2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-7305HIGH7.8A maliciously crafted DWF file, when parsed in AdDwfPdk.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write v...
CVE-2024-7935CRITICAL9.8A vulnerability was found in itsourcecode Project Expense Monitoring System 1.0. It has been rated as critical. Affected...
CVE-2024-7934CRITICAL9.8A vulnerability was found in itsourcecode Project Expense Monitoring System 1.0. It has been declared as critical. Affec...
CVE-2024-7933CRITICAL9.8A vulnerability was found in itsourcecode Project Expense Monitoring System 1.0. It has been classified as critical. Aff...
CVE-2024-7931HIGH8.8A vulnerability was found in SourceCodester Online Graduate Tracer System 1.0 and classified as critical. This issue aff...
CVE-2024-7930HIGH8.8A vulnerability has been found in SourceCodester Clinics Patient Management System 1.0 and classified as critical. This ...
CVE-2024-7929MEDIUM6.1A vulnerability, which was classified as problematic, was found in SourceCodester Simple Forum Website 1.0. This affects...
CVE-2024-7928HIGH7.5A vulnerability, which was classified as problematic, has been found in FastAdmin up to 1.3.3.20220121. Affected by this...
CVE-2024-4785MEDIUM6.5BT: Missing Check in LL_CONNECTION_UPDATE_IND Packet Leads to Division by Zero
CVE-2024-35539MEDIUM6.5Typecho v1.3.0 was discovered to contain a race condition vulnerability in the post commenting function. This vulnerabil...
CVE-2024-35538MEDIUM5.3Typecho v1.3.0 was discovered to contain a Client IP Spoofing vulnerability, which allows attackers to falsify their IP ...
CVE-2024-7958Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-7927HIGH7.5A vulnerability classified as critical was found in ZZCMS 2023. Affected by this vulnerability is an unknown functionali...
CVE-2024-7926HIGH7.5A vulnerability classified as critical has been found in ZZCMS 2023. Affected is an unknown function of the file /admin/...
CVE-2024-43354CRITICAL9.8Deserialization of Untrusted Data vulnerability in Saad Iqbal myCred mycred.This issue affects myCred: from n/a through ...
CVE-2024-43345HIGH7.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in PluginOps Landing Page B...
CVE-2024-43328CRITICAL9.8Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPDeveloper EmbedPress a...
CVE-2024-43326MEDIUM5.4Missing Authorization vulnerability in Jamie Bergen Plugin Notes Plus allows Accessing Functionality Not Properly Constr...
CVE-2024-43317MEDIUM6.1Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Metagauss U...
CVE-2024-43311CRITICAL9.8Improper Privilege Management vulnerability in Geek Code Lab Login As Users allows Privilege Escalation.This issue affec...
CVE-2024-42815CRITICAL9.8In the TP-Link RE365 V1_180213, there is a buffer overflow vulnerability due to the lack of length verification for the ...
CVE-2024-42813CRITICAL9.8In TRENDnet TEW-752DRU FW1.03B01, there is a buffer overflow vulnerability due to the lack of length verification for th...
CVE-2024-42812CRITICAL9.8In D-Link DIR-860L v2.03, there is a buffer overflow vulnerability due to the lack of length verification for the SID fi...
CVE-2024-7592HIGH7.5There is a LOW severity vulnerability affecting CPython, specifically the 'http.cookies' standard library module. When...
CVE-2024-23729MEDIUM6.1The ColorOS Internet Browser com.heytap.browser application 45.10.3.4.1 for Android allows a remote attacker to execute ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now