2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-37240MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in sbouey Falang multilanguage falang allows Cross Site Request Forgery....
CVE-2024-37238MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Greg Winiarski WPAdverts wpadverts allows Cross Site Request Forgery....
CVE-2024-37236MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Tim W Loco Translate loco-translate allows Cross Site Request Forgery...
CVE-2024-37235MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Adrian Tobey Groundhogg groundhogg allows Cross Site Request Forgery....
CVE-2024-37104MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in raratheme Chic Lite chic-lite allows Cross Site Request Forgery.This ...
CVE-2024-37103MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in raratheme Education Zone education-zone allows Cross Site Request For...
CVE-2024-13107MEDIUM5.3A vulnerability was found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. It has been classified as critical. This affects ...
CVE-2024-13106MEDIUM5.3A vulnerability was found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210 and classified as critical. Affected by this issue...
CVE-2024-13105MEDIUM5.3A vulnerability has been found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210 and classified as critical. Affected by this ...
CVE-2024-13104MEDIUM5.3A vulnerability, which was classified as critical, was found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. Affected is an...
CVE-2024-56019MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in gavinr Inline Foot...
CVE-2024-13103MEDIUM5.3A vulnerability, which was classified as critical, has been found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. This issu...
CVE-2024-13102MEDIUM5.3A vulnerability classified as critical was found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. This vulnerability affects...
CVE-2024-12595MEDIUM4.7The AHAthat Plugin WordPress plugin through 1.6 does not escape the $_SERVER['REQUEST_URI'] parameter before outputting ...
CVE-2024-11357MEDIUM5.9The goodlayers-core WordPress plugin before 2.0.10 does not sanitise and escape some of its settings, which could allow ...
CVE-2024-11184MEDIUM4.8The wp-enable-svg WordPress plugin through 0.7 does not sanitize SVG files when uploaded, allowing for authors and above...
CVE-2024-56830MEDIUM5.4The Net::EasyTCP package 0.15 through 0.26 for Perl uses Perl's builtin rand() if no strong randomization module is pres...
CVE-2024-11846MEDIUM6.1The does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site S...
CVE-2024-56021MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ibnuyahya Category...
CVE-2024-56020MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in svegliadesign Sveg...
CVE-2024-56803MEDIUM5.1Ghostty is a cross-platform terminal emulator. Ghostty, as allowed by default in 1.0.0, allows attackers to modify the w...
CVE-2024-56063MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDeveloper Essent...
CVE-2024-56062MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Royal Royal Ele...
CVE-2024-13083MEDIUM5.4A vulnerability classified as problematic has been found in PHPGurukul Land Record System 1.0. Affected is an unknown fu...
CVE-2024-13082MEDIUM6.1A vulnerability was found in PHPGurukul Land Record System 1.0. It has been rated as problematic. This issue affects som...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now