2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-13137MEDIUM5.4A vulnerability was found in wangl1989 mysiteforme 1.0. It has been classified as problematic. This affects the function...
CVE-2024-13135MEDIUM5.4A vulnerability has been found in Emlog Pro 2.4.3 and classified as problematic. Affected by this vulnerability is an un...
CVE-2024-13132MEDIUM5.4A vulnerability classified as problematic was found in Emlog Pro up to 2.4.3. This vulnerability affects unknown code of...
CVE-2024-13130MEDIUM5.3A vulnerability was found in Dahua IPC-HFW1200S, IPC-HFW2300R-Z, IPC-HFW5220E-Z and IPC-HDW1200S up to 20241222. It has ...
CVE-2024-41768MEDIUM6.5IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 could allow a remote attacker to cause an unhandled ...
CVE-2024-41765MEDIUM6.5IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 could allow a remote attacker to traverse directorie...
CVE-2024-12475MEDIUM5.4The WP Multi Store Locator plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and ...
CVE-2024-12279MEDIUM6.1The WP Social AutoConnect plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and in...
CVE-2024-12195MEDIUM6.5The WP Project Manager – Task, team, and project management plugin featuring kanban board and gantt charts plugin for Wo...
CVE-2024-12221MEDIUM6.1The Turnkey bbPress by WeaverTheme plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘_wpnonc...
CVE-2024-11930MEDIUM5.4The Taskbuilder – WordPress Project & Task Management plugin plugin for WordPress is vulnerable to Stored Cross-Site Scr...
CVE-2024-12701MEDIUM6.1The WP Smart Import : Import any XML File to WordPress plugin for WordPress is vulnerable to Reflected Cross-Site Script...
CVE-2024-12545MEDIUM5.4The Scratch & Win – Giveaways and Contests. Boost subscribers, traffic, repeat visits, referrals, sales and more plugin...
CVE-2024-12047MEDIUM6.1The WP Compress – Instant Performance & Speed Optimization plugin for WordPress is vulnerable to Reflected Cross-Site Sc...
CVE-2024-11974MEDIUM6.1The Media Library Assistant plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘smc_settings_t...
CVE-2024-55897MEDIUM4.3IBM PowerHA SystemMirror for i 7.4 and 7.5 does not set the secure attribute on authorization tokens or session cookie...
CVE-2024-55896MEDIUM5.4IBM PowerHA SystemMirror for i 7.4 and 7.5 contains improper restrictions when rendering content via iFrames.  This vuln...
CVE-2024-12237MEDIUM4.3The Photo Gallery Slideshow & Masonry Tiled Gallery plugin for WordPress is vulnerable to Server-Side Request Forgery in...
CVE-2024-56332MEDIUM5.3Next.js is a React framework for building full-stack web applications. Starting in version 13.0.0 and prior to versions ...
CVE-2024-56412MEDIUM5.4PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1....
CVE-2024-56411MEDIUM5.4PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1....
CVE-2024-56410MEDIUM5.4PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1....
CVE-2024-36613MEDIUM6.2FFmpeg n6.1.1 has a vulnerability in the DXA demuxer of the libavformat library allowing for an integer overflow, potent...
CVE-2024-56514MEDIUM5.3Karmada is a Kubernetes management system that allows users to run cloud-native applications across multiple Kubernetes ...
CVE-2024-56409MEDIUM5.4PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Versions prior to 3.7.0, 2.3.5, 2.1.6, and 1....

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now