2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-32112 | MEDIUM | 4.3 | 0.2% | Apr 11, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Leadinfo leadinfo. The patch was released under the same version whic... |
| CVE-2024-3344 | MEDIUM | 5.4 | 0.3% | Apr 11, 2024 | The Otter Blocks – Gutenberg Blocks, Page Builder for Gutenberg Editor & FSE plugin for WordPress is vulnerable to Store... |
| CVE-2024-3343 | MEDIUM | 5.4 | 0.3% | Apr 11, 2024 | The Otter Blocks – Gutenberg Blocks, Page Builder for Gutenberg Editor & FSE plugin for WordPress is vulnerable to Store... |
| CVE-2024-20797 | HIGH | 7.8 | 0.4% | Apr 11, 2024 | Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted f... |
| CVE-2024-20796 | MEDIUM | 5.5 | 0.3% | Apr 11, 2024 | Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to discl... |
| CVE-2024-20795 | HIGH | 7.8 | 0.4% | Apr 11, 2024 | Animate versions 23.0.4, 24.0.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could r... |
| CVE-2024-20794 | MEDIUM | 5.5 | 0.3% | Apr 11, 2024 | Animate versions 23.0.4, 24.0.1 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to ... |
| CVE-2024-32080 | MEDIUM | 5.9 | 0.3% | Apr 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nick Pelton Search... |
| CVE-2024-31861 | — | — | — | Apr 11, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2024-20798 | MEDIUM | 5.5 | 0.2% | Apr 11, 2024 | Illustrator versions 28.3, 27.9.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to dis... |
| CVE-2024-20771 | MEDIUM | 5.5 | 0.3% | Apr 11, 2024 | Bridge versions 13.0.6, 14.0.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclo... |
| CVE-2024-3285 | MEDIUM | 5.4 | 0.3% | Apr 11, 2024 | The Slider, Gallery, and Carousel by MetaSlider – Responsive WordPress Slideshows plugin for WordPress is vulnerable to ... |
| CVE-2024-2966 | HIGH | 7.5 | 0.5% | Apr 11, 2024 | The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for W... |
| CVE-2024-30917 | MEDIUM | 5.5 | 0.2% | Apr 11, 2024 | An issue was discovered in eProsima FastDDS v.2.14.0 and before, allows a local attacker to cause a denial of service (D... |
| CVE-2024-30916 | HIGH | 7.1 | 0.2% | Apr 11, 2024 | An issue was discovered in eProsima FastDDS v.2.14.0 and before, allows a local attacker to cause a denial of service (D... |
| CVE-2024-30915 | MEDIUM | 4.3 | 0.5% | Apr 11, 2024 | An issue was discovered in OpenDDS commit b1c534032bb62ad4ae32609778de6b8d6c823a66, allows a local attacker to cause a d... |
| CVE-2024-29399 | HIGH | 7.6 | 0.9% | Apr 11, 2024 | An issue was discovered in GNU Savane v.3.13 and before, allows a remote attacker to execute arbitrary code and escalate... |
| CVE-2024-30885 | MEDIUM | 6.1 | 0.5% | Apr 11, 2024 | Reflected Cross-Site Scripting (XSS) vulnerability in HadSky v7.6.3, allows remote attackers to execute arbitrary code a... |
| CVE-2024-30884 | HIGH | 7.1 | 0.5% | Apr 11, 2024 | Reflected Cross-Site Scripting (XSS) vulnerability in Discuz! version X3.4 20220811, allows remote attackers to execute ... |
| CVE-2024-30883 | MEDIUM | 4.7 | 0.5% | Apr 11, 2024 | Reflected Cross Site Scripting (XSS) vulnerability in RageFrame2 v2.6.43, allows remote attackers to execute arbitrary w... |
| CVE-2024-30880 | MEDIUM | 5.4 | 0.4% | Apr 11, 2024 | Reflected Cross Site Scripting (XSS) vulnerability in RageFrame2 v2.6.43, allows remote attackers to execute arbitrary w... |
| CVE-2024-30879 | MEDIUM | 6.1 | 0.4% | Apr 11, 2024 | Reflected Cross Site Scripting (XSS) vulnerability in RageFrame2 v2.6.43, allows remote attackers to execute arbitrary w... |
| CVE-2024-30878 | MEDIUM | 6.1 | 0.4% | Apr 11, 2024 | A cross-site scripting (XSS) vulnerability in RageFrame2 v2.6.43, allows remote attackers to execute arbitrary web scrip... |
| CVE-2024-29455 | — | — | — | Apr 11, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2024-21508 | CRITICAL | 9.8 | 2.6% | Apr 11, 2024 | Versions of the package mysql2 before 3.9.4 are vulnerable to Remote Code Execution (RCE) via the readCodeFor function d... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now