2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-58044MEDIUM5.5Permission verification bypass vulnerability in the notification module Impact: Successful exploitation of this vulnerab...
CVE-2024-58043MEDIUM5.5Permission bypass vulnerability in the window module Impact: Successful exploitation of this vulnerability may affect se...
CVE-2024-48248HIGH8.6NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /...
CVE-2024-47262MEDIUM5.3Dzmitry Lukyanenka, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API param.cgi was vulnerable to a...
CVE-2024-47260MEDIUM6.551l3nc3, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API mediaclip.cgi did not have a sufficient ...
CVE-2024-47259HIGH7.1Girishunawane, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API dynamicoverlay.cgi did not have a ...
CVE-2024-13685MEDIUM5.3The Admin and Site Enhancements (ASE) WordPress plugin before 7.6.10 retrieves client IP addresses from potentially untr...
CVE-2024-13686MEDIUM4.3The VW Storefront theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability che...
CVE-2024-55064MEDIUM5.4Multiple cross-site scripting (XSS) vulnerabilities in EasyVirt DC NetScope <= 8.6.4 allow remote attackers to inject ar...
CVE-2024-5888MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51966MEDIUM4.9There is a path traversal vulnerability in ESRI ArcGIS Server versions 11.3 and below. Successful exploitation may allo...
CVE-2024-51963MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and follow that may allow a remo...
CVE-2024-51962HIGH8.7A SQL injection vulnerability in ArcGIS Server allows an EDIT operation to modify column properties in a manner that cou...
CVE-2024-51961HIGH7.5There is a local file inclusion vulnerability in ArcGIS Server 11.3 and below that may allow a remote, unauthenticated a...
CVE-2024-51960MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51959MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51958MEDIUM4.9There is a path traversal vulnerability in ESRI ArcGIS Server versions 11.3 and below. Successful exploitation may allo...
CVE-2024-51957MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51956MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51954HIGH8.5There is an improper access control issue in ArcGIS Server versions 11.3 and below on Windows and Linux which, under uni...
CVE-2024-51953MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51952MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51951MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51950MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51949MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now