2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4175 | MEDIUM | 5.4 | 0.3% | Apr 25, 2024 | Unicode transformation vulnerability in Hyperion affecting version 2.0.15. This vulnerability could allow an attacker to... |
| CVE-2024-4174 | MEDIUM | 5.4 | 0.3% | Apr 25, 2024 | Cross-Site Scripting (XSS) vulnerability in Hyperion Web Server affecting version 2.0.15. This vulnerability could allow... |
| CVE-2024-4168 | HIGH | 8.8 | 1.8% | Apr 25, 2024 | A vulnerability was found in Tenda 4G300 1.01.42. It has been classified as critical. This affects the function sub_4260... |
| CVE-2024-4167 | HIGH | 8.8 | 1.8% | Apr 25, 2024 | A vulnerability was found in Tenda 4G300 1.01.42 and classified as critical. Affected by this issue is the function sub_... |
| CVE-2024-4166 | HIGH | 8.8 | 1.8% | Apr 25, 2024 | A vulnerability has been found in Tenda 4G300 1.01.42 and classified as critical. Affected by this vulnerability is the ... |
| CVE-2024-4165 | CRITICAL | 9.8 | 1.5% | Apr 25, 2024 | A vulnerability, which was classified as critical, was found in Tenda G3 15.11.0.17(9502). Affected is the function modi... |
| CVE-2024-4164 | CRITICAL | 9.8 | 1.5% | Apr 25, 2024 | A vulnerability, which was classified as critical, has been found in Tenda G3 15.11.0.17(9502). This issue affects the f... |
| CVE-2024-3730 | MEDIUM | 5.4 | 0.3% | Apr 25, 2024 | The Simple Membership plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'swpm_paypal_su... |
| CVE-2024-32676 | MEDIUM | 5.3 | 0.4% | Apr 25, 2024 | Improper Restriction of Excessive Authentication Attempts vulnerability in LoginPress LoginPress Pro allows Removing Imp... |
| CVE-2024-2829 | HIGH | 7.5 | 26.0% | Apr 25, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.5 before 16.9.6, all versions start... |
| CVE-2024-2434 | HIGH | 8.1 | 22.9% | Apr 25, 2024 | An issue has been discovered in GitLab affecting all versions of GitLab CE/EE 16.9 prior to 16.9.6, 16.10 prior to 16.1... |
| CVE-2024-1347 | MEDIUM | 5.3 | 0.5% | Apr 25, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions before 16.9.6, all versions starting from 16.10 befo... |
| CVE-2024-4077 | HIGH | 7.1 | 0.4% | Apr 25, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AndonDesign UDesig... |
| CVE-2024-4035 | MEDIUM | 6.4 | 0.3% | Apr 25, 2024 | The Photo Gallery – GT3 Image Gallery & Gutenberg Block Gallery plugin for WordPress is vulnerable to Stored Cross-Site ... |
| CVE-2024-3994 | MEDIUM | 5.4 | 0.4% | Apr 25, 2024 | The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting v... |
| CVE-2024-32961 | MEDIUM | 5.4 | 0.3% | Apr 25, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in creativethemeshq B... |
| CVE-2024-25583 | HIGH | 7.5 | 0.8% | Apr 25, 2024 | A crafted response from an upstream server the recursor has been configured to forward-recurse to can cause a Denial of ... |
| CVE-2024-3733 | MEDIUM | 5.3 | 0.5% | Apr 25, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-31266 | CRITICAL | 9.1 | 0.7% | Apr 25, 2024 | Improper Control of Generation of Code ('Code Injection') vulnerability in AlgolPlus Advanced Order Export For WooCommer... |
| CVE-2024-30560 | CRITICAL | 9.6 | 0.3% | Apr 25, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in 大侠WP DX-Watermark.This issue affects DX-Watermark: from n/a through 1... |
| CVE-2024-25917 | HIGH | 8.8 | 0.6% | Apr 25, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in CodeRevolution WP Setup Wizard.This issue af... |
| CVE-2024-22144 | CRITICAL | 9 | 0.9% | Apr 25, 2024 | Improper Control of Generation of Code ('Code Injection') vulnerability in Eli Scheetz Anti-Malware Security and Brute-F... |
| CVE-2024-4173 | CRITICAL | 9.8 | 0.6% | Apr 25, 2024 | A vulnerability in Brocade SANnav exposes Kafka in the wan interface. The vulnerability could allow an unauthenticated... |
| CVE-2024-3988 | MEDIUM | 5.4 | 0.4% | Apr 25, 2024 | The Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free Elementor Widgets & Elem... |
| CVE-2024-3929 | MEDIUM | 6.4 | 0.4% | Apr 25, 2024 | The Content Views – Post Grid & Filter, Recent Posts, Category Posts, & More (Gutenberg Blocks and Shortcode) plugin for... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now