2024 CVE Vulnerabilities

39,241 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-3699CRITICAL9.8Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the databas...
CVE-2024-28833HIGH7.5Improper restriction of excessive authentication attempts with two factor authentication methods in Checkmk 2.3 before 2...
CVE-2024-1228CRITICAL9.8Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the databas...
CVE-2024-36971HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: fix __dst_negative_advice() race __dst_negati...
CVE-2024-4746MEDIUM6.3Missing Authorization vulnerability in netgsm Netgsm netgsm allows Exploiting Incorrectly Configured Access Control Secu...
CVE-2024-4745MEDIUM6.3Missing Authorization vulnerability in RafflePress Giveaways and Contests by RafflePress.This issue affects Giveaways an...
CVE-2024-4744HIGH7.3Missing Authorization vulnerability in Avirtum iPages Flipbook.This issue affects iPages Flipbook: from n/a through 1.5....
CVE-2024-4328HIGH8.1A Cross-Site Request Forgery (CSRF) vulnerability exists in the clear_personality_files_list function of the parisneo/lo...
CVE-2024-35742HIGH7.3Missing Authorization vulnerability in Code Parrots Easy Forms for Mailchimp.This issue affects Easy Forms for Mailchimp...
CVE-2024-35741HIGH8.8Missing Authorization vulnerability in Awesome Support Team Awesome Support.This issue affects Awesome Support: from n/a...
CVE-2024-35735CRITICAL9.8Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form.This issue affects WP Time Slots Booking Fo...
CVE-2024-35729HIGH8.8Missing Authorization vulnerability in Tickera Tickera tickera-event-ticketing-system allows Exploiting Incorrectly Conf...
CVE-2024-35727HIGH8.8Missing Authorization vulnerability in actpro Extra Product Options for WooCommerce.This issue affects Extra Product Opt...
CVE-2024-35726HIGH8.8Missing Authorization vulnerability in ThemeKraft WooBuddy.This issue affects WooBuddy: from n/a through 3.4.19.
CVE-2024-35725HIGH8.8Missing Authorization vulnerability in LA-Studio LA-Studio Element Kit for Elementor.This issue affects LA-Studio Elemen...
CVE-2024-35724HIGH8.8Missing Authorization vulnerability in Bosa Themes Bosa Elementor Addons and Templates for WooCommerce.This issue affect...
CVE-2024-35723HIGH8.8Missing Authorization vulnerability in Andrew Dashboard To-Do List dashboard-to-do-list.This issue affects Dashboard To-...
CVE-2024-35722HIGH8.8Missing Authorization vulnerability in A WP Life Slider Responsive Slideshow – Image slider, Gallery slideshow.This issu...
CVE-2024-35721HIGH8.8Missing Authorization vulnerability in A WP Life Image Gallery – Lightbox Gallery, Responsive Photo Gallery, Masonry Gal...
CVE-2024-35720HIGH8.8Missing Authorization vulnerability in A WP Life Album Gallery – WordPress Gallery.This issue affects Album Gallery – Wo...
CVE-2024-35717HIGH8.8Missing Authorization vulnerability in A WP Life Media Slider – Photo Sleder, Video Slider, Link Slider, Carousal Slides...
CVE-2024-23524HIGH8.8Missing Authorization vulnerability in ONTRAPORT Inc. PilotPress.This issue affects PilotPress: from n/a through 2.0.30.
CVE-2024-22298CRITICAL9.8Missing Authorization vulnerability in TMS Amelia ameliabooking.This issue affects Amelia: from n/a through 1.0.98.
CVE-2024-22296HIGH8.8Missing Authorization vulnerability in Code for Recovery 12 Step Meeting List.This issue affects 12 Step Meeting List: f...
CVE-2024-21751HIGH8.8Missing Authorization vulnerability in RabbitLoader.This issue affects RabbitLoader: from n/a through 2.19.13.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now