2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-3931MEDIUM5.4A vulnerability was found in Totara LMS up to 18.7. It has been rated as problematic. Affected by this issue is some unk...
CVE-2024-3928MEDIUM4.3A vulnerability was found in Dromara open-capacity-platform 2.0.1. It has been declared as problematic. Affected by this...
CVE-2024-32472MEDIUM6.1excalidraw is an open source virtual hand-drawn style whiteboard. A stored XSS vulnerability in Excalidraw's web embedda...
CVE-2024-29955MEDIUM5.5A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow a privileged user to print the SANnav encrypted ...
CVE-2024-29952MEDIUM5.5A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow an authenticated user to print the Auth, Priv, a...
CVE-2024-32746MEDIUM4.6A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit...
CVE-2024-32745MEDIUM5.9A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit...
CVE-2024-32744MEDIUM4.6A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit...
CVE-2024-32743MEDIUM5.5A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit...
CVE-2024-32345HIGH7.2A cross-site scripting (XSS) vulnerability in the Settings menu of CMSimple v5.15 allows attackers to execute arbitrary ...
CVE-2024-32344MEDIUM6.8A cross-site scripting (XSS) vulnerability in the Settings menu of CMSimple v5.15 allows attackers to execute arbitrary ...
CVE-2024-32343MEDIUM6.1A cross-site scripting (XSS) vulnerability in the Create Page of Boid CMS v2.1.0 allows attackers to execute arbitrary w...
CVE-2024-32342MEDIUM6.1A cross-site scripting (XSS) vulnerability in the Create Page of Boid CMS v2.1.0 allows attackers to execute arbitrary w...
CVE-2024-32341MEDIUM5.4Multiple cross-site scripting (XSS) vulnerabilities in the Home page of WonderCMS v3.4.3 allows attackers to execute arb...
CVE-2024-32340CRITICAL9.6A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit...
CVE-2024-32339MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in the HOW TO page of WonderCMS v3.4.3 allows attackers to execute a...
CVE-2024-32338MEDIUM5.4A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit...
CVE-2024-32337MEDIUM6.1A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit...
CVE-2024-3817CRITICAL9.8HashiCorp’s go-getter library is vulnerable to argument injection when executing Git to discover remote branches. This...
CVE-2024-29951MEDIUM5.7Brocade SANnav before v2.3.1 and v2.3.0a uses the SHA-1 hash in internal SSH ports that are not open to remote connectio...
CVE-2024-21990CRITICAL9.8ONTAP Select Deploy administration utility versions 9.12.1.x, 9.13.1.x and 9.14.1.x contain hard-coded credentials that...
CVE-2024-21989HIGH8.8ONTAP Select Deploy administration utility versions 9.12.1.x, 9.13.1.x and 9.14.1.x are susceptible to a vulnerability ...
CVE-2024-0257LOW3.3 RoboDK v5.5.4 is vulnerable to heap-based buffer overflow while processing a specific project file. The resulting mem...
CVE-2024-3900MEDIUM5.5Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by long Unicode sequence in ActualText.
CVE-2024-3323HIGH8.3Cross Site Scripting in UI Request/Response Validation in TIBCO JasperReports Server 8.0.4 and 8.2.0 allows allows f...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now