2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-13204HIGH8A vulnerability was found in kurniaramadhan E-Commerce-PHP 1.0. It has been declared as critical. Affected by this vulne...
CVE-2024-13201HIGH7.2A vulnerability has been found in wander-chu SpringBoot-Blog 1.0 and classified as critical. This vulnerability affects ...
CVE-2024-13200HIGH7.5A vulnerability, which was classified as critical, was found in wander-chu SpringBoot-Blog 1.0. This affects the functio...
CVE-2024-27980HIGH8.1Due to the improper handling of batch files in child_process.spawn / child_process.spawnSync, a malicious command line a...
CVE-2024-13194HIGH8.8A vulnerability was found in Sucms 1.0 and classified as critical. Affected by this issue is some unknown functionality ...
CVE-2024-54818HIGH8.8SourceCodester Computer Laboratory Management System 1.0 is vulnerable to Incorrect Access Control. via /php-lms/admin/?...
CVE-2024-13188HIGH7.8A vulnerability was found in MicroWorld eScan Antivirus 7.0.32 on Linux. It has been rated as critical. Affected by this...
CVE-2024-56784HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Adding array index check to preven...
CVE-2024-56775HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix handling of plane refcount [W...
CVE-2024-56772HIGH7.8In the Linux kernel, the following vulnerability has been resolved: kunit: string-stream: Fix a UAF bug in kunit_init_s...
CVE-2024-51442HIGH8.8Command Injection in Minidlna version v1.3.3 and before allows an attacker to execute arbitrary OS commands via a specia...
CVE-2024-55656HIGH8.8RedisBloom adds a set of probabilistic data structures to Redis. There is an integer overflow vulnerability in RedisBloo...
CVE-2024-55517HIGH8.8An issue was discovered in the Interllect Core Search in Polaris FT Intellect Core Banking 9.5. Input passed through the...
CVE-2024-51737HIGH7RediSearch is a Redis module that provides querying, secondary indexing, and full-text search for Redis. An authenticate...
CVE-2024-51480HIGH7RedisTimeSeries is a time-series database (TSDB) module for Redis, by Redis. Executing one of these commands TS.QUERYIND...
CVE-2024-11423HIGH7.5The Ultimate Gift Cards for WooCommerce – Create WooCommerce Gift Cards, Gift Vouchers, Redeem & Manage Digital Gift Cou...
CVE-2024-12854HIGH8.8The Garden Gnome Package plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validatio...
CVE-2024-12853HIGH8.8The Modula Image Gallery plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validatio...
CVE-2024-9939HIGH7.5The WordPress File Upload plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 4.2...
CVE-2024-45033HIGH8.1Insufficient Session Expiration vulnerability in Apache Airflow Fab Provider. This issue affects Apache Airflow Fab Pro...
CVE-2024-13186HIGH7.5The MinigameCenter module has insufficient restrictions on loading URLs, which may lead to some information leakage.
CVE-2024-13185HIGH7.5The MinigameCenter module has insufficient restrictions on loading URLs, which may lead to some information leakage.
CVE-2024-11939HIGH7.5The Cost Calculator Builder PRO plugin for WordPress is vulnerable to blind time-based SQL Injection via the ‘data’ para...
CVE-2024-13173HIGH7.5The health module has insufficient restrictions on loading URLs, which may lead to some information leakage.
CVE-2024-11270HIGH8.8The WordPress Webinar Plugin – WebinarPress plugin for WordPress is vulnerable to arbitrary file creation due to a missi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now