHEN ASSIGNED ** Incorrect Authorization vulnerability in Apache Archiva. Apache Archiva has a setting t...
CVE-2024-27497HIGH8.8Linksys E2000 Ver.1.0.06 build 1 is vulnerable to authentication bypass via the position.js file.
CVE-2024-27572HIGH7.5LBT T300-T390 v2.2.1.8 were discovered to contain a stack overflow via the ApCliSsid parameter in the updateCurAPlist fu...
CVE-2024-27571HIGH7.5LBT T300-T390 v2.2.1.8 were discovered to contain a stack overflow via the ApCliSsid parameter in the makeCurRemoteApLis...
CVE-2024-27570HIGH7.5LBT T300-T390 v2.2.1.8 were discovered to contain a stack overflow via the ApCliSsid parameter in the generate_conf_rout...
CVE-2024-24907HIGH7.6Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability i...
CVE-2024-24905HIGH7.6Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability. ...
CVE-2024-24904HIGH7.6Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability. ...
CVE-2024-24903HIGH8Dell Secure Connect Gateway (SCG) Policy Manager, version 5.10+, contain a weak password recovery mechanism for forgotte...
CVE-2024-2062HIGH7.2A vulnerability, which was classified as critical, has been found in SourceCodester Petrol Pump Management Software 1.0....
CVE-2024-2061HIGH7.2A vulnerability classified as critical was found in SourceCodester Petrol Pump Management Software 1.0. This vulnerabili...
CVE-2024-2060HIGH7.2A vulnerability classified as critical has been found in SourceCodester Petrol Pump Management Software 1.0. This affect...
CVE-2024-24906HIGH7.6Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability i...
CVE-2024-24900HIGH7.3Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain an improper authorization vulnerability. An adja...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now