2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-7505CRITICAL9.8A vulnerability, which was classified as critical, was found in itsourcecode Bike Delivery System 1.0. Affected is an un...
CVE-2024-7500CRITICAL9.8A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been rated as critical. Affected by thi...
CVE-2024-7009HIGH7.1Unsanitized user-input in Calibre <= 7.15.0 allow users with permissions to perform full-text searches to achieve SQL in...
CVE-2024-7008MEDIUM6.1Unsanitized user-input in Calibre <= 7.15.0 allow attackers to perform reflected cross-site scripting.
CVE-2024-6886CRITICAL10Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Gitea Gitea...
CVE-2024-6782CRITICAL9.8Improper access control in Calibre 6.9.0 ~ 7.14.0 allow unauthenticated attackers to achieve remote code execution.
CVE-2024-6781HIGH7.5Path traversal in Calibre <= 7.14.0 allow unauthenticated attackers to achieve arbitrary file read.
CVE-2024-28962HIGH7.5Dell Command | Update, Dell Update, and Alienware Update UWP, versions prior to 5.4, contain an Exposed Dangerous Method...
CVE-2024-7499CRITICAL9.8A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been declared as critical. Affected by ...
CVE-2024-7498CRITICAL9.8A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been classified as critical. Affected i...
CVE-2024-5963MEDIUM6.7Unquoted Executable Path vulnerability in Hitachi Device Manager on Windows (Device Manager Server component).This issue...
CVE-2024-5828CRITICAL9.8Expression Language Injection vulnerability in Hitachi Tuning Manager on Windows, Linux, Solaris allows Code Injection.T...
CVE-2024-7497HIGH8.8A vulnerability was found in itsourcecode Airline Reservation System 1.0 and classified as critical. This issue affects ...
CVE-2024-7496HIGH8.8A vulnerability has been found in itsourcecode Airline Reservation System 1.0 and classified as critical. This vulnerabi...
CVE-2024-7485HIGH7.2The Traffic Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'page' parameter in the 'U...
CVE-2024-7484HIGH7.2The CRM Perks Forms plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file validation on ...
CVE-2024-6315HIGH8.8The Blox Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation i...
CVE-2024-7495CRITICAL9.8A vulnerability, which was classified as critical, was found in itsourcecode Laravel Accounting System 1.0. This affects...
CVE-2024-7547HIGH7.8oFono SMS Decoder Stack-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attack...
CVE-2024-7546HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7545HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7544HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7543HIGH7.8oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attacker...
CVE-2024-7542LOW3.3oFono AT CMGR Command Uninitialized Variable Information Disclosure Vulnerability. This vulnerability allows local attac...
CVE-2024-7541LOW3.3oFono AT CMT Command Uninitialized Variable Information Disclosure Vulnerability. This vulnerability allows local attack...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now