2024 CVE Vulnerabilities

39,241 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-5691MEDIUM4.7By tricking the browser with a `X-Frame-Options` header, a sandboxed iframe could have presented a button that, if click...
CVE-2024-5690MEDIUM4.3By monitoring the time certain operations take, an attacker could have guessed which external protocol handlers were fun...
CVE-2024-5689MEDIUM4.3In addition to detecting when a user was taking a screenshot (XXX), a website was able to overlay the 'My Shots' button ...
CVE-2024-5688HIGH8.1If a garbage collection was triggered at the right time, a use-after-free could have occurred during object transplant. ...
CVE-2024-5687MEDIUM5.3If a specific sequence of actions is performed when opening a new tab, the triggering principal associated with the new ...
CVE-2024-2462MEDIUM6.8Allow attackers to intercept or falsify data exchanges between the client and the server
CVE-2024-2461MEDIUM6.9If exploited an attacker could traverse the file system to access files or directories that would otherwise be inaccess...
CVE-2024-36266HIGH7.8A vulnerability has been identified in PowerSys (All versions < V3.11). The affected application insufficiently protects...
CVE-2024-35303HIGH7.8A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0012), Tecnomatix Plant S...
CVE-2024-35292HIGH8.8A vulnerability has been identified in SIMATIC S7-200 SMART CPU CR40 (6ES7288-1CR40-0AA0) (All versions), SIMATIC S7-200...
CVE-2024-35212MEDIUM6.9A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected a...
CVE-2024-35211MEDIUM6.8A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected w...
CVE-2024-35210MEDIUM5.1A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected w...
CVE-2024-35209MEDIUM6.9A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected w...
CVE-2024-35208MEDIUM5.5A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected w...
CVE-2024-35207HIGH7.8A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The web interf...
CVE-2024-35206HIGH8.5A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected a...
CVE-2024-33500HIGH7.4A vulnerability has been identified in Mendix Applications using Mendix 10 (All versions < V10.11.0), Mendix Application...
CVE-2024-5829MEDIUM5.3A vulnerability classified as problematic was found in smallweigit Avue up to 3.4.4. Affected by this vulnerability is a...
CVE-2024-35685MEDIUM5.3Missing Authorization vulnerability in Anders Norén Radcliffe 2.This issue affects Radcliffe 2: from n/a through 2.0.17.
CVE-2024-34813MEDIUM5.3Missing Authorization vulnerability in Moreconvert Team MC Woocommerce Wishlist smart-wishlist-for-more-convert.This iss...
CVE-2024-5825Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5584MEDIUM6.4The WordPress Online Booking and Scheduling Plugin – Bookly plugin for WordPress is vulnerable to Stored Cross-Site Scri...
CVE-2024-5398Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-4387Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now