2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-33910 | MEDIUM | 5.3 | 0.4% | May 6, 2024 | Missing Authorization vulnerability in Supsystic Digital Publications by Supsystic.This issue affects Digital Publicatio... |
| CVE-2024-34388 | HIGH | 7.5 | 0.6% | May 6, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Scribit GDPR Compliance.This issue affects G... |
| CVE-2024-34383 | MEDIUM | 5.3 | 0.5% | May 6, 2024 | Authorization Bypass Through User-Controlled Key vulnerability in The SEO Guys at SEOPress SEOPress.This issue affects S... |
| CVE-2024-34382 | MEDIUM | 5.3 | 0.5% | May 6, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in RoboSoft Robo Gallery.This issue affects Rob... |
| CVE-2024-33411 | CRITICAL | 9.8 | 0.7% | May 6, 2024 | A SQL injection vulnerability in /model/get_admin_profile.php in Campcodes Complete Web-Based School Management System 1... |
| CVE-2024-33410 | HIGH | 8.1 | 0.6% | May 6, 2024 | SQL injection vulnerability in /model/delete_range_grade.php in campcodes Complete Web-Based School Management System 1.... |
| CVE-2024-33409 | CRITICAL | 9.8 | 0.7% | May 6, 2024 | SQL injection vulnerability in index.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to... |
| CVE-2024-33408 | CRITICAL | 9.8 | 0.7% | May 6, 2024 | A SQL injection vulnerability in /model/get_classroom.php in campcodes Complete Web-Based School Management System 1.0 a... |
| CVE-2024-33407 | MEDIUM | 5.9 | 0.3% | May 6, 2024 | SQL injection vulnerability in /model/delete_record.php in campcodes Complete Web-Based School Management System 1.0 all... |
| CVE-2024-33406 | HIGH | 7.3 | 0.4% | May 6, 2024 | SQL injection vulnerability in /model/delete_student_grade_subject.php in campcodes Complete Web-Based School Management... |
| CVE-2024-33405 | HIGH | 8.6 | 0.5% | May 6, 2024 | SQL injection vulnerability in add_friends.php in campcodes Complete Web-Based School Management System 1.0 allows attac... |
| CVE-2024-33404 | HIGH | 8.3 | 0.6% | May 6, 2024 | A SQL injection vulnerability in /model/add_student_first_payment.php in campcodes Complete Web-Based School Management ... |
| CVE-2024-33403 | CRITICAL | 9.8 | 0.7% | May 6, 2024 | A SQL injection vulnerability in /model/get_events.php in campcodes Complete Web-Based School Management System 1.0 allo... |
| CVE-2024-32807 | HIGH | 8.5 | 0.6% | May 6, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Brevo Sendinblue for Woo... |
| CVE-2024-34471 | MEDIUM | 5.4 | 0.7% | May 6, 2024 | An issue was discovered in HSC Mailinspector 5.2.17-3. A Path Traversal vulnerability (resulting in file deletion) exist... |
| CVE-2024-34251 | HIGH | 7.5 | 0.8% | May 6, 2024 | An out-of-bound memory read vulnerability was discovered in Bytecode Alliance wasm-micro-runtime v2.0.0 which allows a r... |
| CVE-2024-34250 | MEDIUM | 6.2 | 0.3% | May 6, 2024 | A heap buffer overflow vulnerability was discovered in Bytecode Alliance wasm-micro-runtime v2.0.0 which allows a remote... |
| CVE-2024-34246 | HIGH | 7.5 | 0.5% | May 6, 2024 | wasm3 v0.5.0 was discovered to contain an out-of-bound memory read which leads to segmentation fault via the function "m... |
| CVE-2024-34093 | MEDIUM | 5.3 | 0.4% | May 6, 2024 | An issue was discovered in Archer Platform 6 before 2024.03. There is an X-Forwarded-For Header Bypass vulnerability. An... |
| CVE-2024-34092 | HIGH | 8.8 | 0.4% | May 6, 2024 | An issue was discovered in Archer Platform 6 before 2024.04. Authentication was mishandled because lock did not terminat... |
| CVE-2024-34091 | MEDIUM | 5.4 | 0.5% | May 6, 2024 | An issue was discovered in Archer Platform 6 before 2024.04. There is a stored cross-site scripting (XSS) vulnerability.... |
| CVE-2024-34090 | MEDIUM | 5.4 | 0.4% | May 6, 2024 | An issue was discovered in Archer Platform 6 before 2024.04. There is a stored cross-site scripting (XSS) vulnerability.... |
| CVE-2024-34089 | MEDIUM | 5.4 | 0.5% | May 6, 2024 | An issue was discovered in Archer Platform 6 before 2024.04. There is a stored cross-site scripting (XSS) vulnerability.... |
| CVE-2024-26312 | MEDIUM | 4.3 | 0.4% | May 6, 2024 | Archer Platform 6 before 2024.03 contains a sensitive information disclosure vulnerability. An authenticated attacker co... |
| CVE-2024-34472 | MEDIUM | 5.5 | 0.7% | May 6, 2024 | An issue was discovered in HSC Mailinspector 5.2.17-3 through v.5.2.18. An authenticated blind SQL injection vulnerabili... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now