2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-52500HIGH7.2Missing Authorization vulnerability in monetagwp Monetag Official Plugin monetag-official allows Exploiting Incorrectly ...
CVE-2024-13152CRITICAL10Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BSS Software Mobuy...
CVE-2024-13791MEDIUM4.9Bit Assist plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.5.2 via the down...
CVE-2024-52577CRITICAL9In Apache Ignite versions from 2.6.0 and before 2.17.0, configured Class Serialization Filters are ignored for some Igni...
CVE-2024-13735MEDIUM5.4The HurryTimer – An Scarcity and Urgency Countdown Timer for WordPress & WooCommerce plugin for WordPress is vulnerable ...
CVE-2024-9601MEDIUM5.4The Qubely – Advanced Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘align’...
CVE-2024-57969MEDIUM4.3app/Model/Attribute.php in MISP before 2.4.198 ignores an ACL during a GUI attribute search.
CVE-2024-7052MEDIUM4.8The Forminator Forms WordPress plugin before 1.38.3 does not sanitise and escape some of its settings, which could allo...
CVE-2024-13692MEDIUM5.4The Return Refund and Exchange For WooCommerce – Return Management System, RMA Exchange, Wallet And Cancel Order Feature...
CVE-2024-13641HIGH7.5The Return Refund and Exchange For WooCommerce – Return Management System, RMA Exchange, Wallet And Cancel Order Feature...
CVE-2024-13493MEDIUM4.8The Sensly Online Presence WordPress plugin through 0.6 does not sanitise and escape some of its settings, which could a...
CVE-2024-2240HIGH7.2Docker daemon in Brocade SANnav before SANnav 2.3.1b runs without auditing. The vulnerability could allow a remote authe...
CVE-2024-55904HIGH7.2IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 / IBM UrbanCode Deploy 7.0 through 7.0.5.25, 7.1 through 7.1....
CVE-2024-10404MEDIUM4.4CalInvocationHandler in Brocade SANnav before 2.3.1b logs sensitive information in clear text. The vulnerability could...
CVE-2024-57782MEDIUM6.8An issue in Docker-proxy v18.09.0 allows attackers to cause a denial of service.
CVE-2024-56908MEDIUM6.8In Perfex Crm < 3.2.1, an authenticated attacker can send a crafted HTTP POST request to the affected upload_sales_file ...
CVE-2024-54951MEDIUM5.4Monica 4.1.2 is vulnerable to Cross Site Scripting (XSS). A malicious user can create a malformed contact and use that c...
CVE-2024-53311MEDIUM5.5A Stack buffer overflow in the arguments parameter in Immunity Inc. Immunity Debugger v1.85 allows attackers to execute ...
CVE-2024-53310MEDIUM5.5A Structured Exception Handler based buffer overflow vulnerability exists in Effectmatrix Total Video Converter Command ...
CVE-2024-53309MEDIUM5.5A stack-based buffer overflow vulnerability exists in Effectmatrix Total Video Converter Command Line (TVCC) 2.50 when a...
CVE-2024-37603MEDIUM4.6An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible type confusion exists in the user...
CVE-2024-37602MEDIUM4.6An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A possible NULL pointer derefer...
CVE-2024-37601MEDIUM4.6An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible heap buffer overflow exists in th...
CVE-2024-37600MEDIUM6.8An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A possible stack buffer overflo...
CVE-2024-12054MEDIUM5.9ZF Roll Stability Support Plus (RSSPlus) is vulnerable to an authentication bypass vulnerability targeting determinist...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now