2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-12752HIGH7.8Foxit PDF Reader AcroForm Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attack...
CVE-2024-12751HIGH7.8Foxit PDF Reader AcroForm Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attac...
CVE-2024-11944HIGH8.8iXsystems TrueNAS CORE tarfile.extractall Directory Traversal Remote Code Execution Vulnerability. This vulnerability al...
CVE-2024-56800HIGH7.4Firecrawl is a web scraper that allows users to extract the content of a webpage for a large language model. Versions pr...
CVE-2024-12836HIGH7.8Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability all...
CVE-2024-12835HIGH7.8Delta Electronics DRASimuCAD ICS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerabilit...
CVE-2024-12834HIGH7.8Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability all...
CVE-2024-12828HIGH8.8Webmin CGI Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute ...
CVE-2024-50703HIGH8.1TeamPass before 3.1.3.1 does not properly prevent a user from acting with the privileges of a different user_id.
CVE-2024-54181HIGH7.2IBM WebSphere Automation 1.7.5 could allow a remote privileged user, who has authorized access to the swagger UI, to exe...
CVE-2024-47925HIGH7.5Tecnick TCExam – Multiple CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-47924HIGH7.5Boa web server – CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-47922HIGH7.5Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CVE-2024-47921HIGH8.4Smadar SPS – CWE-327: Use of a Broken or Risky Cryptographic Algorithm
CVE-2024-47920HIGH7.5Tiki Wiki CMS – CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-47917HIGH7.5CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-13039HIGH8.8A vulnerability was found in code-projects Simple Chat System 1.0. It has been rated as critical. Affected by this issue...
CVE-2024-13036HIGH7.5A vulnerability was found in code-projects Chat System 1.0 and classified as critical. This issue affects some unknown p...
CVE-2024-13034HIGH7.6A vulnerability, which was classified as problematic, was found in code-projects Chat System 1.0. This affects an unknow...
CVE-2024-13029HIGH8.8A vulnerability, which was classified as problematic, was found in Antabot White-Jotter up to 0.2.2. Affected is an unkn...
CVE-2024-13025HIGH8.8A vulnerability was found in Codezips College Management System 1.0. It has been classified as critical. Affected is an ...
CVE-2024-13020HIGH8.8A vulnerability classified as critical was found in code-projects Chat System 1.0. Affected by this vulnerability is an ...
CVE-2024-56740HIGH7.8In the Linux kernel, the following vulnerability has been resolved: nfs/localio: must clear res.replen in nfs_local_rea...
CVE-2024-56721HIGH7.1In the Linux kernel, the following vulnerability has been resolved: x86/CPU/AMD: Terminate the erratum_1386_microcode a...
CVE-2024-56737HIGH8.8GNU GRUB (aka GRUB2) through 2.12 has a heap-based buffer overflow in fs/hfs.c via crafted sblock data in an HFS filesys...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now