2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-2410 | CRITICAL | 9.8 | 0.3% | May 3, 2024 | The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used to parse JSON from a st... |
| CVE-2024-4466 | CRITICAL | 9.8 | 0.5% | May 3, 2024 | SQL injection vulnerability in Gescen on the centrosdigitales.net platform. This vulnerability allows an attacker to sen... |
| CVE-2024-4461 | HIGH | 7.8 | 0.2% | May 3, 2024 | Unquoted path or search item vulnerability in SugarSync versions prior to 4.1.3 for Windows. This misconfiguration could... |
| CVE-2024-34073 | HIGH | 7.8 | 1.1% | May 3, 2024 | sagemaker-python-sdk is a library for training and deploying machine learning models on Amazon SageMaker. In affected ve... |
| CVE-2024-34072 | HIGH | 7.8 | 0.4% | May 3, 2024 | sagemaker-python-sdk is a library for training and deploying machine learning models on Amazon SageMaker. The sagemaker.... |
| CVE-2024-34063 | LOW | 2.5 | 0.1% | May 3, 2024 | vodozemac is an implementation of Olm and Megolm in pure Rust. Versions 0.5.0 and 0.5.1 of vodozemac have degraded secre... |
| CVE-2024-34062 | MEDIUM | 4.8 | 0.4% | May 3, 2024 | tqdm is an open source progress bar for Python and CLI. Any optional non-boolean CLI arguments (e.g. `--delim`, `--buf-s... |
| CVE-2024-32986 | CRITICAL | 9.6 | 0.7% | May 3, 2024 | PWAsForFirefox is a tool to install, manage and use Progressive Web Apps (PWAs) in Mozilla Firefox. Due to improper sani... |
| CVE-2024-33937 | MEDIUM | 4.3 | 0.4% | May 3, 2024 | Missing Authorization vulnerability in Nico Martin Progressive WordPress (PWA).This issue affects Progressive WordPress ... |
| CVE-2024-33931 | MEDIUM | 6.5 | 0.4% | May 3, 2024 | Missing Authorization vulnerability in ilGhera JW Player for WordPress.This issue affects JW Player for WordPress: from ... |
| CVE-2024-33929 | MEDIUM | 5.3 | 0.4% | May 3, 2024 | Missing Authorization vulnerability in wpWax Directorist.This issue affects Directorist: from n/a through 7.8.6. |
| CVE-2024-33925 | MEDIUM | 4.3 | 0.3% | May 3, 2024 | Missing Authorization vulnerability in Adrian Mörchen Embed Google Fonts.This issue affects Embed Google Fonts: from n/a... |
| CVE-2024-33923 | MEDIUM | 6.3 | 0.4% | May 3, 2024 | Missing Authorization vulnerability in Smartypants SP Project & Document Manager.This issue affects SP Project & Documen... |
| CVE-2024-33921 | HIGH | 8.8 | 0.4% | May 3, 2024 | Broken Access Control vulnerability in ReviewX.This issue affects ReviewX: from n/a through 1.6.21. |
| CVE-2024-33920 | MEDIUM | 5.3 | 0.4% | May 3, 2024 | Missing Authorization vulnerability in Kama Democracy Poll.This issue affects Democracy Poll: from n/a through 6.0.3. |
| CVE-2024-33919 | MEDIUM | 6.5 | 0.4% | May 3, 2024 | Missing Authorization vulnerability in Rometheme RomethemeKit For Elementor.This issue affects RomethemeKit For Elemento... |
| CVE-2024-33915 | MEDIUM | 4.3 | 0.3% | May 3, 2024 | Missing Authorization vulnerability in Bowo Debug Log Manager.This issue affects Debug Log Manager: from n/a through 2.3... |
| CVE-2024-33914 | CRITICAL | 9.8 | 0.4% | May 3, 2024 | Missing Authorization vulnerability in Exclusive Addons Exclusive Addons Elementor.This issue affects Exclusive Addons E... |
| CVE-2024-23914 | MEDIUM | 5.7 | 0.3% | May 3, 2024 | Use of Externally-Controlled Format String vulnerability in Merge DICOM Toolkit C/C++ on Windows. When MC_Open_Associat... |
| CVE-2024-23913 | MEDIUM | 4 | 0.2% | May 3, 2024 | Use of Out-of-range Pointer Offset vulnerability in Merge DICOM Toolkit C/C++ on Windows. When deprecated MC_XML_To_Mes... |
| CVE-2024-23912 | MEDIUM | 4 | 0.2% | May 3, 2024 | Out-of-bounds Read vulnerability in Merge DICOM Toolkit C/C++ on Windows. When MC_Open_File() function is used to read ... |
| CVE-2024-33941 | MEDIUM | 5.3 | 0.4% | May 3, 2024 | Missing Authorization vulnerability in Avirtum iPanorama 360 WordPress Virtual Tour Builder.This issue affects iPanorama... |
| CVE-2024-33927 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Team GIPHY Giphypr... |
| CVE-2024-33926 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Karl Kiesinger GWP... |
| CVE-2024-33924 | HIGH | 7.1 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Realtyna Realtyna ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now