2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-32535 | HIGH | 7.1 | 0.3% | Apr 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jojaba Access Cate... |
| CVE-2024-32534 | MEDIUM | 4.8 | 0.3% | Apr 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Form Builder... |
| CVE-2024-32533 | HIGH | 7.1 | 0.4% | Apr 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Peter Shaw LH Add ... |
| CVE-2024-24856 | MEDIUM | 5.3 | 0.2% | Apr 17, 2024 | The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee a successful allocation, but the subsequent code ... |
| CVE-2024-3847 | MEDIUM | 6.1 | 0.8% | Apr 17, 2024 | Insufficient policy enforcement in WebUI in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass con... |
| CVE-2024-3846 | MEDIUM | 4.3 | 0.7% | Apr 17, 2024 | Inappropriate implementation in Prompts in Google Chrome prior to 124.0.6367.60 allowed a remote attacker who convinced ... |
| CVE-2024-3845 | MEDIUM | 4.3 | 0.8% | Apr 17, 2024 | Inappropriate implementation in Networks in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass mix... |
| CVE-2024-3844 | MEDIUM | 4.3 | 0.6% | Apr 17, 2024 | Inappropriate implementation in Extensions in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform ... |
| CVE-2024-3843 | MEDIUM | 4.3 | 0.6% | Apr 17, 2024 | Insufficient data validation in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform U... |
| CVE-2024-3841 | MEDIUM | 6.1 | 0.7% | Apr 17, 2024 | Insufficient data validation in Browser Switcher in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to in... |
| CVE-2024-3840 | HIGH | 7.5 | 0.7% | Apr 17, 2024 | Insufficient policy enforcement in Site Isolation in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to b... |
| CVE-2024-3839 | MEDIUM | 6.5 | 0.7% | Apr 17, 2024 | Out of bounds read in Fonts in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to obtain potentially sens... |
| CVE-2024-3838 | MEDIUM | 5.5 | 0.4% | Apr 17, 2024 | Inappropriate implementation in Autofill in Google Chrome prior to 124.0.6367.60 allowed an attacker who convinced a use... |
| CVE-2024-3837 | HIGH | 8.8 | 0.9% | Apr 17, 2024 | Use after free in QUIC in Google Chrome prior to 124.0.6367.60 allowed a remote attacker who had compromised the rendere... |
| CVE-2024-3834 | HIGH | 8.8 | 1.0% | Apr 17, 2024 | Use after free in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit hea... |
| CVE-2024-3833 | HIGH | 8.8 | 15.0% | Apr 17, 2024 | Object corruption in WebAssembly in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploi... |
| CVE-2024-3832 | HIGH | 8.8 | 1.2% | Apr 17, 2024 | Object corruption in V8 in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit object ... |
| CVE-2024-32550 | HIGH | 7.1 | 0.2% | Apr 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in BMI Adult & Kid Calculator allows Stored XSS.This issue affects BMI A... |
| CVE-2024-32549 | HIGH | 7.1 | 0.2% | Apr 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Microkid Related Posts for WordPress allows Cross-Site Scripting (XSS... |
| CVE-2024-32548 | MEDIUM | 5.9 | 0.3% | Apr 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hideki Tanaka What... |
| CVE-2024-32547 | MEDIUM | 5.8 | 0.3% | Apr 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Max Bond Code Inse... |
| CVE-2024-32532 | MEDIUM | 5.3 | 0.5% | Apr 17, 2024 | Missing Authorization vulnerability in SiteGround Speed Optimizer.This issue affects Speed Optimizer: from n/a through 7... |
| CVE-2024-32525 | MEDIUM | 4.3 | 0.3% | Apr 17, 2024 | Missing Authorization vulnerability in Theme My Login.This issue affects Theme My Login: from n/a through 7.1.6. |
| CVE-2024-32524 | MEDIUM | 4.3 | 0.5% | Apr 17, 2024 | Missing Authorization vulnerability in Nuggethon Custom Order Statuses for WooCommerce.This issue affects Custom Order S... |
| CVE-2024-32522 | MEDIUM | 4.3 | 0.3% | Apr 17, 2024 | Missing Authorization vulnerability in Jaed Mosharraf & Pluginbazar Team Open Close WooCommerce Store.This issue affects... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now