2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-7263HIGH7.8Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.17...
CVE-2024-7262HIGH7.8Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.16...
CVE-2024-6347MEDIUM6.5* Unprotected privileged mode access through UDS session in the Blind Spot Detection Sensor ECU firmware in Nissan Alti...
CVE-2024-43373HIGH7.8webcrack is a tool for reverse engineering javascript. An arbitrary file write vulnerability exists in the webcrack modu...
CVE-2024-7833CRITICAL9.8A vulnerability was found in D-Link DI-8100 16.07. It has been classified as critical. This affects the function upgrade...
CVE-2024-7832HIGH8.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-...
CVE-2024-42680MEDIUM5.5An issue in Super easy enterprise management system v.1.0.0 and before allows a local attacker to obtain the server abso...
CVE-2024-42679HIGH7.8SQL Injection vulnerability in Super easy enterprise management system v.1.0.0 and before allows a local attacker to exe...
CVE-2024-42678MEDIUM6.1Cross Site Scripting vulnerability in Super easy enterprise management system v.1.0.0 and before allows a local attacker...
CVE-2024-42677MEDIUM5.5An issue in Huizhi enterprise resource management system v.1.0 and before allows a local attacker to obtain sensitive in...
CVE-2024-42676HIGH8.8File Upload vulnerability in Huizhi enterprise resource management system v.1.0 and before allows a remote attacker to e...
CVE-2024-7831CRITICAL9.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L,...
CVE-2024-7830CRITICAL9.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DNS-120, DNR-202L...
CVE-2024-7829CRITICAL9.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in D-Link DNS-120, DNR...
CVE-2024-7828CRITICAL9.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical was found in D-Link DNS-120, DNR-202L, DNS-315L, ...
CVE-2024-7411MEDIUM5.3The Newsletters plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 4.9.9. ...
CVE-2024-43275Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Collision with another CVE.
CVE-2024-7064MEDIUM5.4The ElementsKit Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters in all vers...
CVE-2024-7063MEDIUM4.3The ElementsKit Pro plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl...
CVE-2024-7815MEDIUM4.8A vulnerability has been found in CodeAstro Online Railway Reservation System 1.0 and classified as problematic. Affecte...
CVE-2024-7814MEDIUM4.8A vulnerability, which was classified as problematic, was found in CodeAstro Online Railway Reservation System 1.0. Affe...
CVE-2024-6534MEDIUM4.3Directus v10.13.0 allows an authenticated external attacker to modify presets created by the same user to assign them to...
CVE-2024-7813HIGH7.5A vulnerability, which was classified as problematic, has been found in SourceCodester Prison Management System 1.0. Thi...
CVE-2024-7812MEDIUM5.4A vulnerability classified as problematic was found in SourceCodester Best House Rental Management System 1.0. This vuln...
CVE-2024-7811CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Daily Expenses Monitoring App 1.0. This affects ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now