2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-33752MEDIUM6.3An arbitrary file upload vulnerability exists in emlog pro 2.3.0 and pro 2.3.2 at admin/views/plugin.php that could be e...
CVE-2024-2041Rejected reason: ***DUPLICATE** Please use CVE-2024-3241 instead.
CVE-2024-33830HIGH8.1idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/readDeal.php?mudi=cl...
CVE-2024-33829MEDIUM5.4idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/readDeal.php?mudi=up...
CVE-2024-33788HIGH8Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability via the PinCode parameter at /API/in...
CVE-2024-33749CRITICAL9.1DedeCMS V5.7.114 is vulnerable to deletion of any file via mail_file_manage.php.
CVE-2024-3576HIGH8.3The NPort 5100A Series firmware version v1.6 and prior versions are affected by web server XSS vulnerability. The vulner...
CVE-2024-33753HIGH8.2Section Camera V2.5.5.3116-S50-SMA-B20160811 and earlier versions allow the accounts and passwords of administrators and...
CVE-2024-4528MEDIUM4.8A vulnerability was found in SourceCodester Prison Management System 1.0. It has been declared as problematic. Affected ...
CVE-2024-23193MEDIUM5.3E-Mails exported as PDF were stored in a cache that did not consider specific session information for the related user a...
CVE-2024-23188MEDIUM6.5Maliciously crafted E-Mail attachment names could be used to temporarily execute script code in the context of the users...
CVE-2024-23187MEDIUM6.1Content-ID based embedding of resources in E-Mails could be abused to trigger client-side script code when using the "sh...
CVE-2024-23186MEDIUM6.1E-Mail containing malicious display-name information could trigger client-side script execution when using specific mobi...
CVE-2024-4527MEDIUM6.1A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been classified as proble...
CVE-2024-4526MEDIUM6.1A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0 and classified as problematic. Th...
CVE-2024-4525MEDIUM6.1A vulnerability has been found in Campcodes Complete Web-Based School Management System 1.0 and classified as problemati...
CVE-2024-4524MEDIUM6.1A vulnerability, which was classified as problematic, was found in Campcodes Complete Web-Based School Management System...
CVE-2024-3756HIGH7.5The MF Gig Calendar WordPress plugin through 1.2.1 does not have CSRF checks in some places, which could allow attackers...
CVE-2024-3755MEDIUM5.4The MF Gig Calendar WordPress plugin through 1.2.1 does not sanitise and escape some of its settings, which could allow ...
CVE-2024-3752MEDIUM5.4The Crelly Slider WordPress plugin through 1.4.5 does not sanitise and escape some of its settings, which could allow hi...
CVE-2024-0904MEDIUM5.9The Fancy Product Designer WordPress plugin before 6.1.81 does not sanitise and escape some of its settings, which could...
CVE-2024-4523MEDIUM6.1A vulnerability, which was classified as problematic, has been found in Campcodes Complete Web-Based School Management S...
CVE-2024-4522MEDIUM6.1A vulnerability classified as problematic was found in Campcodes Complete Web-Based School Management System 1.0. Affect...
CVE-2024-4521MEDIUM6.1A vulnerability classified as problematic has been found in Campcodes Complete Web-Based School Management System 1.0. A...
CVE-2024-4519MEDIUM6.1A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been rated as problematic...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now