2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-2517 | CRITICAL | 9.8 | 0.5% | Mar 16, 2024 | A vulnerability has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as critical... |
| CVE-2024-2516 | HIGH | 8.8 | 0.5% | Mar 16, 2024 | A vulnerability, which was classified as critical, was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System ... |
| CVE-2024-2515 | MEDIUM | 6.1 | 0.4% | Mar 16, 2024 | A vulnerability, which was classified as problematic, has been found in MAGESH-K21 Online-College-Event-Hall-Reservation... |
| CVE-2024-1857 | MEDIUM | 5.3 | 0.3% | Mar 16, 2024 | The Ultimate Gift Cards for WooCommerce – Create, Redeem & Manage Digital Gift Certificates with Personalized Templates ... |
| CVE-2024-22513 | MEDIUM | 5.5 | 0.8% | Mar 16, 2024 | djangorestframework-simplejwt version 5.3.1 and before is vulnerable to information disclosure. A user can access web ap... |
| CVE-2024-28640 | HIGH | 7.5 | 14.2% | Mar 16, 2024 | Buffer Overflow vulnerability in TOTOLink X5000R V9.1.0u.6118-B20201102 and A7000R V9.1.0u.6115-B20201022 allows a remot... |
| CVE-2024-28639 | CRITICAL | 9.8 | 1.2% | Mar 16, 2024 | Buffer Overflow vulnerability in TOTOLink X5000R V9.1.0u.6118-B20201102 and A7000R V9.1.0u.6115-B20201022, allow remote ... |
| CVE-2024-28070 | MEDIUM | 6.8 | 0.4% | Mar 16, 2024 | A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthen... |
| CVE-2024-28069 | HIGH | 7.5 | 0.6% | Mar 16, 2024 | A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthen... |
| CVE-2024-24156 | MEDIUM | 6.1 | 0.5% | Mar 16, 2024 | Cross Site Scripting (XSS) vulnerability in Gnuboard g6 before Github commit 58c737a263ac0c523592fd87ff71b9e3c07d7cf5, a... |
| CVE-2024-1733 | MEDIUM | 5.3 | 0.4% | Mar 16, 2024 | The Word Replacer Pro plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit... |
| CVE-2024-1685 | HIGH | 8.8 | 0.8% | Mar 16, 2024 | The Social Media Share Buttons plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and inc... |
| CVE-2024-24845 | MEDIUM | 5.3 | 0.4% | Mar 16, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Sewpafly Post Thumbnail Editor.This issue af... |
| CVE-2024-23523 | MEDIUM | 6.5 | 0.5% | Mar 16, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Elementor Pro.This issue affects Elementor P... |
| CVE-2024-22259 | HIGH | 8.1 | 2.6% | Mar 16, 2024 | Applications that use UriComponentsBuilder in Spring Framework to parse an externally provided URL (e.g. through a query... |
| CVE-2024-2042 | MEDIUM | 5.4 | 0.5% | Mar 16, 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordi... |
| CVE-2024-1239 | MEDIUM | 5.4 | 0.4% | Mar 16, 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the blog post rea... |
| CVE-2024-2308 | MEDIUM | 5.4 | 0.3% | Mar 16, 2024 | The ElementInvader Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the button... |
| CVE-2024-2294 | MEDIUM | 4.9 | 0.9% | Mar 16, 2024 | The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to Directory Traversal in all versi... |
| CVE-2024-27197 | HIGH | 7.1 | 0.2% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Bee BeePress allows Stored XSS.This issue affects BeePress: from n/a ... |
| CVE-2024-27195 | HIGH | 7.1 | 0.2% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in sverde1 Watermark RELOADED watermark-reloaded allows Cross Site Reque... |
| CVE-2024-27194 | MEDIUM | 6.1 | 0.2% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Andrei Ivasiuc Fontific | Google Fonts allows Stored XSS.This issue a... |
| CVE-2024-28862 | MEDIUM | 5.5 | 0.2% | Mar 16, 2024 | The Ruby One Time Password library (ROTP) is an open source library for generating and validating one time passwords. Af... |
| CVE-2024-2514 | CRITICAL | 9.8 | 0.6% | Mar 15, 2024 | A vulnerability classified as critical was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. Affecte... |
| CVE-2024-28859 | CRITICAL | 9 | 1.5% | Mar 15, 2024 | Symfony1 is a community fork of symfony 1.4 with DIC, form enhancements, latest Swiftmailer, better performance, compose... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now