2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-34033HIGH8.8 Delta Electronics DIAEnergie has insufficient input validation which makes it possible to perform a path traversal atta...
CVE-2024-34032HIGH8.8 Delta Electronics DIAEnergie is vulnerable to an SQL injection vulnerability that exists in the GetDIACloudList endpoin...
CVE-2024-34031HIGH8.8 Delta Electronics DIAEnergie is vulnerable to an SQL injection vulnerability that exists in the script Handler_CFG.ashx...
CVE-2024-30306HIGH7.8Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds read vulnerability when ...
CVE-2024-30305HIGH7.8Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could...
CVE-2024-30304HIGH7.8Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could...
CVE-2024-30303HIGH7.8Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could...
CVE-2024-30302MEDIUM5.5Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could...
CVE-2024-30301HIGH7.8Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could...
CVE-2024-25047HIGH8.6IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.2 is vulnerable to injection attacks in application l...
CVE-2024-4140HIGH7.5An excessive memory use issue (CWE-770) exists in Email-MIME, before version 1.954, which can cause denial of service wh...
CVE-2024-34394HIGH8.1libxmljs2 is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking the namesp...
CVE-2024-34393HIGH8.1libxmljs2 is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking a function...
CVE-2024-34392CRITICAL9.8libxmljs is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking the namespa...
CVE-2024-34391CRITICAL9.8libxmljs is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking a function ...
CVE-2024-33396HIGH8.4An issue in karmada-io karmada v1.9.0 and before allows a local attacker to execute arbitrary code via a crafted command...
CVE-2024-4216MEDIUM5.4pgAdmin <= 8.5 is affected by XSS vulnerability in /settings/store API response json payload. This vulnerability allows ...
CVE-2024-4215HIGH8.8pgAdmin <= 8.5 is affected by a multi-factor authentication bypass vulnerability. This vulnerability allows an attacker ...
CVE-2024-33394MEDIUM5.9An issue in kubevirt kubevirt v1.2.0 and before allows a local attacker to execute arbitrary code via a crafted command ...
CVE-2024-4334MEDIUM6.4The Supreme Modules Lite – Divi Theme, Extra Theme and Divi Builder plugin for WordPress is vulnerable to DOM-Based Cros...
CVE-2024-4324MEDIUM6.4The WP Video Lightbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘width’ parameter in all...
CVE-2024-4265MEDIUM5.4The Master Addons – Free Widgets, Hover Effects, Toggle, Conditions, Animations for Elementor plugin for WordPress is vu...
CVE-2024-4203MEDIUM5.4The Premium Addons Pro for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the maps widg...
CVE-2024-4156MEDIUM5.4The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress...
CVE-2024-4133MEDIUM6.1The ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup plugin for WordPress is...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now