2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-29439 | — | — | — | Apr 10, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2024-31999 | HIGH | 7.4 | 0.6% | Apr 10, 2024 | @festify/secure-session creates a secure stateless cookie session for Fastify. At the end of the request handling, it wi... |
| CVE-2024-31997 | HIGH | 8.8 | 73.9% | Apr 10, 2024 | XWiki Platform is a generic wiki platform. Prior to versions 4.10.19, 15.5.4, and 15.10-rc-1, parameters of UI extension... |
| CVE-2024-31995 | MEDIUM | 4.3 | 0.4% | Apr 10, 2024 | `@digitalbazaar/zcap` provides JavaScript reference implementation for Authorization Capabilities. Prior to version 9.0.... |
| CVE-2024-29504 | HIGH | 7.6 | 0.7% | Apr 10, 2024 | Cross Site Scripting vulnerability in Summernote v.0.8.18 and before allows a remote attacker to execute arbtirary code ... |
| CVE-2024-31996 | CRITICAL | 9.8 | 2.1% | Apr 10, 2024 | XWiki Platform is a generic wiki platform. Starting in version 3.0.1 and prior to versions 4.10.19, 15.5.4, and 15.10-rc... |
| CVE-2024-31988 | HIGH | 8.8 | 0.7% | Apr 10, 2024 | XWiki Platform is a generic wiki platform. Starting in version 13.9-rc-1 and prior to versions 4.10.19, 15.5.4, and 15.1... |
| CVE-2024-31987 | HIGH | 8.8 | 1.4% | Apr 10, 2024 | XWiki Platform is a generic wiki platform. Starting in version 6.4-milestone-1 and prior to versions 4.10.19, 15.5.4, an... |
| CVE-2024-31986 | HIGH | 8.8 | 0.5% | Apr 10, 2024 | XWiki Platform is a generic wiki platform. Starting in version 3.1 and prior to versions 4.10.19, 15.5.4, and 15.10-rc-1... |
| CVE-2024-31985 | MEDIUM | 5.4 | 0.3% | Apr 10, 2024 | XWiki Platform is a generic wiki platform. Starting in version 3.1 and prior to versions 4.10.20, 15.5.4, and 15.10-rc-1... |
| CVE-2024-29460 | MEDIUM | 6.6 | 0.2% | Apr 10, 2024 | An issue in PX4 Autopilot v.1.14.0 allows an attacker to manipulate the flight path allowing for crashes of the drone vi... |
| CVE-2024-26362 | HIGH | 8.8 | 0.6% | Apr 10, 2024 | HTML injection vulnerability in Enpass Password Manager Desktop Client 6.9.2 for Windows and Linux allows attackers to r... |
| CVE-2024-1481 | MEDIUM | 5.3 | 1.1% | Apr 10, 2024 | A flaw was found in FreeIPA. This issue may allow a remote attacker to craft a HTTP request with parameters that can be ... |
| CVE-2024-31984 | HIGH | 8.8 | 83.0% | Apr 10, 2024 | XWiki Platform is a generic wiki platform. Starting in version 7.2-rc-1 and prior to versions 4.10.20, 15.5.4, and 15.10... |
| CVE-2024-31983 | HIGH | 8.8 | 1.4% | Apr 10, 2024 | XWiki Platform is a generic wiki platform. In multilingual wikis, translations can be edited by any user who has edit ri... |
| CVE-2024-31982 | CRITICAL | 9.8 | 34.5% | Apr 10, 2024 | XWiki Platform is a generic wiki platform. Starting in version 2.4-milestone-1 and prior to versions 4.10.20, 15.5.4, an... |
| CVE-2024-31981 | HIGH | 8.8 | 1.4% | Apr 10, 2024 | XWiki Platform is a generic wiki platform. Starting in version 3.0.1 and prior to versions 4.10.20, 15.5.4, and 15.10-rc... |
| CVE-2024-31939 | MEDIUM | 4.3 | 0.2% | Apr 10, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Soflyy Import any XML or CSV File to WordPress.This issue affects Imp... |
| CVE-2024-31819 | CRITICAL | 9.8 | 15.6% | Apr 10, 2024 | An issue in WWBN AVideo v.12.4 through v.14.2 allows a remote attacker to execute arbitrary code via the systemRootPath ... |
| CVE-2024-31465 | HIGH | 8.8 | 75.6% | Apr 10, 2024 | XWiki Platform is a generic wiki platform. Starting in version 5.0-rc-1 and prior to versions 14.10.20, 15.5.4, and 15.9... |
| CVE-2024-31430 | HIGH | 8.8 | 0.2% | Apr 10, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor and Manager Professiona... |
| CVE-2024-29502 | MEDIUM | 6.5 | 0.7% | Apr 10, 2024 | An issue in Secure Lockdown Multi Application Edition v2.00.219 allows attackers to read arbitrary files via using UNC p... |
| CVE-2024-29500 | CRITICAL | 9.8 | 1.0% | Apr 10, 2024 | An issue in the kiosk mode of Secure Lockdown Multi Application Edition v2.00.219 allows attackers to execute arbitrary ... |
| CVE-2024-29269 | HIGH | 8.8 | 5.9% | Apr 10, 2024 | An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the ... |
| CVE-2024-3516 | MEDIUM | 6.5 | 1.0% | Apr 10, 2024 | Heap buffer overflow in ANGLE in Google Chrome prior to 123.0.6312.122 allowed a remote attacker to potentially exploit ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now