2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-49336MEDIUM5.4IBM Security Guardium 11.5 and 12.0 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated...
CVE-2024-12793MEDIUM4.3A vulnerability, which was classified as problematic, has been found in PbootCMS up to 5.2.3. Affected by this issue is ...
CVE-2024-52896MEDIUM6.2IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive infor...
CVE-2024-12798MEDIUM5.9ACE vulnerability in JaninoEventEvaluator by QOS.CH logback-core upto including version 0.1 to 1.3.14 and 1.4.0 t...
CVE-2024-47093MEDIUM6.1Improper neutralization of input in Nagvis before version 1.9.42 which can lead to XSS
CVE-2024-9102MEDIUM5phpLDAPadmin since at least version 1.2.0 through the latest version 1.2.6.7 allows users to export elements from the LD...
CVE-2024-12783MEDIUM6.1A vulnerability was found in itsourcecode Vehicle Management System 1.0 and classified as problematic. This issue affect...
CVE-2024-45819MEDIUM5.5PVH guests have their ACPI tables constructed by the toolstack. The construction involves building the tables in local ...
CVE-2024-45818MEDIUM6.5The hypervisor contains code to accelerate VGA memory accesses for HVM guests, when the (virtual) VGA is in "standard" m...
CVE-2024-37962MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Agency Dominion In...
CVE-2024-12331MEDIUM4.3The File Manager Pro – Filester plugin for WordPress is vulnerable to unauthorized modification of data due to a missing...
CVE-2024-11616MEDIUM5.6Netskope was made aware of a security vulnerability in Netskope Endpoint DLP’s Content Control Driver where a double-fet...
CVE-2024-12560MEDIUM6.5The Button Block – Get fully customizable & multi-functional buttons plugin for WordPress is vulnerable to Sensitive Inf...
CVE-2024-11768MEDIUM5.3The Download Manager plugin for WordPress is vulnerable to unauthorized download of password-protected content due to im...
CVE-2024-12121MEDIUM5.4The Broken Link Checker | Finder plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions...
CVE-2024-10548MEDIUM6.5The WP Project Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and i...
CVE-2024-55603MEDIUM6.5Kanboard is project management software that focuses on the Kanban methodology. In affected versions sessions are still ...
CVE-2024-56115MEDIUM6.1A vulnerability in Amiro.CMS before 7.8.4 exists due to the failure to take measures to neutralize special elements. It ...
CVE-2024-55239MEDIUM5.4A reflected Cross-Site Scripting vulnerability in the standard documentation upload functionality in Portabilis i-Educar...
CVE-2024-37649MEDIUM4.6Insecure Permissions vulnerability in SecureSTATION v.2.5.5.3116-S50-SMA-B20160811A and before allows a physically proxi...
CVE-2024-55232MEDIUM5.4An IDOR vulnerability in the manage-notes.php module in PHPGurukul Online Notes Sharing Management System v1.0 allows un...
CVE-2024-55231MEDIUM4.3An IDOR vulnerability in the edit-notes.php module of PHPGurukul Online Notes Sharing Management System v1.0 allows unau...
CVE-2024-56140MEDIUM6.5Astro is a web framework for content-driven websites. In affected versions a bug in Astro’s CSRF-protection middleware a...
CVE-2024-45338MEDIUM5.3An attacker can craft an input to the Parse functions that would be processed non-linearly with respect to its length, r...
CVE-2024-52593MEDIUM5.3Misskey is an open source, federated social media platform.In affected versions missing validation in `NoteCreateService...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now