2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-9536CRITICAL9.8A vulnerability was found in ESAFENET CDG V5. It has been rated as critical. Affected by this issue is some unknown func...
CVE-2024-44014CRITICAL9.6Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Vmax Studio Vmax Project...
CVE-2024-47849CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foun...
CVE-2024-43685CRITICAL9.8Improper Authentication vulnerability in Microchip TimeProvider 4100 (login modules) allows Session Hijacking.This issue...
CVE-2024-47656CRITICAL9.8This vulnerability exists in Shilpi Client Dashboard due to missing restrictions for incorrect login attempts on its API...
CVE-2024-45367CRITICAL9.3The web server for ONS-S8 - Spectra Aggregation Switch includes an incomplete authentication process, which can lead to ...
CVE-2024-43699CRITICAL9.8Delta Electronics DIAEnergie is vulnerable to an SQL injection in the script AM_RegReport.aspx. An unauthenticated attac...
CVE-2024-41925CRITICAL9.8The web service for ONS-S8 - Spectra Aggregation Switch includes functions which do not properly validate user input, al...
CVE-2024-41593CRITICAL9.8DrayTek Vigor310 devices through 4.3.2.6 allow a remote attacker to execute arbitrary code via the function ft_payload_d...
CVE-2024-41988CRITICAL9.3TEM Opera Plus FM Family Transmitter allows access to an unprotected endpoint that allows MPFS File System binary image ...
CVE-2024-7826CRITICAL9.8Improper Check for Unusual or Exceptional Conditions vulnerability in Webroot SecureAnywhere - Web Shield on Windows, AR...
CVE-2024-7825CRITICAL9.8Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Wi...
CVE-2024-7824CRITICAL9.8Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Wi...
CVE-2024-9460CRITICAL9.8A vulnerability was found in Codezips Online Shopping Portal 1.0. It has been classified as critical. Affected is an unk...
CVE-2024-47561CRITICAL9.2Schema parsing in the Java SDK of Apache Avro 1.11.3 and previous versions allows bad actors to execute arbitrary code. ...
CVE-2024-45519CRITICAL9.8The postjournal service in Zimbra Collaboration (ZCS) before 8.8.15 Patch 46, 9 before 9.0.0 Patch 41, 10 before 10.0.9,...
CVE-2024-24117CRITICAL9.8Insecure Permissions vulnerability in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release (9736) allows a remote attacker to g...
CVE-2024-9441CRITICAL9.8The Linear eMerge e3-Series through version 1.00-07 is vulnerable to an OS command injection vulnerability. A remote and...
CVE-2024-24116CRITICAL9.8An issue in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release(9736) allows a remote attacker to gain privileges via the syst...
CVE-2024-20521CRITICAL9.1A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co...
CVE-2024-20520CRITICAL9.1A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co...
CVE-2024-20519CRITICAL9.1A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co...
CVE-2024-20518CRITICAL9.1A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co...
CVE-2024-6360CRITICAL9.8Incorrect Permission Assignment for Critical Resource vulnerability in OpenText™ Vertica could allow Privilege Abuse and...
CVE-2024-44097CRITICAL9.8According to the researcher: "The TLS connections are encrypted against tampering or eavesdropping. However, the applica...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now