2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-23762HIGH7.8Unrestricted File Upload vulnerability in Content Manager feature in Gambio 4.9.2.0 allows attackers to execute arbitrar...
CVE-2024-23833HIGH7.5OpenRefine is a free, open source power tool for working with messy data and improving it. A jdbc attack vulnerability e...
CVE-2024-25110HIGH8.1The UAMQP is a general purpose C library for AMQP 1.0. During a call to open_get_offered_capabilities, a memory allocati...
CVE-2024-25108HIGH8.8Pixelfed is an open source photo sharing platform. When processing requests authorization was improperly and insufficien...
CVE-2024-22228HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cifssupport utility. An au...
CVE-2024-22227HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_dc utility. An authenticat...
CVE-2024-22225HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_supportassist utility. An ...
CVE-2024-22224HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_nas utility. An authentica...
CVE-2024-22223HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_cbr utility. An authen...
CVE-2024-22222HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_udoctor utility. An au...
CVE-2024-0170HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cava utility. An authentic...
CVE-2024-0168HIGH7.8 Dell Unity, versions prior to 5.4, contains a Command Injection Vulnerability in svc_oscheck utility. An authenticated ...
CVE-2024-0167HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in the svc_topstats utility. An authe...
CVE-2024-0166HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_tcpdump utility. An authen...
CVE-2024-0165HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_acldb_dump utility. An aut...
CVE-2024-0164HIGH7.8 Dell Unity, versions prior to 5.4, contain an OS Command Injection Vulnerability in its svc_topstats utility. An authen...
CVE-2024-0566HIGH7.2The Smart Manager WordPress plugin before 8.28.0 does not properly sanitise and escape a parameter before using it in a ...
CVE-2024-24935HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WpSimpleTools Basic Log Viewer.This issue affects Basic Log Viewer: f...
CVE-2024-24929HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Ryan Duff, Peter Westwood WP Contact Form.This issue affects WP Conta...
CVE-2024-24887HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Contest Gallery Photos and Files Contest Gallery – Contact Form, Uplo...
CVE-2024-24884HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in ARI Soft Contact Form 7 Connector.This issue affects Contact Form 7 C...
CVE-2024-24875HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Yannick Lefebvre Link Library.This issue affects Link Library: from n...
CVE-2024-24926HIGH8.8Deserialization of Untrusted Data vulnerability in UnitedThemes Brooklyn | Creative Multi-Purpose Responsive WordPress T...
CVE-2024-24796HIGH8.8Deserialization of Untrusted Data vulnerability in MagePeople Team Event Manager and Tickets Selling Plugin for WooComme...
CVE-2024-25744HIGH8.8In the Linux kernel before 6.6.7, an untrusted VMM can trigger int80 syscall handling at any given point. This is relate...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now