2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-33629 | MEDIUM | 4.4 | 0.3% | Apr 29, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Creative Motion Auto Featured Image (Auto Post Thumbnail).This issue... |
| CVE-2024-33627 | MEDIUM | 4.4 | 0.3% | Apr 29, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Cusmin Absolutely Glamorous Custom Admin.This issue affects Absolute... |
| CVE-2024-33584 | MEDIUM | 4.7 | 0.4% | Apr 29, 2024 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Deepen Bajracharya Video Conferencing with Zoom.Thi... |
| CVE-2024-33575 | MEDIUM | 5.3 | 1.1% | Apr 29, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in User Meta user-meta.This issue affects User ... |
| CVE-2024-33566 | CRITICAL | 10 | 1.1% | Apr 29, 2024 | Missing Authorization vulnerability in N-Media OrderConvo allows OS Command Injection.This issue affects OrderConvo: fro... |
| CVE-2024-33553 | CRITICAL | 9.8 | 0.6% | Apr 29, 2024 | Deserialization of Untrusted Data vulnerability in 8theme XStore Core.This issue affects XStore Core: from n/a through 5... |
| CVE-2024-33538 | MEDIUM | 5.3 | 0.4% | Apr 29, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Fastline Media LLC Assistant – Every Day Pro... |
| CVE-2024-3196 | MEDIUM | 6.7 | 1.7% | Apr 29, 2024 | A vulnerability was found in MailCleaner up to 2023.03.14. It has been declared as critical. This vulnerability affects ... |
| CVE-2024-3195 | HIGH | 7.2 | 1.0% | Apr 29, 2024 | A vulnerability was found in MailCleaner up to 2023.03.14. It has been classified as critical. This affects an unknown p... |
| CVE-2024-3194 | MEDIUM | 6.1 | 0.7% | Apr 29, 2024 | A vulnerability was found in MailCleaner up to 2023.03.14 and classified as problematic. Affected by this issue is some ... |
| CVE-2024-3193 | HIGH | 8.8 | 4.2% | Apr 29, 2024 | A vulnerability has been found in MailCleaner up to 2023.03.14 and classified as critical. Affected by this vulnerabilit... |
| CVE-2024-3192 | CRITICAL | 9.6 | 1.0% | Apr 29, 2024 | A vulnerability, which was classified as problematic, was found in MailCleaner up to 2023.03.14. Affected is an unknown ... |
| CVE-2024-3191 | CRITICAL | 9.8 | 5.2% | Apr 29, 2024 | A vulnerability, which was classified as critical, has been found in MailCleaner up to 2023.03.14. This issue affects so... |
| CVE-2024-33546 | CRITICAL | 9.6 | 0.5% | Apr 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team WZone allo... |
| CVE-2024-33544 | CRITICAL | 9.3 | 0.6% | Apr 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team WZone allo... |
| CVE-2024-4303 | HIGH | 8.8 | 0.7% | Apr 29, 2024 | ArmorX Android APP's multi-factor authentication (MFA) for the login function is not properly implemented. Remote attack... |
| CVE-2024-4302 | MEDIUM | 6.1 | 0.4% | Apr 29, 2024 | Super 8 Live Chat online customer service platform fails to properly filter user input, allowing unauthenticated remote ... |
| CVE-2024-33905 | MEDIUM | 4.6 | 0.9% | Apr 29, 2024 | In Telegram WebK before 2.0.0 (488), a crafted Mini Web App allows XSS via the postMessage web_app_open_link event type. |
| CVE-2024-33904 | HIGH | 7 | 0.2% | Apr 29, 2024 | In plugins/HookSystem.cpp in Hyprland through 0.39.1 (before 28c8561), through a race condition, a local attacker can ca... |
| CVE-2024-33686 | MEDIUM | 4.3 | 0.5% | Apr 29, 2024 | Missing Authorization vulnerability in Extend Themes Pathway, Extend Themes Hugo WP, Extend Themes Althea WP, Extend The... |
| CVE-2024-33681 | HIGH | 7.1 | 0.2% | Apr 29, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Sandor Kovacs Regenerate post permalink allows Cross-Site Scripting (... |
| CVE-2024-33632 | MEDIUM | 5.4 | 0.2% | Apr 29, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Piotnet Piotnet Addons For Elementor Pro.This issue affects Piotnet A... |
| CVE-2024-33631 | MEDIUM | 6.5 | 0.4% | Apr 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Piotnet Piotnet Ad... |
| CVE-2024-33630 | MEDIUM | 6.5 | 0.3% | Apr 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Piotnet Piotnet Ad... |
| CVE-2024-33571 | HIGH | 7.1 | 0.4% | Apr 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Infomaniak Network... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now