2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3094 | CRITICAL | 10 | 86.0% | Mar 29, 2024 | Malicious code was discovered in the upstream tarballs of xz, starting with version 5.6.0. Through a series of complex... |
| CVE-2024-31032 | CRITICAL | 9.8 | 1.1% | Mar 29, 2024 | An issue in Huashi Private Cloud CDN Live Streaming Acceleration Server hgateway-sixport v.1.1.2 allows a remote attacke... |
| CVE-2024-30468 | MEDIUM | 4.3 | 0.2% | Mar 29, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in All In One WP Security & Firewall Team All In One WP Security & Firew... |
| CVE-2024-30463 | MEDIUM | 5.3 | 0.4% | Mar 29, 2024 | Missing Authorization vulnerability in realmag777 BEAR.This issue affects BEAR: from n/a through 1.1.4.3. |
| CVE-2024-30462 | HIGH | 8.8 | 0.2% | Mar 29, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in realmag777 HUSKY – Products Filter for WooCommerce (formerly WOOF).Th... |
| CVE-2024-30460 | MEDIUM | 4.3 | 0.2% | Mar 29, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Tumult Inc Tumult Hype Animations.This issue affects Tumult Hype Anim... |
| CVE-2024-30455 | MEDIUM | 4.3 | 0.2% | Mar 29, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in GamiPress.This issue affects GamiPress: from n/a through 6.8.5. |
| CVE-2024-30454 | HIGH | 8.8 | 0.2% | Mar 29, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in VeronaLabs WP SMS.This issue affects WP SMS: from n/a through 6.6.2. |
| CVE-2024-30453 | MEDIUM | 5.4 | 0.3% | Mar 29, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Brave Brave Popup Builder.This issue affects Brave Popup Builder: fr... |
| CVE-2024-30452 | MEDIUM | 5.9 | 0.4% | Mar 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PluginOps Landing ... |
| CVE-2024-30451 | MEDIUM | 6.5 | 0.4% | Mar 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in INFINITUM FORM Geo... |
| CVE-2024-30450 | MEDIUM | 6.5 | 0.4% | Mar 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Step-Byte-Service ... |
| CVE-2024-30449 | HIGH | 7.1 | 0.4% | Mar 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Booking Activities... |
| CVE-2024-30448 | MEDIUM | 5.9 | 0.4% | Mar 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Supsystic Slider b... |
| CVE-2024-30447 | HIGH | 7.1 | 0.4% | Mar 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Creative Solutions... |
| CVE-2024-30446 | MEDIUM | 5.4 | 0.3% | Mar 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CRM Perks CRM Perk... |
| CVE-2024-30445 | MEDIUM | 6.5 | 0.4% | Mar 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GhozyLab, Inc. Web... |
| CVE-2024-30444 | MEDIUM | 5.9 | 0.4% | Mar 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in zionbuilder.Io Wor... |
| CVE-2024-29640 | CRITICAL | 9.8 | 1.4% | Mar 29, 2024 | An issue in aliyundrive-webdav v.2.3.3 and before allows a remote attacker to execute arbitrary code via a crafted paylo... |
| CVE-2024-25944 | HIGH | 7.5 | 0.8% | Mar 29, 2024 | Dell OpenManage Enterprise, v4.0 and prior, contain(s) a path traversal vulnerability. An unauthenticated remote attacke... |
| CVE-2024-30645 | HIGH | 8 | 1.0% | Mar 29, 2024 | Tenda AC15V1.0 V15.03.20_multi has a command injection vulnerability via the deviceName parameter. |
| CVE-2024-30521 | MEDIUM | 5.4 | 0.2% | Mar 29, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Landingi Landingi Landing Pages.This issue affects Landingi Landing P... |
| CVE-2024-30518 | MEDIUM | 4.3 | 0.2% | Mar 29, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in ThemeLocation Custom WooCommerce Checkout Fields Editor.This issue af... |
| CVE-2024-30514 | MEDIUM | 5.3 | 0.5% | Mar 29, 2024 | Insertion of Sensitive Information into Log File vulnerability in Paid Memberships Pro Paid Memberships Pro – Payfast Ga... |
| CVE-2024-30513 | MEDIUM | 6.5 | 0.5% | Mar 29, 2024 | Authorization Bypass Through User-Controlled Key vulnerability in Metagauss ProfileGrid.This issue affects ProfileGrid :... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now