2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-31874 | MEDIUM | 5.5 | 0.3% | Apr 10, 2024 | IBM Security Verify Access Appliance 10.0.0 through 10.0.7 uses uninitialized variables when deploying that could allow ... |
| CVE-2024-31873 | HIGH | 7.5 | 1.2% | Apr 10, 2024 | IBM Security Verify Access Appliance 10.0.0 through 10.0.7 contains hard-coded credentials which it uses for its own inb... |
| CVE-2024-31872 | HIGH | 8.1 | 0.6% | Apr 10, 2024 | IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle ... |
| CVE-2024-31871 | HIGH | 8.1 | 0.6% | Apr 10, 2024 | IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle ... |
| CVE-2024-31358 | HIGH | 7.5 | 0.6% | Apr 10, 2024 | Missing Authorization vulnerability in Saleswonder Team: Tobias 5 Stars Rating Funnel 5-stars-rating-funnel.This issue a... |
| CVE-2024-31353 | MEDIUM | 5.3 | 0.5% | Apr 10, 2024 | Insertion of Sensitive Information into Log File vulnerability in Tribulant Slideshow Gallery.This issue affects Slidesh... |
| CVE-2024-31302 | MEDIUM | 5.3 | 0.5% | Apr 10, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in CodePeople Contact Form Email.This issue aff... |
| CVE-2024-31298 | HIGH | 7.5 | 0.5% | Apr 10, 2024 | Insertion of Sensitive Information into Log File vulnerability in Joel Hardi User Spam Remover.This issue affects User S... |
| CVE-2024-31297 | MEDIUM | 5.3 | 0.4% | Apr 10, 2024 | Missing Authorization vulnerability in WPExperts Wholesale For WooCommerce.This issue affects Wholesale For WooCommerce:... |
| CVE-2024-31287 | MEDIUM | 6.5 | 0.7% | Apr 10, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Max Foundry Media Librar... |
| CVE-2024-31282 | MEDIUM | 6.1 | 0.3% | Apr 10, 2024 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Appcheap.Io App Builder.This issue affects App Buil... |
| CVE-2024-31278 | MEDIUM | 6.5 | 0.5% | Apr 10, 2024 | Insertion of Sensitive Information Into Sent Data vulnerability in Leap13 Premium Addons for Elementor premium-addons-fo... |
| CVE-2024-31259 | HIGH | 7.5 | 0.6% | Apr 10, 2024 | Insertion of Sensitive Information into Log File vulnerability in Searchiq SearchIQ.This issue affects SearchIQ: from n/... |
| CVE-2024-31254 | HIGH | 7.5 | 0.5% | Apr 10, 2024 | Insertion of Sensitive Information into Log File vulnerability in WebToffee WordPress Backup & Migration.This issue affe... |
| CVE-2024-31253 | MEDIUM | 6.1 | 0.4% | Apr 10, 2024 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in WP OAuth Server OAuth Server.This issue affects OAu... |
| CVE-2024-31249 | HIGH | 7.5 | 0.5% | Apr 10, 2024 | Insertion of Sensitive Information into Log File vulnerability in WPKube Subscribe To Comments Reloaded.This issue affec... |
| CVE-2024-31247 | HIGH | 7.5 | 0.5% | Apr 10, 2024 | Insertion of Sensitive Information into Log File vulnerability in Frédéric GILLES FG Drupal to WordPress.This issue affe... |
| CVE-2024-31245 | HIGH | 7.5 | 0.5% | Apr 10, 2024 | Insertion of Sensitive Information into Log File vulnerability in ConvertKit.This issue affects ConvertKit: from n/a thr... |
| CVE-2024-31240 | HIGH | 8.1 | 0.7% | Apr 10, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in InfoTheme WP Poll Maker.... |
| CVE-2024-23735 | MEDIUM | 6.1 | 0.2% | Apr 10, 2024 | Cross Site Scripting (XSS) vulnerability in in the S/MIME certificate upload functionality of the User Profile pages in ... |
| CVE-2024-23734 | MEDIUM | 5.2 | 0.1% | Apr 10, 2024 | Cross Site Request Forgery vulnerability in in the upload functionality of the User Profile pages in savignano S/Notify ... |
| CVE-2024-0218 | HIGH | 8.2 | 0.6% | Apr 10, 2024 | A Denial of Service (Dos) vulnerability in Nozomi Networks Guardian, caused by improper input validation in certain fiel... |
| CVE-2024-3567 | MEDIUM | 5.5 | 0.4% | Apr 10, 2024 | A flaw was found in QEMU. An assertion failure was present in the update_sctp_checksum() function in hw/net/net_tx_pkt.c... |
| CVE-2024-29296 | MEDIUM | 5.3 | 1.3% | Apr 10, 2024 | A user enumeration vulnerability was found in Portainer CE 2.19.4. This issue occurs during user authentication process,... |
| CVE-2024-27477 | MEDIUM | 6.1 | 0.6% | Apr 10, 2024 | In Leantime 3.0.6, a Cross-Site Scripting vulnerability exists within the ticket creation and modification functionality... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now