2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-57020HIGH8.8TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "sMinute...
CVE-2024-57019HIGH8.8TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "limit" ...
CVE-2024-57018HIGH8.8TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "desc" p...
CVE-2024-57017HIGH8.8TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "pass" p...
CVE-2024-57016HIGH8.8TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "user" p...
CVE-2024-57015HIGH8.8TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "hour" p...
CVE-2024-57014HIGH8.8TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "recHour...
CVE-2024-57013HIGH8.8TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "switch"...
CVE-2024-57012HIGH8.8TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "week" p...
CVE-2024-57011HIGH8.8TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "minute"...
CVE-2024-50954HIGH7.5The XINJE XL5E-16T and XD5E-24R-E programmable logic controllers V3.5.3b-V3.7.2a have a vulnerability in handling Modbus...
CVE-2024-50953HIGH7.5An issue in XINJE XL5E-16T V3.7.2a allows attackers to cause a Denial of Service (DoS) via a crafted Modbus message.
CVE-2024-8603HIGH8.2A “Use of a Broken or Risky Cryptographic Algorithm” vulnerability in the SSL/TLS component used in B&R Automation Runti...
CVE-2024-11322HIGH7.5A denial-of-service vulnerability exists in CyberPower PowerPanel Business (PPB) 4.11.0. An unauthenticated remote atta...
CVE-2024-57900HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ila: serialize calls to nf_register_net_hooks() sy...
CVE-2024-57899HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix mbss changed flags corruption o...
CVE-2024-57896HIGH7.8In the Linux kernel, the following vulnerability has been resolved: btrfs: flush delalloc workers queue before stopping...
CVE-2024-57892HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix slab-use-after-free due to dangling poin...
CVE-2024-57887HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm: adv7511: Fix use-after-free in adv7533_attach_...
CVE-2024-57857HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Remove direct link to net_device Do not ...
CVE-2024-57801HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Skip restore TC rules for vport rep with...
CVE-2024-57795HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Remove the direct link to net_device The...
CVE-2024-11848HIGH8.1The NitroPack plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check ...
CVE-2024-13351HIGH7.2The Social proof testimonials and reviews by Repuso plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi...
CVE-2024-4227HIGH7.5In Genivia gSOAP with a specific configuration an unauthenticated remote attacker can generate a high CPU load when forc...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now