2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-22545HIGH7.8An issue was discovered in TRENDnet TEW-824DRU version 1.04b01, allows unauthenticated attackers to execute arbitrary co...
CVE-2024-21385HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2024-23630HIGH8.8An arbitrary firmware upload vulnerability exists in the Motorola MR2600. An attacker can exploit this vulnerability to...
CVE-2024-23629HIGH7.5An authentication bypass vulnerability exists in the web component of the Motorola MR2600. An attacker can exploit this ...
CVE-2024-23628HIGH8.8A command injection vulnerability exists in the 'SaveStaticRouteIPv6Params' parameter of the Motorola MR2600. A remote ...
CVE-2024-23627HIGH8.8A command injection vulnerability exists in the 'SaveStaticRouteIPv4Params' parameter of the Motorola MR2600. A remote a...
CVE-2024-23626HIGH8.8A command injection vulnerability exists in the ‘SaveSysLogParams’ parameter of the Motorola MR2600. A remote attacker ...
CVE-2024-23620HIGH7.8An improper privilege management vulnerability exists in IBM Merge Healthcare eFilm Workstation. A local, authenticated ...
CVE-2024-23617HIGH8.8A buffer overflow vulnerability exists in Symantec Data Loss Prevention version 14.0.2 and before. A remote, unauthentic...
CVE-2024-21619HIGH7.5A Missing Authentication for Critical Function vulnerability combined with a Generation of Error Message Containing Sens...
CVE-2024-0889HIGH7.5A vulnerability was found in Kmint21 Golden FTP Server 2.02b and classified as problematic. This issue affects some unkn...
CVE-2024-0888HIGH7.5A vulnerability, which was classified as problematic, was found in BORGChat 1.0.0 Build 438. This affects an unknown par...
CVE-2024-0887HIGH7.5A vulnerability, which was classified as problematic, has been found in Mafiatic Blue Server 1.1. Affected by this issue...
CVE-2024-24399HIGH7.2An arbitrary file upload vulnerability in LEPTON v7.0.0 allows authenticated attackers to execute arbitrary PHP code by ...
CVE-2024-22636HIGH8.8PluXml Blog v5.8.9 was discovered to contain a remote code execution (RCE) vulnerability in the Static Pages feature. Th...
CVE-2024-0885HIGH7.5A vulnerability classified as problematic has been found in SpyCamLizard 1.230. Affected is an unknown function of the c...
CVE-2024-23656HIGH7.5Dex is an identity service that uses OpenID Connect to drive authentication for other apps. Dex 2.37.0 serves HTTPS with...
CVE-2024-0882HIGH7.5A vulnerability was found in qwdigital LinkWechat 5.1.0. It has been classified as problematic. This affects an unknown ...
CVE-2024-0880HIGH8.8A vulnerability was found in Qidianbang qdbcrm 1.1.0 and classified as problematic. Affected by this issue is some unkno...
CVE-2024-22749HIGH7.8GPAC v2.3 was detected to contain a buffer overflow via the function gf_isom_new_generic_sample_description function in ...
CVE-2024-0822HIGH7.5An authentication bypass vulnerability was found in overt-engine. This flaw allows the creation of users in the system w...
CVE-2024-23307HIGH7.8Integer Overflow or Wraparound vulnerability in Linux Linux kernel kernel on Linux, x86, ARM (md, raid, raid5 modules) a...
CVE-2024-23985HIGH7.5EzServer 6.4.017 allows a denial of service (daemon crash) via a long string, such as one for the RNTO command.
CVE-2024-23646HIGH8.8Pimcore's Admin Classic Bundle provides a backend user interface for Pimcore. The application allows users to create zip...
CVE-2024-23644HIGH8.1Trillium is a composable toolkit for building internet applications with async rust. In `trillium-http` prior to 0.3.12 ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now