2024 CVE Vulnerabilities
39,241 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-26010 | HIGH | 7.5 | 0.8% | Jun 11, 2024 | A stack-based buffer overflow in Fortinet FortiPAM version 1.2.0, 1.1.0 through 1.1.2, 1.0.0 through 1.0.3, FortiWeb, Fo... |
| CVE-2024-24703 | HIGH | 8.6 | 0.4% | Jun 11, 2024 | Missing Authorization vulnerability in MultiVendorX WC Marketplace.This issue affects WC Marketplace: from n/a through 4... |
| CVE-2024-23111 | MEDIUM | 4.8 | 1.0% | Jun 11, 2024 | An improper neutralization of input during web page Generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiO... |
| CVE-2024-23110 | HIGH | 7.8 | 0.3% | Jun 11, 2024 | A stack-based buffer overflow in Fortinet FortiOS version 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13... |
| CVE-2024-21754 | MEDIUM | 4.4 | 3.5% | Jun 11, 2024 | A use of password hash with insufficient computational effort vulnerability [CWE-916] affecting FortiOS version 7.4.3 an... |
| CVE-2024-5189 | MEDIUM | 5.4 | 0.4% | Jun 11, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-35683 | MEDIUM | 5.3 | 0.4% | Jun 11, 2024 | Missing Authorization vulnerability in Teplitsa of social technologies Leyka.This issue affects Leyka: from n/a through ... |
| CVE-2024-35671 | MEDIUM | 4.3 | 0.4% | Jun 11, 2024 | Missing Authorization vulnerability in Minoji MJ Update History.This issue affects MJ Update History: from n/a through 1... |
| CVE-2024-34442 | MEDIUM | 5.3 | 0.4% | Jun 11, 2024 | Missing Authorization vulnerability in weDevs weDocs.This issue affects weDocs: from n/a through 2.1.4. |
| CVE-2024-2013 | CRITICAL | 10 | 0.7% | Jun 11, 2024 | An authentication bypass vulnerability exists in the FOXMAN-UN/UNEM server / API Gateway component that if exploited all... |
| CVE-2024-2012 | CRITICAL | 9.8 | 0.6% | Jun 11, 2024 | vulnerability exists in the FOXMAN-UN/UNEM server / API Gateway that if exploited an attacker could use to allow uninten... |
| CVE-2024-2011 | CRITICAL | 9.8 | 0.5% | Jun 11, 2024 | A heap-based buffer overflow vulnerability exists in the FOXMAN-UN/UNEM that if exploited will generally lead to a denia... |
| CVE-2024-28023 | MEDIUM | 5.7 | 0.2% | Jun 11, 2024 | A vulnerability exists in the message queueing mechanism that if exploited can lead to the exposure of resources or fun... |
| CVE-2024-28021 | HIGH | 7.4 | 0.3% | Jun 11, 2024 | A vulnerability exists in the FOXMAN-UN/UNEM server that affects the message queueing mechanism’s certificate validatio... |
| CVE-2024-5702 | HIGH | 7.5 | 0.9% | Jun 11, 2024 | Memory corruption in the networking stack could have led to a potentially exploitable crash. This vulnerability affects ... |
| CVE-2024-5701 | CRITICAL | 9.8 | 0.6% | Jun 11, 2024 | Memory safety bugs present in Firefox 126. Some of these bugs showed evidence of memory corruption and we presume that w... |
| CVE-2024-5700 | HIGH | 7 | 0.4% | Jun 11, 2024 | Memory safety bugs present in Firefox 126, Firefox ESR 115.11, and Thunderbird 115.11. Some of these bugs showed evidenc... |
| CVE-2024-5699 | CRITICAL | 9.8 | 0.8% | Jun 11, 2024 | In violation of spec, cookie prefixes such as `__Secure` were being ignored if they were not correctly capitalized - by ... |
| CVE-2024-5698 | MEDIUM | 6.1 | 0.4% | Jun 11, 2024 | By manipulating the fullscreen feature while opening a data-list, an attacker could have overlaid a text box over the ad... |
| CVE-2024-5697 | MEDIUM | 4.3 | 0.4% | Jun 11, 2024 | A website was able to detect when a user took a screenshot of a page using the built-in Screenshot functionality in Fire... |
| CVE-2024-5696 | HIGH | 8.6 | 0.8% | Jun 11, 2024 | By manipulating the text in an `<input>` tag, an attacker could have caused corrupt memory leading to a potentiall... |
| CVE-2024-5695 | CRITICAL | 9.8 | 0.6% | Jun 11, 2024 | If an out-of-memory condition occurs at a specific point using allocations in the probabilistic heap checker, an asserti... |
| CVE-2024-5694 | HIGH | 7.5 | 0.5% | Jun 11, 2024 | An attacker could have caused a use-after-free in the JavaScript engine to read memory in the JavaScript string section ... |
| CVE-2024-5693 | MEDIUM | 6.1 | 0.6% | Jun 11, 2024 | Offscreen Canvas did not properly track cross-origin tainting, which could be used to access image data from another sit... |
| CVE-2024-5692 | MEDIUM | 6.5 | 0.6% | Jun 11, 2024 | On Windows 10, when using the 'Save As' functionality, an attacker could have tricked the browser into saving the file w... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now