2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-31460HIGH8.8Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data store...
CVE-2024-31459HIGH7.2Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, there is a file inclus...
CVE-2024-31458HIGH8Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data store...
CVE-2024-31445HIGH8.8Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, a SQL injection vulner...
CVE-2024-31444MEDIUM5.4Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data store...
CVE-2024-31443MEDIUM5.4Cacti provides an operational monitoring and fault management framework. Prior to 1.2.27, some of the data stored in `fo...
CVE-2024-31441HIGH7.5DataEase is an open source data visualization analysis tool. Due to the lack of restrictions on the connection parameter...
CVE-2024-31377CRITICAL10Unrestricted Upload of File with Dangerous Type vulnerability in J.N. Breetvelt a.K.A. OpaJaap WP Photo Album Plus.This ...
CVE-2024-31113HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Easy Digital Downloads.This issue affects Easy Digital Downloads: fro...
CVE-2024-30802CRITICAL9.8An issue in Vehicle Management System 7.31.0.3_20230412 allows an attacker to escalate privileges via the login.html com...
CVE-2024-30801MEDIUM5.5SQL Injection vulnerability in Cloud based customer service management platform v.1.0.0 allows a local attacker to execu...
CVE-2024-30268MEDIUM6.1Cacti provides an operational monitoring and fault management framework. A reflected cross-site scripting vulnerability ...
CVE-2024-30259HIGH7.5FastDDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). Pr...
CVE-2024-30258HIGH7.5FastDDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). Pr...
CVE-2024-30172HIGH7.5An issue was discovered in Bouncy Castle Java Cryptography APIs before 1.78. An Ed25519 verification code infinite loop ...
CVE-2024-30171MEDIUM5.9An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in R...
CVE-2024-30055MEDIUM5.4Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2024-2923MEDIUM5.4The Magical Addons For Elementor ( Header Footer Builder, Free Elementor Widgets, Elementor Templates Library ) plugin f...
CVE-2024-2846MEDIUM4.4The Visual Footer Credit Remover plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'selector' pa...
CVE-2024-2785MEDIUM5.4The The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Age Gate wid...
CVE-2024-2749MEDIUM5.9The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8's access control mechanism fails to properly res...
CVE-2024-2662HIGH7.2The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin for WordPress is vulnerable to command inj...
CVE-2024-2651MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions before 16.9.7, all versions starting from 16.10 befo...
CVE-2024-2454MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.11 prior to 16.9.7, starting from 1...
CVE-2024-2441HIGH8.1The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8 allows direct access to menus, allowing an authe...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now