2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-2059HIGH7.2A vulnerability was found in SourceCodester Petrol Pump Management Software 1.0. It has been rated as critical. Affected...
CVE-2024-2058HIGH7.2A vulnerability was found in SourceCodester Petrol Pump Management Software 1.0. It has been declared as critical. Affec...
CVE-2024-22457HIGH8.8Dell Secure Connect Gateway 5.20 contains an improper authentication vulnerability during the SRS to SCG update path. A ...
CVE-2024-25972HIGH8.3Initialization of a resource with an insecure default vulnerability in OET-213H-BTS1 sold in Japan by Atsumi Electric Co...
CVE-2024-0692HIGH8.8The SolarWinds Security Event Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows ...
CVE-2024-27950HIGH8.8Missing Authorization vulnerability in Sirv CDN and Image Hosting Sirv sirv.This issue affects Sirv: from n/a through <=...
CVE-2024-25552HIGH7.8A local attacker can gain administrative privileges by inserting an executable file in the path of the affected product.
CVE-2024-1859HIGH8.8The Slider Responsive Slideshow – Image slider, Gallery slideshow plugin for WordPress is vulnerable to PHP Object Injec...
CVE-2024-25386HIGH8.8Directory Traversal vulnerability in DICOM® Connectivity Framework by laurelbridge before v.2.7.6b allows a remote attac...
CVE-2024-25578HIGH7.8 MicroDicom DICOM Viewer versions 2023.3 (Build 9342) and prior contain a lack of proper validation of user-supplied d...
CVE-2024-22100HIGH7.8 MicroDicom DICOM Viewer versions 2023.3 (Build 9342) and prior are affected by a heap-based buffer overflow vulnera...
CVE-2024-1941HIGH7.8 Delta Electronics CNCSoft-B versions 1.0.0.4 and prior are vulnerable to a stack-based buffer overflow, which may allow...
CVE-2024-27294HIGH7.8dp-golang is a Puppet module for Go installations. Prior to 1.2.7, dp-golang could install files — including the compil...
CVE-2024-2009HIGH7.5A vulnerability was found in Nway Pro 9. It has been rated as problematic. Affected by this issue is the function ajax_l...
CVE-2024-27657HIGH8.8D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the User-Agent parameter. This vulnerability...
CVE-2024-27656HIGH8.8D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the Cookie parameter. This vulnerability all...
CVE-2024-27655HIGH8.8D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the SOAPACTION parameter. This vulnerability...
CVE-2024-1595HIGH7.8Delta Electronics CNCSoft-B DOPSoft prior to v4.0.0.82 insecurely loads libraries, which may allow an attacker to use ...
CVE-2024-0068HIGH7.1Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on MacOS allows Fi...
CVE-2024-20765HIGH7.8Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could...
CVE-2024-1619HIGH8.8Kaspersky has fixed a security issue in the Kaspersky Security 8.0 for Linux Mail Server. The issue was that an attacker...
CVE-2024-1435HIGH7.5Insertion of Sensitive Information Into Sent Data vulnerability in tainacan Tainacan tainacan.This issue affects Tainaca...
CVE-2024-1468HIGH8.8The Avada | Website Builder For WordPress & WooCommerce theme for WordPress is vulnerable to arbitrary file uploads due ...
CVE-2024-22871HIGH7.5An issue in Clojure versions 1.20 to 1.12.0-alpha5 allows an attacker to cause a denial of service (DoS) via the clojure...
CVE-2024-27284HIGH7.5cassandra-rs is a Cassandra (CQL) driver for Rust. Code that attempts to use an item (e.g., a row) returned by an iterat...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now