2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-13137 | MEDIUM | 5.4 | 0.3% | Jan 5, 2025 | A vulnerability was found in wangl1989 mysiteforme 1.0. It has been classified as problematic. This affects the function... |
| CVE-2024-13135 | MEDIUM | 5.4 | 0.3% | Jan 5, 2025 | A vulnerability has been found in Emlog Pro 2.4.3 and classified as problematic. Affected by this vulnerability is an un... |
| CVE-2024-13132 | MEDIUM | 5.4 | 0.4% | Jan 5, 2025 | A vulnerability classified as problematic was found in Emlog Pro up to 2.4.3. This vulnerability affects unknown code of... |
| CVE-2024-13130 | MEDIUM | 5.3 | 0.6% | Jan 5, 2025 | A vulnerability was found in Dahua IPC-HFW1200S, IPC-HFW2300R-Z, IPC-HFW5220E-Z and IPC-HDW1200S up to 20241222. It has ... |
| CVE-2024-41768 | MEDIUM | 6.5 | 0.4% | Jan 4, 2025 | IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 could allow a remote attacker to cause an unhandled ... |
| CVE-2024-41765 | MEDIUM | 6.5 | 0.6% | Jan 4, 2025 | IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 could allow a remote attacker to traverse directorie... |
| CVE-2024-12475 | MEDIUM | 5.4 | 0.3% | Jan 4, 2025 | The WP Multi Store Locator plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and ... |
| CVE-2024-12279 | MEDIUM | 6.1 | 0.2% | Jan 4, 2025 | The WP Social AutoConnect plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and in... |
| CVE-2024-12195 | MEDIUM | 6.5 | 0.4% | Jan 4, 2025 | The WP Project Manager – Task, team, and project management plugin featuring kanban board and gantt charts plugin for Wo... |
| CVE-2024-12221 | MEDIUM | 6.1 | 0.3% | Jan 4, 2025 | The Turnkey bbPress by WeaverTheme plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘_wpnonc... |
| CVE-2024-11930 | MEDIUM | 5.4 | 0.3% | Jan 4, 2025 | The Taskbuilder – WordPress Project & Task Management plugin plugin for WordPress is vulnerable to Stored Cross-Site Scr... |
| CVE-2024-12701 | MEDIUM | 6.1 | 0.4% | Jan 4, 2025 | The WP Smart Import : Import any XML File to WordPress plugin for WordPress is vulnerable to Reflected Cross-Site Script... |
| CVE-2024-12545 | MEDIUM | 5.4 | 0.2% | Jan 4, 2025 | The Scratch & Win – Giveaways and Contests. Boost subscribers, traffic, repeat visits, referrals, sales and more plugin... |
| CVE-2024-12047 | MEDIUM | 6.1 | 0.4% | Jan 4, 2025 | The WP Compress – Instant Performance & Speed Optimization plugin for WordPress is vulnerable to Reflected Cross-Site Sc... |
| CVE-2024-11974 | MEDIUM | 6.1 | 0.4% | Jan 4, 2025 | The Media Library Assistant plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘smc_settings_t... |
| CVE-2024-55897 | MEDIUM | 4.3 | 0.2% | Jan 3, 2025 | IBM PowerHA SystemMirror for i 7.4 and 7.5 does not set the secure attribute on authorization tokens or session cookie... |
| CVE-2024-55896 | MEDIUM | 5.4 | 0.2% | Jan 3, 2025 | IBM PowerHA SystemMirror for i 7.4 and 7.5 contains improper restrictions when rendering content via iFrames. This vuln... |
| CVE-2024-12237 | MEDIUM | 4.3 | 0.4% | Jan 3, 2025 | The Photo Gallery Slideshow & Masonry Tiled Gallery plugin for WordPress is vulnerable to Server-Side Request Forgery in... |
| CVE-2024-56332 | MEDIUM | 5.3 | 0.8% | Jan 3, 2025 | Next.js is a React framework for building full-stack web applications. Starting in version 13.0.0 and prior to versions ... |
| CVE-2024-56412 | MEDIUM | 5.4 | 0.4% | Jan 3, 2025 | PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1.... |
| CVE-2024-56411 | MEDIUM | 5.4 | 0.3% | Jan 3, 2025 | PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1.... |
| CVE-2024-56410 | MEDIUM | 5.4 | 0.3% | Jan 3, 2025 | PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1.... |
| CVE-2024-36613 | MEDIUM | 6.2 | 0.3% | Jan 3, 2025 | FFmpeg n6.1.1 has a vulnerability in the DXA demuxer of the libavformat library allowing for an integer overflow, potent... |
| CVE-2024-56514 | MEDIUM | 5.3 | 0.7% | Jan 3, 2025 | Karmada is a Kubernetes management system that allows users to run cloud-native applications across multiple Kubernetes ... |
| CVE-2024-56409 | MEDIUM | 5.4 | 0.3% | Jan 3, 2025 | PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1.... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now