2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-50450 | CRITICAL | 9.8 | 1.2% | Oct 28, 2024 | Improper Control of Generation of Code ('Code Injection') vulnerability in RealMag777 MDTF wp-meta-data-filter-and-taxon... |
| CVE-2024-38821 | CRITICAL | 9.1 | 1.7% | Oct 28, 2024 | Spring WebFlux applications that have Spring Security authorization rules on static resources can be bypassed under cert... |
| CVE-2024-10440 | CRITICAL | 9.8 | 0.5% | Oct 28, 2024 | The eHDR CTMS from Sunnet has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitra... |
| CVE-2024-10434 | CRITICAL | 9.8 | 1.2% | Oct 28, 2024 | A vulnerability was found in Tenda AC1206 up to 20241027. It has been classified as critical. This affects the function ... |
| CVE-2024-50623 | CRITICAL | 9.8 | 98.5% | Oct 28, 2024 | In Cleo Harmony before 5.8.0.21, VLTrader before 5.8.0.21, and LexiCom before 5.8.0.21, there is an unrestricted file up... |
| CVE-2024-10432 | CRITICAL | 9.8 | 0.6% | Oct 28, 2024 | A vulnerability has been found in Project Worlds Simple Web-Based Chat Application 1.0 and classified as critical. Affec... |
| CVE-2024-10431 | CRITICAL | 9.8 | 0.7% | Oct 27, 2024 | A vulnerability, which was classified as critical, was found in Codezips Pet Shop Management System 1.0. Affected is an ... |
| CVE-2024-10430 | CRITICAL | 9.8 | 0.7% | Oct 27, 2024 | A vulnerability, which was classified as critical, has been found in Codezips Pet Shop Management System 1.0. This issue... |
| CVE-2024-10427 | CRITICAL | 9.8 | 0.5% | Oct 27, 2024 | A vulnerability was found in Codezips Pet Shop Management System 1.0. It has been declared as critical. This vulnerabili... |
| CVE-2024-10426 | CRITICAL | 9.8 | 0.5% | Oct 27, 2024 | A vulnerability was found in Codezips Pet Shop Management System 1.0. It has been classified as critical. This affects a... |
| CVE-2024-10425 | CRITICAL | 9.8 | 0.5% | Oct 27, 2024 | A vulnerability was found in Project Worlds Student Project Allocation System 1.0 and classified as critical. Affected b... |
| CVE-2024-10424 | CRITICAL | 9.8 | 0.5% | Oct 27, 2024 | A vulnerability has been found in Project Worlds Student Project Allocation System 1.0 and classified as critical. Affec... |
| CVE-2024-10423 | CRITICAL | 9.8 | 0.5% | Oct 27, 2024 | A vulnerability, which was classified as critical, was found in Project Worlds Student Project Allocation System 1.0. Af... |
| CVE-2024-10422 | CRITICAL | 9.8 | 0.4% | Oct 27, 2024 | A vulnerability, which was classified as critical, has been found in SourceCodester Attendance and Payroll System 1.0. T... |
| CVE-2024-10421 | CRITICAL | 9.8 | 0.4% | Oct 27, 2024 | A vulnerability classified as critical was found in SourceCodester Attendance and Payroll System 1.0. This vulnerability... |
| CVE-2024-10420 | CRITICAL | 9.8 | 0.5% | Oct 27, 2024 | A vulnerability classified as critical has been found in SourceCodester Attendance and Payroll System 1.0. This affects ... |
| CVE-2024-10418 | CRITICAL | 9.8 | 0.5% | Oct 27, 2024 | A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been declared as critical. Affected ... |
| CVE-2024-10413 | CRITICAL | 9.8 | 0.5% | Oct 27, 2024 | A vulnerability, which was classified as critical, has been found in SourceCodester Online Hotel Reservation System 1.0.... |
| CVE-2024-9501 | CRITICAL | 9.8 | 0.8% | Oct 26, 2024 | The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to authentication bypass in all versi... |
| CVE-2024-9933 | CRITICAL | 9.8 | 1.9% | Oct 26, 2024 | The WatchTowerHQ plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.10.1. T... |
| CVE-2024-9932 | CRITICAL | 9.8 | 37.8% | Oct 26, 2024 | The Wux Blog Editor plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validatio... |
| CVE-2024-9931 | CRITICAL | 9.8 | 0.5% | Oct 26, 2024 | The Wux Blog Editor plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.0.0.... |
| CVE-2024-9930 | CRITICAL | 9.8 | 0.5% | Oct 26, 2024 | The Extensions by HocWP Team plugin for WordPress is vulnerable to authentication bypass in versions up to, and includin... |
| CVE-2024-48237 | CRITICAL | 9.8 | 0.4% | Oct 25, 2024 | WTCMS 1.0 is vulnerable to Incorrect Access Control in \Common\Controller\HomebaseController.class.php. |
| CVE-2024-10386 | CRITICAL | 9.8 | 16.6% | Oct 25, 2024 | CVE-2024-10386 IMPACT An authentication vulnerability exists in the affected product. The vulnerability could allow a... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now