2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-43764HIGH7.8In onPrimaryClipChanged of ClipboardListener.java, there is a possible way to partially bypass lock screen. This could l...
CVE-2024-43762HIGH7.8In multiple locations, there is a possible way to avoid unbinding of a service from the system due to a logic error in t...
CVE-2024-43097HIGH7.8In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds write due to an integer overflow. This could lead ...
CVE-2024-43077HIGH7.8In DevmemValidateFlags of devicemem_server.c , there is a possible out of bounds write due to memory corruption. This co...
CVE-2024-56199HIGH7.6phpMyFAQ is an open source FAQ web application. Starting no later than version 3.2.10 and prior to version 4.0.2, an att...
CVE-2024-9950HIGH7.8A vulnerability in Forescout SecureConnector v11.3.07.0109 on Windows allows unauthenticated user to modify compliance...
CVE-2024-55543HIGH7.8Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protec...
CVE-2024-55540HIGH7.8Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protec...
CVE-2024-56137HIGH7.2MaxKB, which stands for Max Knowledge Base, is an open source knowledge base question-answering system based on a large ...
CVE-2024-13111HIGH8.1A vulnerability classified as critical was found in Beijing Yunfan Internet Technology Yunfan Learning Examination Syste...
CVE-2024-13110HIGH7.5A vulnerability classified as problematic has been found in Beijing Yunfan Internet Technology Yunfan Learning Examinati...
CVE-2024-56014HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Markyis Cool Olivi...
CVE-2024-39623HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in CridioStudio ListingPro listingpro allows Authentication Bypass.This ...
CVE-2024-56267HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in html5maps Interact...
CVE-2024-56266HIGH8.8Missing Authorization vulnerability in sonaar MP3 Audio Player for Music, Radio & Podcast by Sonaar mp3-music-player-by-...
CVE-2024-56250HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Greg Ross Just Wri...
CVE-2024-56247HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AF themes WP Post ...
CVE-2024-56026HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Greg – SiteOrigin ...
CVE-2024-56025HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in adworkmedia AdWork...
CVE-2024-56024HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DuoGeek Custom Das...
CVE-2024-56023HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PerfectSolution WP...
CVE-2024-56022HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WordPress Monsters...
CVE-2024-56018HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BU Web Team BU Sec...
CVE-2024-37937HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in raratheme Rara Business rara-business allows Cross Site Request Forge...
CVE-2024-37508HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in raratheme Construction Landing Page construction-landing-page allows ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now