2024 CVE Vulnerabilities
39,242 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-29152 | HIGH | 7.5 | 0.4% | Jun 4, 2024 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, Exynos 990, Exynos 1080, ... |
| CVE-2024-25095 | HIGH | 7.5 | 0.4% | Jun 4, 2024 | Insertion of Sensitive Information into Log File vulnerability in Code Parrots Easy Forms for Mailchimp.This issue affec... |
| CVE-2024-36550 | HIGH | 8.8 | 0.2% | Jun 4, 2024 | idccms V1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/vpsCompany_deal.php?mudi=add&nohre... |
| CVE-2024-36549 | HIGH | 8.8 | 0.3% | Jun 4, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/vpsCompany_deal.php?mudi=rev&nohre... |
| CVE-2024-36548 | HIGH | 8.8 | 0.2% | Jun 4, 2024 | idccms V1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via admin/vpsCompany_deal.php?mudi=del |
| CVE-2024-36547 | HIGH | 8.8 | 0.2% | Jun 4, 2024 | idccms V1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/vpsClass_deal.php?mud... |
| CVE-2024-36400 | CRITICAL | 9.8 | 0.8% | Jun 4, 2024 | nano-id is a unique string ID generator for Rust. Affected versions of the nano-id crate incorrectly generated IDs using... |
| CVE-2024-35653 | MEDIUM | 5.4 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Visual Composer Vi... |
| CVE-2024-35652 | MEDIUM | 6.1 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Saso Nikolo... |
| CVE-2024-35651 | MEDIUM | 5.4 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Spiffy Plug... |
| CVE-2024-35649 | MEDIUM | 5.4 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Pdfcrowd Sa... |
| CVE-2024-32871 | HIGH | 7.5 | 0.8% | Jun 4, 2024 | Pimcore is an Open Source Data & Experience Management Platform. The Pimcore thumbnail generation can be used to flood t... |
| CVE-2024-29004 | MEDIUM | 4.3 | 0.3% | Jun 4, 2024 | The SolarWinds Platform was determined to be affected by a stored cross-site scripting vulnerability affecting the web c... |
| CVE-2024-28999 | HIGH | 7.5 | 13.9% | Jun 4, 2024 | The SolarWinds Platform was determined to be affected by a Race Condition Vulnerability affecting the web console. |
| CVE-2024-28996 | HIGH | 7.5 | 0.3% | Jun 4, 2024 | The SolarWinds Platform was determined to be affected by a SWQL Injection Vulnerability. Attack complexity is high for t... |
| CVE-2024-0756 | MEDIUM | 5.4 | 0.2% | Jun 4, 2024 | The Insert or Embed Articulate Content into WordPress plugin through 4.3000000023 lacks validation of URLs when adding i... |
| CVE-2024-35782 | MEDIUM | 5.4 | 0.2% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Codeless Co... |
| CVE-2024-35700 | CRITICAL | 9.8 | 0.5% | Jun 4, 2024 | Incorrect Privilege Assignment vulnerability in DeluxeThemes Userpro userpro.This issue affects Userpro: from n/a throug... |
| CVE-2024-35668 | MEDIUM | 6.1 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Brevo Newsl... |
| CVE-2024-35666 | MEDIUM | 5.4 | 0.2% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Themesflat ... |
| CVE-2024-35664 | MEDIUM | 6.1 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpvividplugins WPv... |
| CVE-2024-35655 | MEDIUM | 4.8 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brave Brave brave-... |
| CVE-2024-35654 | MEDIUM | 5.4 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CyberChimps... |
| CVE-2024-35634 | MEDIUM | 4.9 | 0.5% | Jun 4, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Wow-Company Woocommerce ... |
| CVE-2024-35629 | CRITICAL | 9.8 | 0.5% | Jun 4, 2024 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now