2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-9429CRITICAL9.8A vulnerability has been found in code-projects Restaurant Reservation System 1.0 and classified as critical. Affected b...
CVE-2024-35293CRITICAL9.1An unauthenticated remote attacker may use a missing authentication for critical function vulnerability to reboot or era...
CVE-2024-45186CRITICAL9.8FileSender before 2.49 allows server-side template injection (SSTI) for retrieving credentials.
CVE-2024-45999CRITICAL9.8A SQL Injection vulnerability was discovered in Cloudlog 2.6.15, specifically within the get_station_info()function loca...
CVE-2024-47608CRITICAL9.8Logicytics is designed to harvest and collect data for forensic analysis. Logicytics has a basic vuln affecting compromi...
CVE-2024-9402CRITICAL9.8Memory safety bugs present in Firefox 130, Firefox ESR 128.2, and Thunderbird 128.2. Some of these bugs showed evidence ...
CVE-2024-9401CRITICAL9.8Memory safety bugs present in Firefox 130, Firefox ESR 115.15, Firefox ESR 128.2, and Thunderbird 128.2. Some of these b...
CVE-2024-9392CRITICAL9.8A compromised content process could have allowed for the arbitrary loading of cross-origin pages. This vulnerability aff...
CVE-2024-25660CRITICAL9The WebDAV service in Infinera TNMS (Transcend Network Management System) 19.10.3 allows a low-privileged remote attacke...
CVE-2024-41276CRITICAL9.8A vulnerability in Kaiten version 57.131.12 and earlier allows attackers to bypass the PIN code authentication mechanism...
CVE-2024-9289CRITICAL9.8The WordPress & WooCommerce Affiliate Program plugin for WordPress is vulnerable to authentication bypass in all version...
CVE-2024-9265CRITICAL9.8The Echo RSS Feed Post Generator plugin for WordPress is vulnerable to privilege escalation in all versions up to, and i...
CVE-2024-9108CRITICAL9.8The Wechat Social login plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type valid...
CVE-2024-9106CRITICAL9.8The Wechat Social login plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1....
CVE-2024-9360CRITICAL9.8A vulnerability was found in code-projects Restaurant Reservation System 1.0. It has been classified as critical. This a...
CVE-2024-9359CRITICAL9.8A vulnerability was found in code-projects Restaurant Reservation System 1.0 and classified as critical. Affected by thi...
CVE-2024-9194CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Linux and Microsof...
CVE-2024-42017CRITICAL10An issue was discovered in Atos Eviden iCare 2.7.1 through 2.7.11. The application exposes a web interface locally. In t...
CVE-2024-46293CRITICAL9.8Sourcecodester Online Medicine Ordering System 1.0 is vulnerable to Incorrect Access Control. There is a lack of authori...
CVE-2024-8456CRITICAL9.8Certain switch models from PLANET Technology lack proper access control in firmware upload and download functionality, a...
CVE-2024-8450CRITICAL9.8Certain switch models from PLANET Technology have a Hard-coded community string in the SNMPv1 service, allowing unauthor...
CVE-2024-9328CRITICAL9.8A vulnerability was found in SourceCodester Advocate Office Management System 1.0. It has been rated as critical. This i...
CVE-2024-9327CRITICAL9.8A vulnerability was found in code-projects Blood Bank System 1.0. It has been declared as critical. This vulnerability a...
CVE-2024-9326CRITICAL9.8A vulnerability classified as critical was found in PHPGurukul Online Shopping Portal 2.0. This vulnerability affects un...
CVE-2024-9322CRITICAL9.8A vulnerability was found in code-projects Supply Chain Management 1.0. It has been classified as critical. Affected is ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now