2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-31874MEDIUM5.5IBM Security Verify Access Appliance 10.0.0 through 10.0.7 uses uninitialized variables when deploying that could allow ...
CVE-2024-31873HIGH7.5IBM Security Verify Access Appliance 10.0.0 through 10.0.7 contains hard-coded credentials which it uses for its own inb...
CVE-2024-31872HIGH8.1IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle ...
CVE-2024-31871HIGH8.1IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle ...
CVE-2024-31358HIGH7.5Missing Authorization vulnerability in Saleswonder Team: Tobias 5 Stars Rating Funnel 5-stars-rating-funnel.This issue a...
CVE-2024-31353MEDIUM5.3Insertion of Sensitive Information into Log File vulnerability in Tribulant Slideshow Gallery.This issue affects Slidesh...
CVE-2024-31302MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in CodePeople Contact Form Email.This issue aff...
CVE-2024-31298HIGH7.5Insertion of Sensitive Information into Log File vulnerability in Joel Hardi User Spam Remover.This issue affects User S...
CVE-2024-31297MEDIUM5.3Missing Authorization vulnerability in WPExperts Wholesale For WooCommerce.This issue affects Wholesale For WooCommerce:...
CVE-2024-31287MEDIUM6.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Max Foundry Media Librar...
CVE-2024-31282MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Appcheap.Io App Builder.This issue affects App Buil...
CVE-2024-31278MEDIUM6.5Insertion of Sensitive Information Into Sent Data vulnerability in Leap13 Premium Addons for Elementor premium-addons-fo...
CVE-2024-31259HIGH7.5Insertion of Sensitive Information into Log File vulnerability in Searchiq SearchIQ.This issue affects SearchIQ: from n/...
CVE-2024-31254HIGH7.5Insertion of Sensitive Information into Log File vulnerability in WebToffee WordPress Backup & Migration.This issue affe...
CVE-2024-31253MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in WP OAuth Server OAuth Server.This issue affects OAu...
CVE-2024-31249HIGH7.5Insertion of Sensitive Information into Log File vulnerability in WPKube Subscribe To Comments Reloaded.This issue affec...
CVE-2024-31247HIGH7.5Insertion of Sensitive Information into Log File vulnerability in Frédéric GILLES FG Drupal to WordPress.This issue affe...
CVE-2024-31245HIGH7.5Insertion of Sensitive Information into Log File vulnerability in ConvertKit.This issue affects ConvertKit: from n/a thr...
CVE-2024-31240HIGH8.1Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in InfoTheme WP Poll Maker....
CVE-2024-23735MEDIUM6.1Cross Site Scripting (XSS) vulnerability in in the S/MIME certificate upload functionality of the User Profile pages in ...
CVE-2024-23734MEDIUM5.2Cross Site Request Forgery vulnerability in in the upload functionality of the User Profile pages in savignano S/Notify ...
CVE-2024-0218HIGH8.2A Denial of Service (Dos) vulnerability in Nozomi Networks Guardian, caused by improper input validation in certain fiel...
CVE-2024-3567MEDIUM5.5A flaw was found in QEMU. An assertion failure was present in the update_sctp_checksum() function in hw/net/net_tx_pkt.c...
CVE-2024-29296MEDIUM5.3A user enumeration vulnerability was found in Portainer CE 2.19.4. This issue occurs during user authentication process,...
CVE-2024-27477MEDIUM6.1In Leantime 3.0.6, a Cross-Site Scripting vulnerability exists within the ticket creation and modification functionality...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now