2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-2410CRITICAL9.8The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used to parse JSON from a st...
CVE-2024-4466CRITICAL9.8SQL injection vulnerability in Gescen on the centrosdigitales.net platform. This vulnerability allows an attacker to sen...
CVE-2024-4461HIGH7.8Unquoted path or search item vulnerability in SugarSync versions prior to 4.1.3 for Windows. This misconfiguration could...
CVE-2024-34073HIGH7.8sagemaker-python-sdk is a library for training and deploying machine learning models on Amazon SageMaker. In affected ve...
CVE-2024-34072HIGH7.8sagemaker-python-sdk is a library for training and deploying machine learning models on Amazon SageMaker. The sagemaker....
CVE-2024-34063LOW2.5vodozemac is an implementation of Olm and Megolm in pure Rust. Versions 0.5.0 and 0.5.1 of vodozemac have degraded secre...
CVE-2024-34062MEDIUM4.8tqdm is an open source progress bar for Python and CLI. Any optional non-boolean CLI arguments (e.g. `--delim`, `--buf-s...
CVE-2024-32986CRITICAL9.6PWAsForFirefox is a tool to install, manage and use Progressive Web Apps (PWAs) in Mozilla Firefox. Due to improper sani...
CVE-2024-33937MEDIUM4.3Missing Authorization vulnerability in Nico Martin Progressive WordPress (PWA).This issue affects Progressive WordPress ...
CVE-2024-33931MEDIUM6.5Missing Authorization vulnerability in ilGhera JW Player for WordPress.This issue affects JW Player for WordPress: from ...
CVE-2024-33929MEDIUM5.3Missing Authorization vulnerability in wpWax Directorist.This issue affects Directorist: from n/a through 7.8.6.
CVE-2024-33925MEDIUM4.3Missing Authorization vulnerability in Adrian Mörchen Embed Google Fonts.This issue affects Embed Google Fonts: from n/a...
CVE-2024-33923MEDIUM6.3Missing Authorization vulnerability in Smartypants SP Project & Document Manager.This issue affects SP Project & Documen...
CVE-2024-33921HIGH8.8Broken Access Control vulnerability in ReviewX.This issue affects ReviewX: from n/a through 1.6.21.
CVE-2024-33920MEDIUM5.3Missing Authorization vulnerability in Kama Democracy Poll.This issue affects Democracy Poll: from n/a through 6.0.3.
CVE-2024-33919MEDIUM6.5Missing Authorization vulnerability in Rometheme RomethemeKit For Elementor.This issue affects RomethemeKit For Elemento...
CVE-2024-33915MEDIUM4.3Missing Authorization vulnerability in Bowo Debug Log Manager.This issue affects Debug Log Manager: from n/a through 2.3...
CVE-2024-33914CRITICAL9.8Missing Authorization vulnerability in Exclusive Addons Exclusive Addons Elementor.This issue affects Exclusive Addons E...
CVE-2024-23914MEDIUM5.7Use of Externally-Controlled Format String vulnerability in Merge DICOM Toolkit C/C++ on Windows. When MC_Open_Associat...
CVE-2024-23913MEDIUM4Use of Out-of-range Pointer Offset vulnerability in Merge DICOM Toolkit C/C++ on Windows. When deprecated MC_XML_To_Mes...
CVE-2024-23912MEDIUM4Out-of-bounds Read vulnerability in Merge DICOM Toolkit C/C++ on Windows. When MC_Open_File() function is used to read ...
CVE-2024-33941MEDIUM5.3Missing Authorization vulnerability in Avirtum iPanorama 360 WordPress Virtual Tour Builder.This issue affects iPanorama...
CVE-2024-33927MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Team GIPHY Giphypr...
CVE-2024-33926MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Karl Kiesinger GWP...
CVE-2024-33924HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Realtyna Realtyna ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now