2024 CVE Vulnerabilities

39,217 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-45062MEDIUM6.8A stack based buffer overflow vulnerability is present in OpenPrinting ippusbxd 1.34. A specially configured printer tha...
CVE-2024-8393MEDIUM6.6The Woocommerce Blocks – Woolook plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and i...
CVE-2024-12575MEDIUM5.3The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to Basic Information Expo...
CVE-2024-37945MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpbits WPBITS Addo...
CVE-2024-12303MEDIUM5.5An issue has been discovered in GitLab CE/EE affecting all versions from 17.7 before 18.0.6, 18.1 before 18.1.4, and 18....
CVE-2024-10219MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions from 15.6 before 18.0.6, 18.1 before 18.1.4, and 18....
CVE-2024-52964MEDIUM6.5An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] in Fortinet For...
CVE-2024-48892MEDIUM4.9A relative path traversal vulnerability [CWE-23] in FortiSOAR 7.6.0, 7.5.0 through 7.5.1, 7.4 all versions, 7.3 all vers...
CVE-2024-40588MEDIUM4.4Multiple relative path traversal vulnerabilities [CWE-23] vulnerability in Fortinet FortiCamera 2.1 all versions, FortiC...
CVE-2024-33607MEDIUM5.7Out-of-bounds read in some Intel(R) TDX module software before version TDX_1.5.07.00.774 may allow an authenticated user...
CVE-2024-38805MEDIUM6.3EDK2 contains a vulnerability in BIOS where a user may cause an Integer Overflow or Wraparound by network means. A succe...
CVE-2024-41986MEDIUM6.8A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >= V13.2 < V2506), SOA Au...
CVE-2024-41983MEDIUM4.3A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >= V13.2 < V2506), SOA Au...
CVE-2024-41982MEDIUM5.7A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >= V13.2 < V2506), SOA Au...
CVE-2024-41980MEDIUM5.7A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >= V13.2 < V2506), SOA Au...
CVE-2024-58238MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btnxpuart: Resolve TX timeout error in p...
CVE-2024-58257MEDIUM6.7EnzoH has an OS command injection vulnerability. Successful exploitation of this vulnerability may lead to arbitrary com...
CVE-2024-58255MEDIUM6.7EnzoH has an OS command injection vulnerability. Successful exploitation of this vulnerability may lead to arbitrary com...
CVE-2024-42048MEDIUM6.5OpenOrange Business Framework version 1.15.5 installs to a directory with overly permissive access control, allowing all...
CVE-2024-55401MEDIUM6.5An issue in 4C Strategies Exonaut before v22.4 allows attackers to execute a directory traversal.
CVE-2024-52680MEDIUM6.1EyouCMS 1.6.7 is vulnerable to Cross Site Scripting (XSS) in /login.php?m=admin&c=System&a=web&lang=cn.
CVE-2024-55402MEDIUM5.34C Strategies Exonaut before v22.4 was discovered to contain an access control issue.
CVE-2024-55399MEDIUM6.54C Strategies Exonaut before v21.6.2.1-1 was discovered to contain a Server-Side Request Forgery (SSRF).
CVE-2024-55398MEDIUM6.54C Strategies Exonaut before v22.4 was discovered to contain insecure permissions.
CVE-2024-52885MEDIUM5.4The Mobile Access Portal's File Share application is vulnerable to a directory traversal attack, allowing an authenticat...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now