2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-10730CRITICAL9.8A vulnerability, which was classified as critical, has been found in Tongda OA up to 11.6. This issue affects some unkno...
CVE-2024-10702CRITICAL9.8A vulnerability classified as critical has been found in code-projects Simple Car Rental System 1.0. Affected is an unkn...
CVE-2024-10700CRITICAL9.8A vulnerability was found in code-projects University Event Management System 1.0. It has been declared as critical. Thi...
CVE-2024-10699CRITICAL9.8A vulnerability was found in code-projects Wazifa System 1.0. It has been classified as critical. This affects an unknow...
CVE-2024-10698CRITICAL9.8A vulnerability was found in Tenda AC6 15.03.05.19 and classified as critical. Affected by this issue is the function fo...
CVE-2024-10697CRITICAL9.8A vulnerability has been found in Tenda AC6 15.03.05.19 and classified as critical. Affected by this vulnerability is th...
CVE-2024-51252CRITICAL9.8In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman...
CVE-2024-51431CRITICAL9.8LB-LINK BL-WR 1300H v.1.0.4 contains hardcoded credentials stored in /etc/shadow which are easily guessable.
CVE-2024-28265CRITICAL9.1IBOS v4.5.5 has an arbitrary file deletion vulnerability via \system\modules\dashboard\controllers\LoginController.php.
CVE-2024-10660CRITICAL9.8A vulnerability, which was classified as critical, was found in ESAFENET CDG 5. This affects the function deleteHook of ...
CVE-2024-10659CRITICAL9.8A vulnerability, which was classified as critical, has been found in ESAFENET CDG 5. Affected by this issue is the funct...
CVE-2024-47359CRITICAL9.8Cross-Site Request Forgery (CSRF) vulnerability in averta Depicter Slider depicter.This issue affects Depicter Slider: f...
CVE-2024-47358CRITICAL9.8Missing Authorization vulnerability in Daniel Iser Popup Maker popup-maker.This issue affects Popup Maker: from n/a thro...
CVE-2024-47321CRITICAL9.8Missing Authorization vulnerability in Fahad Mahmood WP Datepicker wp-datepicker.This issue affects WP Datepicker: from ...
CVE-2024-47311CRITICAL9.8Missing Authorization vulnerability in Kraft Plugins Wheel of Life wheel-of-life allows Exploiting Incorrectly Configure...
CVE-2024-47308CRITICAL9.8Missing Authorization vulnerability in WPDeveloper Templately templately.This issue affects Templately: from n/a through...
CVE-2024-47302CRITICAL9.8Missing Authorization vulnerability in Shahjahan Jewel Fluent Support fluent-support allows Exploiting Incorrectly Confi...
CVE-2024-44038CRITICAL9.8Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incor...
CVE-2024-44019CRITICAL9.8Missing Authorization vulnerability in Renzo Johnson Contact Form 7 Campaign Monitor Extension contact-form-7-campaign-m...
CVE-2024-43998CRITICAL9.8Missing Authorization vulnerability in WebsiteinWP Blogpoet allows Accessing Functionality Not Properly Constrained by A...
CVE-2024-43980CRITICAL9.8Missing Authorization vulnerability in CozyThemes Fota WP allows Exploiting Incorrectly Configured Access Control Securi...
CVE-2024-43979CRITICAL9.8Missing Authorization vulnerability in CozyThemes Blockbooster allows Accessing Functionality Not Properly Constrained b...
CVE-2024-43974CRITICAL9.8Missing Authorization vulnerability in CozyThemes ReviveNews allows Accessing Functionality Not Properly Constrained by ...
CVE-2024-43956CRITICAL9.8Missing Authorization vulnerability in Caseproof, LLC Memberpress allows Accessing Functionality Not Properly Constraine...
CVE-2024-43929CRITICAL9.8Missing Authorization vulnerability in eyecix JobSearch allows Accessing Functionality Not Properly Constrained by ACLs....

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now