2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-2392MEDIUM6.4The Blocksy Companion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Newsletter widg...
CVE-2024-2080MEDIUM4.3The LiquidPoll – Polls, Surveys, NPS and Feedback Reviews plugin for WordPress is vulnerable to Sensitive Information Ex...
CVE-2024-28441CRITICAL9.8File Upload vulnerability in magicflue v.7.0 and before allows a remote attacker to execute arbitrary code via a crafted...
CVE-2024-0957MEDIUM6.1The WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels plugin for WordPress is vulnerable to St...
CVE-2024-2779MEDIUM5.4A vulnerability was found in Campcodes Online Marriage Registration System 1.0. It has been classified as problematic. T...
CVE-2024-2778MEDIUM6.1A vulnerability was found in Campcodes Online Marriage Registration System 1.0 and classified as problematic. Affected b...
CVE-2024-2777MEDIUM6.5A vulnerability has been found in Campcodes/PHPGurukul Online Marriage Registration System 1.0 and classified as critica...
CVE-2024-2776MEDIUM6.5A vulnerability, which was classified as critical, was found in Campcodes Online Marriage Registration System 1.0. Affec...
CVE-2024-2775MEDIUM6.1A vulnerability, which was classified as problematic, has been found in Campcodes Online Marriage Registration System 1....
CVE-2024-2774MEDIUM6.5A vulnerability classified as critical was found in Campcodes Online Marriage Registration System 1.0. This vulnerabilit...
CVE-2024-2773MEDIUM6.1A vulnerability classified as problematic has been found in Campcodes Online Marriage Registration System 1.0. This affe...
CVE-2024-2770MEDIUM6.5A vulnerability was found in Campcodes Complete Online Beauty Parlor Management System 1.0. It has been rated as critica...
CVE-2024-2453MEDIUM6.4 There is an SQL injection vulnerability in Advantech WebAccess/SCADA software that allows an authenticated attacker to ...
CVE-2024-29031HIGH7.5Meshery is an open source, cloud native manager that enables the design and management of Kubernetes-based infrastructur...
CVE-2024-28863MEDIUM6.5node-tar is a Tar for Node.js. node-tar prior to version 6.2.1 has no limit on the number of sub-folders created in the ...
CVE-2024-28171HIGH8.1 It is possible to perform a path traversal attack and write outside of the intended directory. If a file name is specif...
CVE-2024-28045MEDIUM5.4 Improper neutralization of input within the affected product could lead to cross-site scripting.
CVE-2024-28040HIGH8.8 SQL injection vulnerability exists in GetDIAE_astListParameters.
CVE-2024-25567HIGH8.8 Path traversal attack is possible and write outside of the intended directory and may access sensitive information. If ...
CVE-2024-23975HIGH8.8 SQL injection vulnerability exists in GetDIAE_slogListParameters.
CVE-2024-23494HIGH8.8 SQL injection vulnerability exists in GetDIAE_unListParameters.
CVE-2024-2769MEDIUM6.5A vulnerability was detected in Campcodes Complete Online Beauty Parlor Management System 1.0. The affected element is a...
CVE-2024-2768MEDIUM6.5A vulnerability was found in Campcodes Complete Online Beauty Parlor Management System 1.0. It has been classified as cr...
CVE-2024-28891HIGH8.8 SQL injection vulnerability exists in the script Handler_CFG.ashx.
CVE-2024-28521HIGH7.8SQL Injection vulnerability in Netcome NS-ASG Application Security Gateway v.6.3.1 allows a local attacker to execute ar...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now