2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-50566HIGH8.8A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet F...
CVE-2024-48890HIGH8.8An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in ...
CVE-2024-47572HIGH8An improper neutralization of formula elements in a csv file in Fortinet FortiSOAR 7.2.1 through 7.4.1 allows attacker t...
CVE-2024-46670HIGH7.5An Out-of-bounds Read vulnerability [CWE-125] in FortiOS version 7.6.0, version 7.4.4 and below, version 7.2.9 and below...
CVE-2024-46668HIGH7.5An allocation of resources without limits or throttling vulnerability [CWE-770] in FortiOS versions 7.4.0 through 7.4.4,...
CVE-2024-46667HIGH7.5A allocation of resources without limits or throttling in Fortinet FortiSIEM 5.3 all versions, 5.4 all versions, 6.x all...
CVE-2024-36512HIGH7.2An improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiManager, FortiAnalyze...
CVE-2024-35277HIGH7.5A missing authentication for critical function in Fortinet FortiPortal version 6.0.0 through 6.0.15, FortiManager versio...
CVE-2024-35275HIGH8.8A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiAnalyzer version...
CVE-2024-35273HIGH8.8A out-of-bounds write in Fortinet FortiManager version 7.4.0 through 7.4.2, FortiAnalyzer version 7.4.0 through 7.4.2 al...
CVE-2024-33503HIGH7.8A improper privilege management vulnerability in Fortinet FortiManager Cloud 7.4.1 through 7.4.3, FortiManager Cloud 7.2...
CVE-2024-33502HIGH7.2An improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiManager, FortiAnalyze...
CVE-2024-27778HIGH8.8An improper neutralization of special elements used in an OS Command vulnerability [CWE-78] vulnerability in Fortinet Fo...
CVE-2024-26012HIGH7.8A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiAP-S 6.2 a...
CVE-2024-11864HIGH7.5Specifically crafted SCMI messages sent to an SCP running SCP-Firmware release versions up to and including 2.15.0 may l...
CVE-2024-11497HIGH8.8An authenticated attacker can use this vulnerability to perform a privilege escalation to gain root access.
CVE-2024-53649HIGH7.1A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V9.80), SIPROTEC 5 6MD85 (CP300) (All ve...
CVE-2024-47100HIGH7.2A vulnerability has been identified in SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0), SIMATIC S7-1200 CPU 121...
CVE-2024-12365HIGH8.5The W3 Total Cache plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check o...
CVE-2024-12008HIGH7.5The W3 Total Cache plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.8....
CVE-2024-12398HIGH8.8An improper privilege management vulnerability in the web management interface of the Zyxel WBE530 firmware versions thr...
CVE-2024-57664HIGH7.5An issue in the sqlg_group_node component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of ...
CVE-2024-57663HIGH7.5An issue in the sqlg_place_dpipes component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial o...
CVE-2024-57662HIGH7.5An issue in the sqlg_hash_source component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of...
CVE-2024-57661HIGH7.5An issue in the sqlo_df component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now