2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-37802HIGH8.8CodeProjects Health Care hospital Management System v1.0 was discovered to contain a SQL injection vulnerability in the ...
CVE-2024-37800MEDIUM6.1CodeProjects Restaurant Reservation System v1.0 was discovered to contain a reflected cross-site scripting (XSS) vulnera...
CVE-2024-37799MEDIUM5.4CodeProjects Restaurant Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the reserv_i...
CVE-2024-21685MEDIUM6.5This High severity Information Disclosure vulnerability was introduced in versions 9.4.0, 9.12.0, and 9.15.0 of Jira Cor...
CVE-2024-5275HIGH7.8A hard-coded password in the FileCatalyst TransferAgent can be found which can be used to unlock the keystore from which...
CVE-2024-6116CRITICAL9.8A vulnerability, which was classified as critical, has been found in itsourcecode Simple Online Hotel Reservation System...
CVE-2024-5750Rejected reason: ** REJECT ** Not a valid security issue.
CVE-2024-6115CRITICAL9.8A vulnerability classified as critical was found in itsourcecode Simple Online Hotel Reservation System 1.0. Affected by...
CVE-2024-6114CRITICAL9.8A vulnerability classified as critical has been found in itsourcecode Monbela Tourist Inn Online Reservation System up t...
CVE-2024-6112CRITICAL9.8A vulnerability classified as critical was found in itsourcecode Pool of Bethesda Online Reservation System 1.0. This vu...
CVE-2024-6111CRITICAL9.8A vulnerability classified as critical has been found in itsourcecode Pool of Bethesda Online Reservation System 1.0. Th...
CVE-2024-6110CRITICAL9.8A vulnerability was found in itsourcecode Magbanua Beach Resort Online Reservation System up to 1.0. It has been rated a...
CVE-2024-6109HIGH8.8A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been declared as critical. Affected by...
CVE-2024-5967LOW2.7A vulnerability was found in Keycloak. The LDAP testing endpoint allows changing the Connection URL  independently witho...
CVE-2024-38507MEDIUM5.4In JetBrains Hub before 2024.2.34646 stored XSS via project description was possible
CVE-2024-38506HIGH8.1In JetBrains YouTrack before 2024.2.34646 user without appropriate permissions could enable the auto-attach option for w...
CVE-2024-38505HIGH7.5In JetBrains YouTrack before 2024.2.34646 user access token was sent to the third-party site
CVE-2024-38504MEDIUM5.3In JetBrains YouTrack before 2024.2.34646 the Guest User Account was enabled for attaching files to articles
CVE-2024-6108MEDIUM6.9A vulnerability was found in Genexis Tilgin Home Gateway 322_AS0500-03_05_13_05. It has been classified as problematic. ...
CVE-2024-5953MEDIUM5.7A denial of service vulnerability was found in the 389-ds-base LDAP server. This issue may allow an authenticated user t...
CVE-2024-5899LOW3.3When Bazel Plugin in intellij imports a project (either using "import project" or "Auto import") the dialog for trusting...
CVE-2024-5533MEDIUM5.4The Divi theme for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 4.25.1 d...
CVE-2024-5172MEDIUM4.8The Expert Invoice WordPress plugin through 1.0.2 does not sanitise and escape some of its settings, which could allow h...
CVE-2024-4094MEDIUM5.4The Simple Share Buttons Adder WordPress plugin before 8.5.1 does not sanitise and escape some of its settings, which co...
CVE-2024-3276MEDIUM4.8The Lightbox & Modal Popup WordPress Plugin WordPress plugin before 2.7.28, foobox-image-lightbox-premium WordPress plu...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now