2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-1255HIGH7.5A vulnerability has been found in sepidz SepidzDigitalMenu up to 7.1.0728.1 and classified as problematic. This vulnerab...
CVE-2024-1254HIGH7.2A vulnerability, which was classified as critical, was found in Byzoro Smart S20 Management Platform up to 20231120. Thi...
CVE-2024-1253HIGH7.2A vulnerability, which was classified as critical, has been found in Byzoro Smart S40 Management Platform up to 20240126...
CVE-2024-24593HIGH8.8A cross-site request forgery (CSRF) vulnerability in all versions up to 1.14.1 of the api server component of Allegro AI...
CVE-2024-24591HIGH8.8A path traversal vulnerability in versions 1.4.0 to 1.14.1 of the client SDK of Allegro AI’s ClearML platform enables a ...
CVE-2024-24590HIGH8.8Deserialization of untrusted data can occur in versions 0.17.0 to 1.14.2 of the client SDK of Allegro AI’s ClearML platf...
CVE-2024-23673HIGH7.5Malicious code execution via path traversal in Apache Software Foundation Apache Sling Servlets Resolver.This issue affe...
CVE-2024-23304HIGH7.5Cybozu KUNAI for Android 3.0.20 to 3.0.21 allows a remote unauthenticated attacker to cause a denial-of-service (DoS) co...
CVE-2024-20820HIGH7.1Improper input validation in bootloader prior to SMR Feb-2024 Release 1 allows local privileged attackers to cause an Ou...
CVE-2024-20819HIGH7.8Out-of-bounds Write vulnerabilities in svc1td_vld_plh_ap of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local at...
CVE-2024-20818HIGH7.8Out-of-bounds Write vulnerabilities in svc1td_vld_elh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attac...
CVE-2024-20817HIGH7.8Out-of-bounds Write vulnerabilities in svc1td_vld_slh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attac...
CVE-2024-20813HIGH7.8Out-of-bounds Write in padmd_vld_qtbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arb...
CVE-2024-20812HIGH7.8Out-of-bounds Write in padmd_vld_htbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arb...
CVE-2024-22773HIGH8.1Intelbras Action RF 1200 routers 1.2.2 and earlier and Action RG 1200 routers 2.1.7 and earlier expose the Password in C...
CVE-2024-24595HIGH7.1Allegro AI’s open-source version of ClearML stores passwords in plaintext within the MongoDB instance, resulting in a co...
CVE-2024-1072HIGH7.5The Website Builder by SeedProd — Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode plugin for Wor...
CVE-2024-0761HIGH7.5The File Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includi...
CVE-2024-0709HIGH7.5The Cryptocurrency Widgets – Price Ticker & Coins List plugin for WordPress is vulnerable to SQL Injection via the 'coin...
CVE-2024-0699HIGH7.2The AI Engine: Chatbots, Generators, Assistants, GPT 4 and more! plugin for WordPress is vulnerable to arbitrary file up...
CVE-2024-0668HIGH7.2The Advanced Database Cleaner plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and incl...
CVE-2024-0428HIGH8.8The Index Now plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.6...
CVE-2024-0324HIGH7.5The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is v...
CVE-2024-0221HIGH7.2The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Directory Traversal in ...
CVE-2024-1052HIGH8Boundary and Boundary Enterprise (“Boundary”) is vulnerable to session hijacking through TLS certificate tampering. An a...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now