2024 CVE Vulnerabilities
39,241 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37880 | HIGH | 7.5 | 0.7% | Jun 10, 2024 | The Kyber reference implementation before 9b8d306, when compiled by LLVM Clang through 18.x with some common optimizatio... |
| CVE-2024-5389 | HIGH | 8.1 | 0.4% | Jun 9, 2024 | In lunary-ai/lunary version 1.2.13, an insufficient granularity of access control vulnerability allows users to create, ... |
| CVE-2024-4577 | CRITICAL | 9.8 | 100.0% | Jun 9, 2024 | In PHP versions 8.1.* before 8.1.29, 8.2.* before 8.2.20, 8.3.* before 8.3.8, when using Apache and PHP-CGI on Windows, ... |
| CVE-2024-37570 | HIGH | 8.8 | 1.1% | Jun 9, 2024 | On Mitel 6869i 4.5.0.41 devices, the Manual Firmware Update (upgrade.html) page does not perform sanitization on the use... |
| CVE-2024-37569 | HIGH | 8.8 | 3.2% | Jun 9, 2024 | An issue was discovered on Mitel 6869i through 4.5.0.41 and 5.x through 5.0.0.1018 devices. A command injection vulnerab... |
| CVE-2024-2408 | MEDIUM | 5.9 | 1.2% | Jun 9, 2024 | The openssl_private_decrypt function in PHP, when using PKCS1 padding (OPENSSL_PKCS1_PADDING, which is the default), is ... |
| CVE-2024-5585 | HIGH | 8.8 | 28.8% | Jun 9, 2024 | In PHP versions 8.1.* before 8.1.29, 8.2.* before 8.2.20, 8.3.* before 8.3.8, the fix for CVE-2024-1874 does not work if... |
| CVE-2024-5458 | MEDIUM | 5.3 | 12.1% | Jun 9, 2024 | In PHP versions 8.1.* before 8.1.29, 8.2.* before 8.2.20, 8.3.* before 8.3.8, due to a code logic error, filtering funct... |
| CVE-2024-37568 | HIGH | 7.5 | 0.4% | Jun 9, 2024 | lepture Authlib before 1.3.1 has algorithm confusion with asymmetric public keys. Unless an algorithm is specified in a ... |
| CVE-2024-35748 | MEDIUM | 5.3 | 0.3% | Jun 9, 2024 | Missing Authorization vulnerability in OPMC WooCommerce Dropshipping.This issue affects WooCommerce Dropshipping: from n... |
| CVE-2024-35662 | HIGH | 8.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in Andreas Sofantzis Simple COD Fees for WooCommerce.This issue affects Simple COD F... |
| CVE-2024-35661 | CRITICAL | 9.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in SoftLab Upload Fields for WPForms.This issue affects Upload Fields for WPForms: f... |
| CVE-2024-34802 | CRITICAL | 9.8 | 0.3% | Jun 9, 2024 | Missing Authorization vulnerability in AdFoxly AdFoxly – Ad Manager, AdSense Ads & Ads.Txt.This issue affects AdFoxly – ... |
| CVE-2024-32081 | HIGH | 8.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in Websupporter Filter Custom Fields & Taxonomies Light.This issue affects Filter Cu... |
| CVE-2024-31304 | HIGH | 8.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in MultiVendorX WC Marketplace.This issue affects WC Marketplace: from n/a through 4... |
| CVE-2024-31284 | CRITICAL | 9.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in WPDeveloper EmbedPress.This issue affects EmbedPress: from n/a through 3.9.8. |
| CVE-2024-31283 | CRITICAL | 9.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in zorem Advanced Local Pickup for WooCommerce.This issue affects Advanced Local Pic... |
| CVE-2024-31276 | CRITICAL | 9.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in WPFactory Products, Order & Customers Export for WooCommerce.This issue affects P... |
| CVE-2024-31275 | CRITICAL | 9.8 | 0.5% | Jun 9, 2024 | Missing Authorization vulnerability in Metagauss EventPrime.This issue affects EventPrime: from n/a through 3.3.4. |
| CVE-2024-32713 | HIGH | 8.8 | 0.3% | Jun 9, 2024 | Missing Authorization vulnerability in AutoWriter AI Post Generator | AutoWriter.This issue affects AI Post Generator | ... |
| CVE-2024-32705 | HIGH | 8.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in reputeinfosystems ARForms arforms.This issue affects ARForms: from n/a through <=... |
| CVE-2024-32704 | MEDIUM | 6.5 | 0.3% | Jun 9, 2024 | Missing Authorization vulnerability in reputeinfosystems ARForms arforms.This issue affects ARForms: from n/a through <=... |
| CVE-2024-32703 | HIGH | 8.1 | 0.6% | Jun 9, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in reputeinfosystems ARForm... |
| CVE-2024-32701 | HIGH | 8.8 | 0.3% | Jun 9, 2024 | Missing Authorization vulnerability in InstaWP InstaWP Connect instawp-connect.This issue affects InstaWP Connect: from ... |
| CVE-2024-31423 | HIGH | 8.8 | 0.3% | Jun 9, 2024 | Missing Authorization vulnerability in Alex Volkov WP Accessibility Helper (WAH).This issue affects WP Accessibility Hel... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now