2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-34033 | HIGH | 8.8 | 1.0% | May 3, 2024 | Delta Electronics DIAEnergie has insufficient input validation which makes it possible to perform a path traversal atta... |
| CVE-2024-34032 | HIGH | 8.8 | 8.7% | May 3, 2024 | Delta Electronics DIAEnergie is vulnerable to an SQL injection vulnerability that exists in the GetDIACloudList endpoin... |
| CVE-2024-34031 | HIGH | 8.8 | 0.5% | May 3, 2024 | Delta Electronics DIAEnergie is vulnerable to an SQL injection vulnerability that exists in the script Handler_CFG.ashx... |
| CVE-2024-30306 | HIGH | 7.8 | 0.5% | May 2, 2024 | Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds read vulnerability when ... |
| CVE-2024-30305 | HIGH | 7.8 | 0.6% | May 2, 2024 | Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-30304 | HIGH | 7.8 | 0.6% | May 2, 2024 | Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-30303 | HIGH | 7.8 | 0.5% | May 2, 2024 | Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-30302 | MEDIUM | 5.5 | 0.4% | May 2, 2024 | Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-30301 | HIGH | 7.8 | 0.6% | May 2, 2024 | Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-25047 | HIGH | 8.6 | 0.6% | May 2, 2024 | IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.2 is vulnerable to injection attacks in application l... |
| CVE-2024-4140 | HIGH | 7.5 | 1.1% | May 2, 2024 | An excessive memory use issue (CWE-770) exists in Email-MIME, before version 1.954, which can cause denial of service wh... |
| CVE-2024-34394 | HIGH | 8.1 | 1.0% | May 2, 2024 | libxmljs2 is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking the namesp... |
| CVE-2024-34393 | HIGH | 8.1 | 1.0% | May 2, 2024 | libxmljs2 is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking a function... |
| CVE-2024-34392 | CRITICAL | 9.8 | 1.1% | May 2, 2024 | libxmljs is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking the namespa... |
| CVE-2024-34391 | CRITICAL | 9.8 | 1.1% | May 2, 2024 | libxmljs is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking a function ... |
| CVE-2024-33396 | HIGH | 8.4 | 0.2% | May 2, 2024 | An issue in karmada-io karmada v1.9.0 and before allows a local attacker to execute arbitrary code via a crafted command... |
| CVE-2024-4216 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | pgAdmin <= 8.5 is affected by XSS vulnerability in /settings/store API response json payload. This vulnerability allows ... |
| CVE-2024-4215 | HIGH | 8.8 | 0.6% | May 2, 2024 | pgAdmin <= 8.5 is affected by a multi-factor authentication bypass vulnerability. This vulnerability allows an attacker ... |
| CVE-2024-33394 | MEDIUM | 5.9 | 0.3% | May 2, 2024 | An issue in kubevirt kubevirt v1.2.0 and before allows a local attacker to execute arbitrary code via a crafted command ... |
| CVE-2024-4334 | MEDIUM | 6.4 | 0.6% | May 2, 2024 | The Supreme Modules Lite – Divi Theme, Extra Theme and Divi Builder plugin for WordPress is vulnerable to DOM-Based Cros... |
| CVE-2024-4324 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The WP Video Lightbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘width’ parameter in all... |
| CVE-2024-4265 | MEDIUM | 5.4 | 0.6% | May 2, 2024 | The Master Addons – Free Widgets, Hover Effects, Toggle, Conditions, Animations for Elementor plugin for WordPress is vu... |
| CVE-2024-4203 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Premium Addons Pro for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the maps widg... |
| CVE-2024-4156 | MEDIUM | 5.4 | 0.6% | May 2, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-4133 | MEDIUM | 6.1 | 0.5% | May 2, 2024 | The ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup plugin for WordPress is... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now