2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37240 | MEDIUM | 4.3 | 0.2% | Jan 2, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in sbouey Falang multilanguage falang allows Cross Site Request Forgery.... |
| CVE-2024-37238 | MEDIUM | 4.3 | 0.2% | Jan 2, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Greg Winiarski WPAdverts wpadverts allows Cross Site Request Forgery.... |
| CVE-2024-37236 | MEDIUM | 4.3 | 0.2% | Jan 2, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Tim W Loco Translate loco-translate allows Cross Site Request Forgery... |
| CVE-2024-37235 | MEDIUM | 4.3 | 0.2% | Jan 2, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Adrian Tobey Groundhogg groundhogg allows Cross Site Request Forgery.... |
| CVE-2024-37104 | MEDIUM | 4.3 | 0.2% | Jan 2, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in raratheme Chic Lite chic-lite allows Cross Site Request Forgery.This ... |
| CVE-2024-37103 | MEDIUM | 4.3 | 0.2% | Jan 2, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in raratheme Education Zone education-zone allows Cross Site Request For... |
| CVE-2024-13107 | MEDIUM | 5.3 | 1.1% | Jan 2, 2025 | A vulnerability was found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. It has been classified as critical. This affects ... |
| CVE-2024-13106 | MEDIUM | 5.3 | 27.2% | Jan 2, 2025 | A vulnerability was found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210 and classified as critical. Affected by this issue... |
| CVE-2024-13105 | MEDIUM | 5.3 | 0.8% | Jan 2, 2025 | A vulnerability has been found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210 and classified as critical. Affected by this ... |
| CVE-2024-13104 | MEDIUM | 5.3 | 0.7% | Jan 2, 2025 | A vulnerability, which was classified as critical, was found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. Affected is an... |
| CVE-2024-56019 | MEDIUM | 6.5 | 0.2% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in gavinr Inline Foot... |
| CVE-2024-13103 | MEDIUM | 5.3 | 0.8% | Jan 2, 2025 | A vulnerability, which was classified as critical, has been found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. This issu... |
| CVE-2024-13102 | MEDIUM | 5.3 | 0.8% | Jan 2, 2025 | A vulnerability classified as critical was found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. This vulnerability affects... |
| CVE-2024-12595 | MEDIUM | 4.7 | 0.3% | Jan 2, 2025 | The AHAthat Plugin WordPress plugin through 1.6 does not escape the $_SERVER['REQUEST_URI'] parameter before outputting ... |
| CVE-2024-11357 | MEDIUM | 5.9 | 0.3% | Jan 2, 2025 | The goodlayers-core WordPress plugin before 2.0.10 does not sanitise and escape some of its settings, which could allow ... |
| CVE-2024-11184 | MEDIUM | 4.8 | 0.4% | Jan 2, 2025 | The wp-enable-svg WordPress plugin through 0.7 does not sanitize SVG files when uploaded, allowing for authors and above... |
| CVE-2024-56830 | MEDIUM | 5.4 | 0.4% | Jan 2, 2025 | The Net::EasyTCP package 0.15 through 0.26 for Perl uses Perl's builtin rand() if no strong randomization module is pres... |
| CVE-2024-11846 | MEDIUM | 6.1 | 0.4% | Jan 1, 2025 | The does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site S... |
| CVE-2024-56021 | MEDIUM | 6.5 | 0.2% | Jan 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ibnuyahya Category... |
| CVE-2024-56020 | MEDIUM | 6.5 | 0.2% | Jan 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in svegliadesign Sveg... |
| CVE-2024-56803 | MEDIUM | 5.1 | 0.5% | Dec 31, 2024 | Ghostty is a cross-platform terminal emulator. Ghostty, as allowed by default in 1.0.0, allows attackers to modify the w... |
| CVE-2024-56063 | MEDIUM | 5.4 | 0.2% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDeveloper Essent... |
| CVE-2024-56062 | MEDIUM | 5.4 | 0.2% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Royal Royal Ele... |
| CVE-2024-13083 | MEDIUM | 5.4 | 0.3% | Dec 31, 2024 | A vulnerability classified as problematic has been found in PHPGurukul Land Record System 1.0. Affected is an unknown fu... |
| CVE-2024-13082 | MEDIUM | 6.1 | 0.3% | Dec 31, 2024 | A vulnerability was found in PHPGurukul Land Record System 1.0. It has been rated as problematic. This issue affects som... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now