2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-47549MEDIUM6.1Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, which may allow contamination of uninte...
CVE-2024-47406CRITICAL9.8Sharp and Toshiba Tec MFPs improperly process HTTP authentication requests, resulting in an authentication bypass vulner...
CVE-2024-47005HIGH8.1Sharp and Toshiba Tec MFPs provide configuration related APIs. They are expected to be called by administrative users on...
CVE-2024-45842MEDIUM5.3Sharp and Toshiba Tec MFPs improperly process URI data in HTTP PUT requests resulting in a path Traversal vulnerability....
CVE-2024-45829HIGH7.5Sharp and Toshiba Tec MFPs provide the web page to download data, where query parameters in HTTP requests are improperly...
CVE-2024-43424HIGH7.5Sharp and Toshiba Tec MFPs improperly process HTTP request headers, resulting in an Out-of-bounds Read vulnerability. C...
CVE-2024-42420HIGH7.5Sharp and Toshiba Tec MFPs contain multiple Out-of-bounds Read vulnerabilities, due to improper processing of keyword se...
CVE-2024-10148MEDIUM5.4The Awesome buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's btn2 shortcode in...
CVE-2024-10011HIGH8.1The BuddyPress plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 14.1.0 vi...
CVE-2024-9488CRITICAL9.8The Comments – wpDiscuz plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including...
CVE-2024-9109MEDIUM4.3The WooCommerce UPS Shipping – Live Rates and Access Points plugin for WordPress is vulnerable to unauthorized modificat...
CVE-2024-9686MEDIUM5.3The Order Notification for Telegram plugin for WordPress is vulnerable to unauthorized test message sending due to a mis...
CVE-2024-10372LOW3.6A vulnerability classified as problematic was found in chidiwilliams buzz 1.1.0. This vulnerability affects the function...
CVE-2024-10371CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Payroll Management System 1.0. This affects the ...
CVE-2024-10370CRITICAL9.8A vulnerability was found in Codezips Sales Management System 1.0. It has been rated as critical. Affected by this issue...
CVE-2024-10369CRITICAL9.8A vulnerability was found in Codezips Sales Management System 1.0. It has been declared as critical. Affected by this vu...
CVE-2024-10368CRITICAL9.8A vulnerability was found in Codezips Sales Management System 1.0. It has been classified as critical. Affected is an un...
CVE-2024-10355MEDIUM4.9A vulnerability, which was classified as critical, has been found in SourceCodester Petrol Pump Management Software 1.0....
CVE-2024-10354MEDIUM4.9A vulnerability classified as critical was found in SourceCodester Petrol Pump Management Software 1.0. Affected by this...
CVE-2024-10353HIGH7.2A vulnerability classified as critical has been found in SourceCodester Online Exam System 1.0. Affected is an unknown f...
CVE-2024-10351HIGH8.8A vulnerability was found in Tenda RX9 Pro 22.03.02.20. It has been rated as critical. This issue affects the function s...
CVE-2024-10350CRITICAL9.8A vulnerability was found in code-projects Hospital Management System 1.0. It has been declared as critical. This vulner...
CVE-2024-49762MEDIUM4.6Pterodactyl is a free, open-source game server management panel. When a user disables two-factor authentication via the ...
CVE-2024-49760MEDIUM5.3OpenRefine is a free, open source tool for working with messy data. The load-language command expects a `lang` parameter...
CVE-2024-49750MEDIUM5.5The Snowflake Connector for Python provides an interface for developing Python applications that can connect to Snowflak...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now