2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-9038CRITICAL9.8A vulnerability classified as problematic was found in Codezips Online Shopping Portal 1.0. Affected by this vulnerabili...
CVE-2024-46652CRITICAL9.8Tenda AC8v4 V16.03.34.06 has a stack overflow vulnerability in the fromAdvSetMacMtuWan function.
CVE-2024-9043CRITICAL9.8Secure Email Gateway from Cellopoint has Buffer Overflow Vulnerability in authentication process. Remote unauthenticated...
CVE-2024-8853CRITICAL9.8The Webo-facto plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.40 due to ...
CVE-2024-9011CRITICAL9.8A vulnerability, which was classified as critical, was found in code-projects Crud Operation System 1.0. Affected is an ...
CVE-2024-9009CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Online Quiz Site 1.0. This issue affe...
CVE-2024-9008CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Best Online News Portal 1.0. This vulnerability affec...
CVE-2024-46984CRITICAL9.8The reference validator is a tool to perform advanced validation of FHIR resources for TI applications and interoperabil...
CVE-2024-46983CRITICAL9.8sofa-hessian is an internal improved version of Hessian3/4 powered by Ant Group CO., Ltd. The SOFA Hessian protocol uses...
CVE-2024-9004CRITICAL9.8A vulnerability classified as critical has been found in D-Link DAR-7000 up to 20240912. Affected is an unknown function...
CVE-2024-40125CRITICAL9.8An arbitrary file upload vulnerability in the Media Manager function of Closed-Loop Technology CLESS Server v4.5.2 allow...
CVE-2024-33109CRITICAL9.8Directory Traversal in the web interface of the Tiptel IP 286 with firmware version 2.61.13.10 allows attackers to overw...
CVE-2024-8963CRITICAL9.1Path Traversal in the Ivanti CSA before 4.6 Patch 519 allows a remote unauthenticated attacker to access restricted func...
CVE-2024-31570CRITICAL9.8libfreeimage in FreeImage 3.4.0 through 3.18.0 has a stack-based buffer overflow in the PluginXPM.cpp Load function via ...
CVE-2024-7785CRITICAL9.3Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Ece Softwar...
CVE-2024-8986CRITICAL9.1The grafana plugin SDK bundles build metadata into the binaries it compiles; this metadata includes the repository URI f...
CVE-2024-47088CRITICAL9.8This vulnerability exists in Apex Softcell LD Geo due to missing restrictions for excessive failed authentication attemp...
CVE-2024-46946CRITICAL9.8langchain_experimental (aka LangChain Experimental) 0.1.17 through 0.3.0 for LangChain allows attackers to execute arbit...
CVE-2024-46377CRITICAL9.8Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the save_settings() function ...
CVE-2024-46376CRITICAL9.8Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the update_account() function...
CVE-2024-46375CRITICAL9.8Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the signup() function of the ...
CVE-2024-46374CRITICAL9.8Best House Rental Management System 1.0 contains a SQL injection vulnerability in the delete_category() function of the ...
CVE-2024-40568CRITICAL9.8Buffer Overflow vulnerability in btstack mesh commit before v.864e2f2b6b7878c8fab3cf5ee84ae566e3380c58 allows a remote a...
CVE-2024-46986CRITICAL9.9Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails. An arbitrary file write vulnera...
CVE-2024-45523CRITICAL9.1An issue was discovered in Bravura Security Fabric versions 12.3.x before 12.3.5.32784, 12.4.x before 12.4.3.35110, 12.5...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now