LiveActive security incident?Get immediate response
CVE archive

2024 CVE Archive

Browse CVE records published in 2024 CVE Archive, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 38428 matching CVEs · Page 11 of 769.

Critical · CVSS 9.1

CVE-2024-46446: Mecha CMS 3.0.0 is vulnerable to Directory Traversal.

Mecha CMS 3.0.0 is vulnerable to Directory Traversal. An attacker can construct cookies and URIs that bypass user identity checks. Parameters can then be passed through the POST method, resulting in the Deletion of Arbitrary Files or Website Takeover.

Published Oct 7, 2024 · Updated Jul 5, 2026