2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-45489CRITICAL9.8Arc before 2024-08-26 allows remote code execution in JavaScript boosts. Boosts that run JavaScript cannot be shared by ...
CVE-2024-9039CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Best House Rental Management System ...
CVE-2024-9038CRITICAL9.8A vulnerability classified as problematic was found in Codezips Online Shopping Portal 1.0. Affected by this vulnerabili...
CVE-2024-46652CRITICAL9.8Tenda AC8v4 V16.03.34.06 has a stack overflow vulnerability in the fromAdvSetMacMtuWan function.
CVE-2024-9043CRITICAL9.8Secure Email Gateway from Cellopoint has Buffer Overflow Vulnerability in authentication process. Remote unauthenticated...
CVE-2024-8853CRITICAL9.8The Webo-facto plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.40 due to ...
CVE-2024-9011CRITICAL9.8A vulnerability, which was classified as critical, was found in code-projects Crud Operation System 1.0. Affected is an ...
CVE-2024-9009CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Online Quiz Site 1.0. This issue affe...
CVE-2024-9008CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Best Online News Portal 1.0. This vulnerability affec...
CVE-2024-46984CRITICAL9.8The reference validator is a tool to perform advanced validation of FHIR resources for TI applications and interoperabil...
CVE-2024-46983CRITICAL9.8sofa-hessian is an internal improved version of Hessian3/4 powered by Ant Group CO., Ltd. The SOFA Hessian protocol uses...
CVE-2024-9004CRITICAL9.8A vulnerability classified as critical has been found in D-Link DAR-7000 up to 20240912. Affected is an unknown function...
CVE-2024-40125CRITICAL9.8An arbitrary file upload vulnerability in the Media Manager function of Closed-Loop Technology CLESS Server v4.5.2 allow...
CVE-2024-33109CRITICAL9.8Directory Traversal in the web interface of the Tiptel IP 286 with firmware version 2.61.13.10 allows attackers to overw...
CVE-2024-8963CRITICAL9.1Path Traversal in the Ivanti CSA before 4.6 Patch 519 allows a remote unauthenticated attacker to access restricted func...
CVE-2024-31570CRITICAL9.8libfreeimage in FreeImage 3.4.0 through 3.18.0 has a stack-based buffer overflow in the PluginXPM.cpp Load function via ...
CVE-2024-7785CRITICAL9.3Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Ece Softwar...
CVE-2024-8986CRITICAL9.1The grafana plugin SDK bundles build metadata into the binaries it compiles; this metadata includes the repository URI f...
CVE-2024-47088CRITICAL9.8This vulnerability exists in Apex Softcell LD Geo due to missing restrictions for excessive failed authentication attemp...
CVE-2024-46946CRITICAL9.8langchain_experimental (aka LangChain Experimental) 0.1.17 through 0.3.0 for LangChain allows attackers to execute arbit...
CVE-2024-46377CRITICAL9.8Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the save_settings() function ...
CVE-2024-46376CRITICAL9.8Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the update_account() function...
CVE-2024-46375CRITICAL9.8Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the signup() function of the ...
CVE-2024-46374CRITICAL9.8Best House Rental Management System 1.0 contains a SQL injection vulnerability in the delete_category() function of the ...
CVE-2024-40568CRITICAL9.8Buffer Overflow vulnerability in btstack mesh commit before v.864e2f2b6b7878c8fab3cf5ee84ae566e3380c58 allows a remote a...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now