2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3931 | MEDIUM | 5.4 | 0.4% | Apr 18, 2024 | A vulnerability was found in Totara LMS up to 18.7. It has been rated as problematic. Affected by this issue is some unk... |
| CVE-2024-3928 | MEDIUM | 4.3 | 0.5% | Apr 18, 2024 | A vulnerability was found in Dromara open-capacity-platform 2.0.1. It has been declared as problematic. Affected by this... |
| CVE-2024-32472 | MEDIUM | 6.1 | 0.6% | Apr 17, 2024 | excalidraw is an open source virtual hand-drawn style whiteboard. A stored XSS vulnerability in Excalidraw's web embedda... |
| CVE-2024-29955 | MEDIUM | 5.5 | 0.1% | Apr 17, 2024 | A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow a privileged user to print the SANnav encrypted ... |
| CVE-2024-29952 | MEDIUM | 5.5 | 0.1% | Apr 17, 2024 | A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow an authenticated user to print the Auth, Priv, a... |
| CVE-2024-32746 | MEDIUM | 4.6 | 0.5% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-32745 | MEDIUM | 5.9 | 0.3% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-32744 | MEDIUM | 4.6 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-32743 | MEDIUM | 5.5 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-32345 | HIGH | 7.2 | 0.5% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings menu of CMSimple v5.15 allows attackers to execute arbitrary ... |
| CVE-2024-32344 | MEDIUM | 6.8 | 0.5% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings menu of CMSimple v5.15 allows attackers to execute arbitrary ... |
| CVE-2024-32343 | MEDIUM | 6.1 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Create Page of Boid CMS v2.1.0 allows attackers to execute arbitrary w... |
| CVE-2024-32342 | MEDIUM | 6.1 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Create Page of Boid CMS v2.1.0 allows attackers to execute arbitrary w... |
| CVE-2024-32341 | MEDIUM | 5.4 | 0.4% | Apr 17, 2024 | Multiple cross-site scripting (XSS) vulnerabilities in the Home page of WonderCMS v3.4.3 allows attackers to execute arb... |
| CVE-2024-32340 | CRITICAL | 9.6 | 0.7% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-32339 | MEDIUM | 6.1 | 0.4% | Apr 17, 2024 | Multiple cross-site scripting (XSS) vulnerabilities in the HOW TO page of WonderCMS v3.4.3 allows attackers to execute a... |
| CVE-2024-32338 | MEDIUM | 5.4 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-32337 | MEDIUM | 6.1 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-3817 | CRITICAL | 9.8 | 1.3% | Apr 17, 2024 | HashiCorp’s go-getter library is vulnerable to argument injection when executing Git to discover remote branches. This... |
| CVE-2024-29951 | MEDIUM | 5.7 | 0.2% | Apr 17, 2024 | Brocade SANnav before v2.3.1 and v2.3.0a uses the SHA-1 hash in internal SSH ports that are not open to remote connectio... |
| CVE-2024-21990 | CRITICAL | 9.8 | 0.3% | Apr 17, 2024 | ONTAP Select Deploy administration utility versions 9.12.1.x, 9.13.1.x and 9.14.1.x contain hard-coded credentials that... |
| CVE-2024-21989 | HIGH | 8.8 | 0.4% | Apr 17, 2024 | ONTAP Select Deploy administration utility versions 9.12.1.x, 9.13.1.x and 9.14.1.x are susceptible to a vulnerability ... |
| CVE-2024-0257 | LOW | 3.3 | 0.2% | Apr 17, 2024 | RoboDK v5.5.4 is vulnerable to heap-based buffer overflow while processing a specific project file. The resulting mem... |
| CVE-2024-3900 | MEDIUM | 5.5 | 0.2% | Apr 17, 2024 | Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by long Unicode sequence in ActualText. |
| CVE-2024-3323 | HIGH | 8.3 | 0.4% | Apr 17, 2024 | Cross Site Scripting in UI Request/Response Validation in TIBCO JasperReports Server 8.0.4 and 8.2.0 allows allows f... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now