2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-45819MEDIUM5.5PVH guests have their ACPI tables constructed by the toolstack. The construction involves building the tables in local ...
CVE-2024-45818MEDIUM6.5The hypervisor contains code to accelerate VGA memory accesses for HVM guests, when the (virtual) VGA is in "standard" m...
CVE-2024-37962MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Agency Dominion In...
CVE-2024-12331MEDIUM4.3The File Manager Pro – Filester plugin for WordPress is vulnerable to unauthorized modification of data due to a missing...
CVE-2024-11616MEDIUM5.6Netskope was made aware of a security vulnerability in Netskope Endpoint DLP’s Content Control Driver where a double-fet...
CVE-2024-12560MEDIUM6.5The Button Block – Get fully customizable & multi-functional buttons plugin for WordPress is vulnerable to Sensitive Inf...
CVE-2024-11768MEDIUM5.3The Download Manager plugin for WordPress is vulnerable to unauthorized download of password-protected content due to im...
CVE-2024-12121MEDIUM5.4The Broken Link Checker | Finder plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions...
CVE-2024-10548MEDIUM6.5The WP Project Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and i...
CVE-2024-55603MEDIUM6.5Kanboard is project management software that focuses on the Kanban methodology. In affected versions sessions are still ...
CVE-2024-56115MEDIUM6.1A vulnerability in Amiro.CMS before 7.8.4 exists due to the failure to take measures to neutralize special elements. It ...
CVE-2024-55239MEDIUM5.4A reflected Cross-Site Scripting vulnerability in the standard documentation upload functionality in Portabilis i-Educar...
CVE-2024-37649MEDIUM4.6Insecure Permissions vulnerability in SecureSTATION v.2.5.5.3116-S50-SMA-B20160811A and before allows a physically proxi...
CVE-2024-55232MEDIUM5.4An IDOR vulnerability in the manage-notes.php module in PHPGurukul Online Notes Sharing Management System v1.0 allows un...
CVE-2024-55231MEDIUM4.3An IDOR vulnerability in the edit-notes.php module of PHPGurukul Online Notes Sharing Management System v1.0 allows unau...
CVE-2024-56140MEDIUM6.5Astro is a web framework for content-driven websites. In affected versions a bug in Astro’s CSRF-protection middleware a...
CVE-2024-45338MEDIUM5.3An attacker can craft an input to the Parse functions that would be processed non-linearly with respect to its length, r...
CVE-2024-52593MEDIUM5.3Misskey is an open source, federated social media platform.In affected versions missing validation in `NoteCreateService...
CVE-2024-52592MEDIUM5.3Misskey is an open source, federated social media platform. In affected versions missing validation in `ApInboxService.u...
CVE-2024-52590MEDIUM6.5Misskey is an open source, federated social media platform. In affected versions missing validation in `ApRequestService...
CVE-2024-52579MEDIUM5.4Misskey is an open source, federated social media platform. Some APIs using `HttpRequestService` do not properly check t...
CVE-2024-51470MEDIUM6.5IBM MQ 9.1 LTS, 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, 9.4 CD, IBM MQ Appliance 9.3 LTS, 9.3 CD, 9.4 LTS, and IBM MQ for HPE...
CVE-2024-49201MEDIUM4.3Keyfactor Remote File Orchestrator (aka remote-file-orchestrator) 2.8 before 2.8.1 allows Information Disclosure: sensit...
CVE-2024-47039MEDIUM5.5In isSlotMarkedSuccessful of BootControl.cpp, there is a possible out of bounds read due to a missing bounds check. This...
CVE-2024-55089MEDIUM4.1Rhymix before 2.1.24 is vulnerable to Server-Side Request Forgery (SSRF) in the background import data function because ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now