2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-21541CRITICAL9.8Versions of the package dom-iterator before 1.0.1 are vulnerable to Arbitrary Code Execution due to use of the Function ...
CVE-2024-11150CRITICAL9.8The WordPress User Extra Fields plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file p...
CVE-2024-10575CRITICAL9.8CWE-862: Missing Authorization vulnerability exists that could cause unauthorized access when enabled on the network and...
CVE-2024-10828CRITICAL9.8The Advanced Order Export For WooCommerce plugin for WordPress is vulnerable to PHP Object Injection in all versions up ...
CVE-2024-10820CRITICAL9.8The WooCommerce Upload Files plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type valid...
CVE-2024-39712CRITICAL9.1Argument injection in Ivanti Connect Secure before version 22.7R2.1 and 9.1R18.7 and Ivanti Policy Secure before version...
CVE-2024-39711CRITICAL9.1Argument injection in Ivanti Connect Secure before version 22.7R2.1 and 9.1R18.7 and Ivanti Policy Secure before version...
CVE-2024-39710CRITICAL9.1Argument injection in Ivanti Connect Secure before version 22.7R2.1 and 9.1R18.7 and Ivanti Policy Secure before version...
CVE-2024-38656CRITICAL9.1Argument injection in Ivanti Connect Secure before version 22.7R2.2 and 9.1R18.9 and Ivanti Policy Secure before version...
CVE-2024-28729CRITICAL9.8An issue in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.34ME allows a local attacker to e...
CVE-2024-10218CRITICAL9.2XSS Attack in mar.jar, Monitoring Archive Utility (MAR Utility), monitoringconsolecommon.jar in TIBCO Software Inc TIBCO...
CVE-2024-10217CRITICAL9.2XSS Attack in mar.jar, Monitoring Archive Utility (MAR Utility), monitoringconsolecommon.jar in TIBCO Software Inc TIBCO...
CVE-2024-26011CRITICAL9.8A missing authentication for critical function in Fortinet FortiManager version 7.4.0 through 7.4.2, 7.2.0 through 7.2.4...
CVE-2024-43639CRITICAL9.8Windows KDC Proxy Remote Code Execution Vulnerability
CVE-2024-43602CRITICAL9.9Azure CycleCloud Remote Code Execution Vulnerability
CVE-2024-43498CRITICAL9.8.NET and Visual Studio Remote Code Execution Vulnerability
CVE-2024-11138CRITICAL9.8A vulnerability classified as problematic has been found in DedeCMS 5.7.116. This affects an unknown part of the file /d...
CVE-2024-49369CRITICAL9.8Icinga is a monitoring system which checks the availability of network resources, notifies users of outages, and generat...
CVE-2024-10943CRITICAL9.1An authentication bypass vulnerability exists in the affected product. The vulnerability exists due to shared secrets ac...
CVE-2024-50330CRITICAL9.8SQL injection in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6 November Security Update allow...
CVE-2024-43415CRITICAL9An improper neutralization of special elements used in an SQL command in the papertrail/version- model of the decidim_aw...
CVE-2024-8074CRITICAL9.3Missing Authentication for Critical Function, Missing Authorization vulnerability in Nomysoft Informatics Nomysem allows...
CVE-2024-50386CRITICAL9.9Account users in Apache CloudStack by default are allowed to register templates to be downloaded directly to the primary...
CVE-2024-50557CRITICAL9.8A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2), RUGGEDCOM...
CVE-2024-46890CRITICAL9.4A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not p...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now