2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-11411MEDIUM6.4The Spotlightr plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'spotlightr-v' shortco...
CVE-2024-11331MEDIUM6.1The استخراج محصولات ووکامرس برای آیسی plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the us...
CVE-2024-8968MEDIUM4.7The WordPress Button Plugin MaxButtons WordPress plugin before 9.8.1 does not sanitise and escape some of its settings, ...
CVE-2024-5955MEDIUM5.4Cross-site scripting vulnerability in Trellix ePolicy Orchestrator prior to ePO 5.10 Service Pack 1 Update 3 allows a re...
CVE-2024-11108MEDIUM5.4The Serious Slider WordPress plugin before 1.2.7 does not validate and escape some of its shortcode attributes before ou...
CVE-2024-10706MEDIUM4.8The Download Manager WordPress plugin before 3.3.03 does not sanitise and escape some of its settings, which could allow...
CVE-2024-10555MEDIUM4.8The WordPress Button Plugin MaxButtons WordPress plugin before 9.8.1 does not sanitise and escape some of its settings, ...
CVE-2024-44293MEDIUM5.5A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia...
CVE-2024-44292MEDIUM5.5A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia...
CVE-2024-44231MEDIUM4.6This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.1. A person with phy...
CVE-2024-44223MEDIUM4.6This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.1. An attacker with ...
CVE-2024-44211MEDIUM5.5This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.1. An app may be ...
CVE-2024-11776MEDIUM6.4The PCRecruiter Extensions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'PCRecruit...
CVE-2024-12678MEDIUM6.5Nomad Community and Nomad Enterprise ("Nomad") allocations are vulnerable to privilege escalation within a namespace thr...
CVE-2024-12832MEDIUM6.3Arista NG Firewall ReportEntry SQL Injection Arbitrary File Read and Write Vulnerability. This vulnerability allows remo...
CVE-2024-54009MEDIUM4Remote authentication bypass vulnerability in HPE Alletra Storage MP B10000 in versions prior to version 10.4.5 could be...
CVE-2024-2201MEDIUM4.7A cross-privilege Spectre v2 vulnerability allows attackers to bypass all deployed mitigations, including the recent Fin...
CVE-2024-7139MEDIUM6.5Due to an unchecked buffer length, a specially crafted L2CAP packet can cause a buffer overflow. This buffer overflow tr...
CVE-2024-7138MEDIUM6.5An assert may be triggered, causing a temporary denial of service when a peer device sends a specially crafted malformed...
CVE-2024-7137MEDIUM6.5The L2CAP receive data buffer for L2CAP packets is restricted to packet sizes smaller than the maximum supported packet ...
CVE-2024-53991MEDIUM5.9Discourse is an open source platform for community discussion. This vulnerability only impacts Discourse instances confi...
CVE-2024-52794MEDIUM6.1Discourse is an open source platform for community discussion. Users clicking on the lightbox thumbnails could be affect...
CVE-2024-56159MEDIUM5.3Astro is a web framework for content-driven websites. A bug in the build process allows any unauthenticated user to read...
CVE-2024-52897MEDIUM6.2IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive infor...
CVE-2024-51471MEDIUM5.3IBM MQ Appliance 9.3 LTS, 9.3 CD, and 9.4 LTS web console could allow an authenticated user to cause a denial-of-service...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now