2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-54120MEDIUM5.9Race condition vulnerability in the distributed notification module Impact: Successful exploitation of this vulnerabilit...
CVE-2024-47934MEDIUM6.9Improper Input Validation vulnerability in Management Program in TXOne Networks Portable Inspector and Portable Inspecto...
CVE-2024-47239MEDIUM6.5Dell PowerScale OneFS versions 8.2.2.x through 9.9.0.0 contain an uncontrolled resource consumption vulnerability. A rem...
CVE-2024-40679MEDIUM5.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to an information disclosure vulner...
CVE-2024-55218MEDIUM6.1IceWarp Server 10.2.1 is vulnerable to Cross Site Scripting (XSS) via the meta parameter.
CVE-2024-50659MEDIUM6.1Cross Site Scripting vulnerability iPublish Media Solutions AdPortal 3.0.39 allows a remote attacker to escalate privile...
CVE-2024-44450MEDIUM5.4Multiple functions are vulnerable to Authorization Bypass in AIMS eCrew. The issue was fixed in version JUN23 #190.
CVE-2024-56272MEDIUM4.3Missing Authorization vulnerability in ThemeSupport Hide Category by User Role for WooCommerce hide-category-by-user-rol...
CVE-2024-56270MEDIUM5.3Missing Authorization vulnerability in SecureSubmit WP SecureSubmit securesubmit allows Retrieve Embedded Sensitive Data...
CVE-2024-40747MEDIUM6.1Various module chromes didn't properly process inputs, leading to XSS vectors.
CVE-2024-12429MEDIUM5.1An attacker who successfully exploited these vulnerabilities could grant read access to files. A vulnerability exists in...
CVE-2024-52813MEDIUM4.3matrix-rust-sdk is an implementation of a Matrix client-server library in Rust. Versions of the matrix-sdk-crypto Rust c...
CVE-2024-28778MEDIUM6.5IBM Cognos Controller 11.0.0 through 11.0.1 and IBM Controller 11.1.0 is vulnerable to exposure of Artifactory API keys....
CVE-2024-25037MEDIUM4.3IBM Cognos Controller 11.0.0 through 11.0.1 and IBM Controller 11.1.0 could allow a remote attacker to obtain sensitive ...
CVE-2024-11681MEDIUM6.9A malicious or compromised MacPorts mirror can execute arbitrary commands as root on the machine of a client running por...
CVE-2024-45640MEDIUM5.3IBM Security ReaQta 3.12 returns sensitive information in an HTTP response that could be used in further attacks against...
CVE-2024-45100MEDIUM4.9IBM Security ReaQta 3.12 could allow a privileged user to cause a denial of service by sending multiple administration r...
CVE-2024-12738MEDIUM6.1The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is v...
CVE-2024-12426MEDIUM6.5Exposure of Environmental Variables and arbitrary INI file values to an Unauthorized Actor vulnerability in The Document...
CVE-2024-12131MEDIUM4.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-52893MEDIUM5.3IBM Concert Software 1.0.0, 1.0.1, 1.0.2, 1.0.2.1, and 1.0.3  could allow a remote attacker to obtain sensitive informa...
CVE-2024-52891MEDIUM5.4IBM Concert Software 1.0.0, 1.0.1, 1.0.2, 1.0.2.1, and 1.0.3 could allow an authenticated user to inject malicious inf...
CVE-2024-52366MEDIUM5.9IBM Concert Software 1.0.0, 1.0.1, 1.0.2, 1.0.2.1, and 1.0.3 could allow a remote attacker to obtain sensitive informati...
CVE-2024-12711MEDIUM5.3The RSVP and Event Management plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec...
CVE-2024-12532MEDIUM4.3The BWD Elementor Addons plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now