2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-24157MEDIUM6.1Gnuboard g6 / https://github.com/gnuboard/g6 commit c2cc1f5069e00491ea48618d957332d90f6d40e4 is vulnerable to Cross Site...
CVE-2024-23576HIGH7.1Security vulnerability in HCL Commerce 9.1.12 and 9.1.13 could allow denial of service, disclosure of user personal data...
CVE-2024-23473CRITICAL9.8The SolarWinds Access Rights Manager was found to contain a hard-coded credential authentication bypass vulnerability. I...
CVE-2024-23236MEDIUM5.5A correctness issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5. An app may be able to ...
CVE-2024-23229MEDIUM5.5This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Monterey 12.7.5,...
CVE-2024-22910MEDIUM6.1Cross Site Scripting (XSS) vulnerability in CrushFTP v.10.6.0 and v.10.5.5 allows an attacker to execute arbitrary code ...
CVE-2024-22774HIGH7.8An issue in Panoramic Corporation Digital Imaging Software v.9.1.2.7600 allows a local attacker to escalate privileges v...
CVE-2024-22345HIGH7.5IBM TXSeries for Multiplatforms 8.2 transmits or stores authentication credentials, but it uses an insecure method that ...
CVE-2024-22344MEDIUM6.1IBM TXSeries for Multiplatforms 8.2 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code,...
CVE-2024-22343LOW3.3IBM TXSeries for Multiplatforms 8.2 allows web pages to be stored locally which can be read by another user on the syste...
CVE-2024-22064MEDIUM6.5ZTE ZXUN-ePDG product, which serves as the network node of the VoWifi system, under by default configuration, uses a set...
CVE-2024-1693MEDIUM4.3The SP Project & Document Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missi...
CVE-2024-1467MEDIUM4.3The Starter Templates — Elementor, WordPress & Beaver Builder Templates plugin for WordPress is vulnerable to Server-Sid...
CVE-2024-1230MEDIUM4.3The SimpleShop plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2....
CVE-2024-1229MEDIUM5.3The SimpleShop plugin for WordPress is vulnerable to unauthorized disconnection from SimpleShop due to a missing capabil...
CVE-2024-1166MEDIUM6.4The Image Hover Effects – Elementor Addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plug...
CVE-2024-0445MEDIUM5.4The The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ele...
CVE-2024-0100HIGH8.1NVIDIA Triton Inference Server for Linux contains a vulnerability in the tracing API, where a user can corrupt system fi...
CVE-2024-0098MEDIUM5.5NVIDIA ChatRTX for Windows contains a vulnerability in the ChatRTX UI and backend, where a user can cause a clear-text t...
CVE-2024-0097HIGH7.5NVIDIA ChatRTX for Windows contains a vulnerability in ChatRTX UI, where a user can cause an improper privilege manageme...
CVE-2024-0096HIGH7.5NVIDIA ChatRTX for Windows contains a vulnerability in Chat RTX UI, where a user can cause an improper privilege managem...
CVE-2024-0088HIGH8.1NVIDIA Triton Inference Server for Linux contains a vulnerability in shared memory APIs, where a user can cause an impro...
CVE-2024-0087HIGH8.8NVIDIA Triton Inference Server for Linux contains a vulnerability where a user can set the logging location to an arbitr...
CVE-2024-34257CRITICAL9.8TOTOLINK EX1800T V9.1.0cu.2112_B20220316 has a vulnerability in the apcliEncrypType parameter that allows unauthorized e...
CVE-2024-34244HIGH7.5libmodbus v3.1.10 is vulnerable to Buffer Overflow via the modbus_write_bits function. This issue can be triggered when ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now