2024 CVE Vulnerabilities
39,243 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-34097 | HIGH | 7.8 | 0.6% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-34096 | HIGH | 7.8 | 0.6% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-34095 | HIGH | 7.8 | 0.6% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-34094 | HIGH | 7.8 | 0.6% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-30312 | MEDIUM | 5.5 | 1.8% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier Answer: are affected by an out-of-bounds read vulnerabili... |
| CVE-2024-30311 | MEDIUM | 5.5 | 2.0% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier Answer: are affected by an out-of-bounds read vulnerabili... |
| CVE-2024-30310 | HIGH | 7.8 | 2.8% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by an out-of-bounds write vulnerability that... |
| CVE-2024-30284 | HIGH | 7.8 | 4.3% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-4010 | HIGH | 8.8 | 0.4% | May 15, 2024 | The Email Subscribers by Icegram Express plugin for WordPress is vulnerable to unauthorized access of data, modification... |
| CVE-2024-4636 | MEDIUM | 6.4 | 0.4% | May 15, 2024 | The Image Optimization by Optimole – Lazy Load, CDN, Convert WebP & AVIF plugin for WordPress is vulnerable to Stored Cr... |
| CVE-2024-3824 | MEDIUM | 5.5 | 0.2% | May 15, 2024 | The Base64 Encoder/Decoder WordPress plugin through 0.9.2 does not have CSRF check in place when resetting its settings,... |
| CVE-2024-3823 | LOW | 2.4 | 0.2% | May 15, 2024 | The Base64 Encoder/Decoder WordPress plugin through 0.9.2 does not have CSRF check when updating its settings, and is mi... |
| CVE-2024-3822 | MEDIUM | 4.8 | 0.7% | May 15, 2024 | The Base64 Encoder/Decoder WordPress plugin through 0.9.2 does not sanitise and escape a parameter before outputting it ... |
| CVE-2024-3749 | MEDIUM | 6.5 | 0.5% | May 15, 2024 | The SP Project & Document Manager WordPress plugin through 4.71 lacks proper access controllers and allows a logged in u... |
| CVE-2024-3748 | MEDIUM | 6.5 | 0.4% | May 15, 2024 | The SP Project & Document Manager WordPress plugin through 4.71 is missing validation in its upload function, allowing a... |
| CVE-2024-3634 | MEDIUM | 4.8 | 0.4% | May 15, 2024 | The month name translation benaceur WordPress plugin before 2.3.8 does not sanitise and escape some of its settings, whi... |
| CVE-2024-3631 | MEDIUM | 4.3 | 0.2% | May 15, 2024 | The HL Twitter WordPress plugin through 2014.1.18 does not have CSRF check when unlinking twitter accounts, which could ... |
| CVE-2024-3630 | MEDIUM | 5.4 | 0.3% | May 15, 2024 | The HL Twitter WordPress plugin through 2014.1.18 does not sanitise and escape some of its settings, which could allow h... |
| CVE-2024-3629 | LOW | 2.4 | 0.2% | May 15, 2024 | The HL Twitter WordPress plugin through 2014.1.18 does not have CSRF check in place when updating its settings, which co... |
| CVE-2024-3548 | MEDIUM | 6.1 | 0.4% | May 15, 2024 | The WP Shortcodes Plugin — Shortcodes Ultimate WordPress plugin before 7.1.2 does not sanitise and escape a parameter be... |
| CVE-2024-3407 | MEDIUM | 5.3 | 0.2% | May 15, 2024 | The WP Prayer WordPress plugin through 2.0.9 does not have CSRF checks in some places, which could allow attackers to ma... |
| CVE-2024-3406 | HIGH | 8.8 | 0.4% | May 15, 2024 | The WP Prayer WordPress plugin through 2.0.9 does not have CSRF check in place when updating its email settings, which c... |
| CVE-2024-3405 | HIGH | 7.6 | 0.3% | May 15, 2024 | The WP Prayer WordPress plugin through 2.0.9 does not have CSRF check in place when updating its settings, which could a... |
| CVE-2024-4894 | MEDIUM | 5.3 | 0.5% | May 15, 2024 | ITPison OMICARD EDM fails to properly filter specific URL parameter, allowing unauthenticated remote attackers to modif... |
| CVE-2024-4893 | CRITICAL | 9.8 | 0.8% | May 15, 2024 | DigiWin EasyFlow .NET lacks validation for certain input parameters, allowing remote attackers to inject arbitrary SQL c... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now