2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-50450CRITICAL9.8Improper Control of Generation of Code ('Code Injection') vulnerability in RealMag777 MDTF wp-meta-data-filter-and-taxon...
CVE-2024-38821CRITICAL9.1Spring WebFlux applications that have Spring Security authorization rules on static resources can be bypassed under cert...
CVE-2024-10440CRITICAL9.8The eHDR CTMS from Sunnet has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitra...
CVE-2024-10434CRITICAL9.8A vulnerability was found in Tenda AC1206 up to 20241027. It has been classified as critical. This affects the function ...
CVE-2024-50623CRITICAL9.8In Cleo Harmony before 5.8.0.21, VLTrader before 5.8.0.21, and LexiCom before 5.8.0.21, there is an unrestricted file up...
CVE-2024-10432CRITICAL9.8A vulnerability has been found in Project Worlds Simple Web-Based Chat Application 1.0 and classified as critical. Affec...
CVE-2024-10431CRITICAL9.8A vulnerability, which was classified as critical, was found in Codezips Pet Shop Management System 1.0. Affected is an ...
CVE-2024-10430CRITICAL9.8A vulnerability, which was classified as critical, has been found in Codezips Pet Shop Management System 1.0. This issue...
CVE-2024-10427CRITICAL9.8A vulnerability was found in Codezips Pet Shop Management System 1.0. It has been declared as critical. This vulnerabili...
CVE-2024-10426CRITICAL9.8A vulnerability was found in Codezips Pet Shop Management System 1.0. It has been classified as critical. This affects a...
CVE-2024-10425CRITICAL9.8A vulnerability was found in Project Worlds Student Project Allocation System 1.0 and classified as critical. Affected b...
CVE-2024-10424CRITICAL9.8A vulnerability has been found in Project Worlds Student Project Allocation System 1.0 and classified as critical. Affec...
CVE-2024-10423CRITICAL9.8A vulnerability, which was classified as critical, was found in Project Worlds Student Project Allocation System 1.0. Af...
CVE-2024-10422CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Attendance and Payroll System 1.0. T...
CVE-2024-10421CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Attendance and Payroll System 1.0. This vulnerability...
CVE-2024-10420CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Attendance and Payroll System 1.0. This affects ...
CVE-2024-10418CRITICAL9.8A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been declared as critical. Affected ...
CVE-2024-10413CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Online Hotel Reservation System 1.0....
CVE-2024-9501CRITICAL9.8The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to authentication bypass in all versi...
CVE-2024-9933CRITICAL9.8The WatchTowerHQ plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.10.1. T...
CVE-2024-9932CRITICAL9.8The Wux Blog Editor plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validatio...
CVE-2024-9931CRITICAL9.8The Wux Blog Editor plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.0.0....
CVE-2024-9930CRITICAL9.8The Extensions by HocWP Team plugin for WordPress is vulnerable to authentication bypass in versions up to, and includin...
CVE-2024-48237CRITICAL9.8WTCMS 1.0 is vulnerable to Incorrect Access Control in \Common\Controller\HomebaseController.class.php.
CVE-2024-10386CRITICAL9.8CVE-2024-10386 IMPACT An authentication vulnerability exists in the affected product. The vulnerability could allow a...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now