2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-49668CRITICAL10Unrestricted Upload of File with Dangerous Type vulnerability in christopherdewese1099 Verbalize WP verbalize-wp allows ...
CVE-2024-49658CRITICAL9.9Unrestricted Upload of File with Dangerous Type vulnerability in ecomerciar Woocommerce Custom Profile Picture woo-custo...
CVE-2024-49657HIGH7.7Missing Authorization vulnerability in Renata Bracichowicz 3D Work In Progress renee-work-in-progress allows Exploiting ...
CVE-2024-49653CRITICAL9.9Unrestricted Upload of File with Dangerous Type vulnerability in james-eggers Portfolleo portfolleo allows Upload a Web ...
CVE-2024-49652CRITICAL9.9Unrestricted Upload of File with Dangerous Type vulnerability in Renata Bracichowicz 3D Work In Progress renee-work-in-p...
CVE-2024-30124MEDIUM4HCL Sametime is impacted by insecure services in-use on the UIM client by default. An unused legacy REST service was ena...
CVE-2024-10293CRITICAL9.8A vulnerability was found in ZZCMS 2023. It has been classified as critical. Affected is the function Ebak_SetGotoPak of...
CVE-2024-10292CRITICAL9.8A vulnerability was found in ZZCMS 2023 and classified as critical. This issue affects some unknown processing of the fi...
CVE-2024-10291CRITICAL9.8A vulnerability has been found in ZZCMS 2023 and classified as critical. This vulnerability affects the function Ebak_Do...
CVE-2024-5764MEDIUM6.5Use of Hard-coded Credentials vulnerability in Sonatype Nexus Repository has been discovered in the code responsible for...
CVE-2024-49675HIGH8.8Authentication Bypass Using an Alternate Path or Channel vulnerability in Vitalii iBryl Switch User ibryl-switch-user al...
CVE-2024-49370MEDIUM4.9Pimcore is an open source data and experience management platform. When a PortalUserObject is connected to a PimcoreUser...
CVE-2024-47904HIGH8.5A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fir...
CVE-2024-47903CRITICAL9.1A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fir...
CVE-2024-47902CRITICAL9.8A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fir...
CVE-2024-47901CRITICAL9.8A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fir...
CVE-2024-47575CRITICAL9.8A missing authentication for critical function in FortiManager 7.6.0, FortiManager 7.4.0 through 7.4.4, FortiManager 7.2...
CVE-2024-30122MEDIUM5.3HCL Sametime is impacted by misconfigured security related HTTP headers. It was identified that some HTTP headers were m...
CVE-2024-10290HIGH7.5A vulnerability, which was classified as problematic, was found in ZZCMS 2023. This affects an unknown part of the file ...
CVE-2024-10283HIGH8.8A vulnerability, which was classified as critical, has been found in Tenda RX9 and RX9 Pro 22.03.02.20. Affected by this...
CVE-2024-10282HIGH8.8A vulnerability classified as critical was found in Tenda RX9 and RX9 Pro 22.03.02.10/22.03.02.20. Affected by this vuln...
CVE-2024-50050MEDIUM6.3Llama Stack prior to revision 7a8aa775e5a267cf8660d83140011a0b7f91e005 used pickle as a serialization format for socket ...
CVE-2024-10281HIGH8.8A vulnerability classified as critical has been found in Tenda RX9 and RX9 Pro 22.03.02.10/22.03.02.20. Affected is the ...
CVE-2024-10280HIGH7.5A vulnerability was found in Tenda AC6, AC7, AC8, AC9, AC10, AC10U, AC15, AC18, AC500 and AC1206 up to 20241022. It has ...
CVE-2024-10250MEDIUM6.1The Nioland theme for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘s’ parameter in all versions up...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now