2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-32698 | MEDIUM | 5.4 | 0.3% | Apr 22, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HappyMonster Happy... |
| CVE-2024-32697 | MEDIUM | 6.5 | 0.3% | Apr 22, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HelloAsso allows S... |
| CVE-2024-32696 | MEDIUM | 6.5 | 0.3% | Apr 22, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in QuantumCloud Infog... |
| CVE-2024-32695 | HIGH | 7.1 | 0.4% | Apr 22, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Marco Gasi Languag... |
| CVE-2024-32694 | HIGH | 7.1 | 0.4% | Apr 22, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Creative interacti... |
| CVE-2024-32693 | HIGH | 7.6 | 0.2% | Apr 22, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in ValvePress Automatic.This issue affects Automatic: from n/a before 3.... |
| CVE-2024-32690 | MEDIUM | 5.9 | 0.3% | Apr 22, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fahad Mahmood RSS ... |
| CVE-2024-32418 | CRITICAL | 9.8 | 1.1% | Apr 22, 2024 | An issue in flusity CMS v2.33 allows a remote attacker to execute arbitrary code via the add_addon.php component. |
| CVE-2024-30799 | MEDIUM | 4.4 | 0.3% | Apr 22, 2024 | An issue in PX4 Autopilot v1.14 and before allows a remote attacker to execute arbitrary code and cause a denial of serv... |
| CVE-2024-28722 | MEDIUM | 6.3 | 0.6% | Apr 22, 2024 | Cross Site Scripting vulnerability in Innovaphone myPBX v.14r1, v.13r3, v.12r2 allows a remote attacker to execute arbit... |
| CVE-2024-29733 | LOW | 2.7 | 0.6% | Apr 21, 2024 | Improper Certificate Validation vulnerability in Apache Airflow FTP Provider. The FTP hook lacks complete certificate v... |
| CVE-2024-29217 | MEDIUM | 4.6 | 1.0% | Apr 21, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache Answer.This... |
| CVE-2024-4022 | MEDIUM | 5.3 | 0.6% | Apr 21, 2024 | A vulnerability was found in Keenetic KN-1010, KN-1410, KN-1711, KN-1810 and KN-1910 up to 4.1.2.15. It has been rated a... |
| CVE-2024-4021 | MEDIUM | 5.3 | 0.6% | Apr 21, 2024 | A vulnerability was found in Keenetic KN-1010, KN-1410, KN-1711, KN-1810 and KN-1910 up to 4.1.2.15. It has been declare... |
| CVE-2024-4020 | HIGH | 8.8 | 1.6% | Apr 20, 2024 | A vulnerability was found in Tenda FH1206 1.2.0.8(8155) and classified as critical. This issue affects the function from... |
| CVE-2024-4019 | MEDIUM | 6.3 | 1.0% | Apr 20, 2024 | A vulnerability classified as critical has been found in Byzoro Smart S80 Management Platform up to 20240411. Affected i... |
| CVE-2024-4014 | MEDIUM | 6.4 | 0.3% | Apr 20, 2024 | The hCaptcha for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's cf7-hcaptc... |
| CVE-2024-1730 | MEDIUM | 5.4 | 0.3% | Apr 20, 2024 | The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Media Slider, Drag Drop Slider, Video Slid... |
| CVE-2024-1057 | MEDIUM | 5.4 | 0.3% | Apr 20, 2024 | The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +10 Modules – All in One Solution (formerly WooLentor) pl... |
| CVE-2024-31994 | MEDIUM | 6.5 | 0.3% | Apr 19, 2024 | Mealie is a self hosted recipe manager and meal planner. Prior to 1.4.0, an attacker can point the image request to an a... |
| CVE-2024-1480 | HIGH | 7.5 | 0.5% | Apr 19, 2024 | Unitronics Vision Standard line of controllers allow the Information Mode password to be retrieved without authenticatio... |
| CVE-2024-4018 | HIGH | 7.8 | 0.2% | Apr 19, 2024 | Improper Privilege Management vulnerability in BeyondTrust U-Series Appliance on Windows, 64 bit (local appliance api mo... |
| CVE-2024-4017 | HIGH | 7.8 | 0.2% | Apr 19, 2024 | Improper Privilege Management vulnerability in BeyondTrust U-Series Appliance on Windows, 64 bit (filesystem modules) al... |
| CVE-2024-32392 | MEDIUM | 4.5 | 0.8% | Apr 19, 2024 | Cross Site Scripting vulnerability in CmSimple v.5.15 allows a remote attacker to execute arbitrary code via the functio... |
| CVE-2024-32391 | HIGH | 7.3 | 0.9% | Apr 19, 2024 | Cross Site Scripting vulnerability in MacCMS v.10 v.2024.1000.3000 allows a remote attacker to execute arbitrary code vi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now