2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-4175MEDIUM5.4Unicode transformation vulnerability in Hyperion affecting version 2.0.15. This vulnerability could allow an attacker to...
CVE-2024-4174MEDIUM5.4Cross-Site Scripting (XSS) vulnerability in Hyperion Web Server affecting version 2.0.15. This vulnerability could allow...
CVE-2024-4168HIGH8.8A vulnerability was found in Tenda 4G300 1.01.42. It has been classified as critical. This affects the function sub_4260...
CVE-2024-4167HIGH8.8A vulnerability was found in Tenda 4G300 1.01.42 and classified as critical. Affected by this issue is the function sub_...
CVE-2024-4166HIGH8.8A vulnerability has been found in Tenda 4G300 1.01.42 and classified as critical. Affected by this vulnerability is the ...
CVE-2024-4165CRITICAL9.8A vulnerability, which was classified as critical, was found in Tenda G3 15.11.0.17(9502). Affected is the function modi...
CVE-2024-4164CRITICAL9.8A vulnerability, which was classified as critical, has been found in Tenda G3 15.11.0.17(9502). This issue affects the f...
CVE-2024-3730MEDIUM5.4The Simple Membership plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'swpm_paypal_su...
CVE-2024-32676MEDIUM5.3Improper Restriction of Excessive Authentication Attempts vulnerability in LoginPress LoginPress Pro allows Removing Imp...
CVE-2024-2829HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.5 before 16.9.6, all versions start...
CVE-2024-2434HIGH8.1An issue has been discovered in GitLab affecting all versions of GitLab CE/EE 16.9 prior to 16.9.6, 16.10 prior to 16.1...
CVE-2024-1347MEDIUM5.3An issue has been discovered in GitLab CE/EE affecting all versions before 16.9.6, all versions starting from 16.10 befo...
CVE-2024-4077HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AndonDesign UDesig...
CVE-2024-4035MEDIUM6.4The Photo Gallery – GT3 Image Gallery & Gutenberg Block Gallery plugin for WordPress is vulnerable to Stored Cross-Site ...
CVE-2024-3994MEDIUM5.4The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting v...
CVE-2024-32961MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in creativethemeshq B...
CVE-2024-25583HIGH7.5A crafted response from an upstream server the recursor has been configured to forward-recurse to can cause a Denial of ...
CVE-2024-3733MEDIUM5.3The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress...
CVE-2024-31266CRITICAL9.1Improper Control of Generation of Code ('Code Injection') vulnerability in AlgolPlus Advanced Order Export For WooCommer...
CVE-2024-30560CRITICAL9.6Cross-Site Request Forgery (CSRF) vulnerability in 大侠WP DX-Watermark.This issue affects DX-Watermark: from n/a through 1...
CVE-2024-25917HIGH8.8Exposure of Sensitive Information to an Unauthorized Actor vulnerability in CodeRevolution WP Setup Wizard.This issue af...
CVE-2024-22144CRITICAL9Improper Control of Generation of Code ('Code Injection') vulnerability in Eli Scheetz Anti-Malware Security and Brute-F...
CVE-2024-4173CRITICAL9.8 A vulnerability in Brocade SANnav exposes Kafka in the wan interface. The vulnerability could allow an unauthenticated...
CVE-2024-3988MEDIUM5.4The Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free Elementor Widgets & Elem...
CVE-2024-3929MEDIUM6.4The Content Views – Post Grid & Filter, Recent Posts, Category Posts, & More (Gutenberg Blocks and Shortcode) plugin for...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now