2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-2517CRITICAL9.8A vulnerability has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as critical...
CVE-2024-2516HIGH8.8A vulnerability, which was classified as critical, was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System ...
CVE-2024-2515MEDIUM6.1A vulnerability, which was classified as problematic, has been found in MAGESH-K21 Online-College-Event-Hall-Reservation...
CVE-2024-1857MEDIUM5.3The Ultimate Gift Cards for WooCommerce – Create, Redeem & Manage Digital Gift Certificates with Personalized Templates ...
CVE-2024-22513MEDIUM5.5djangorestframework-simplejwt version 5.3.1 and before is vulnerable to information disclosure. A user can access web ap...
CVE-2024-28640HIGH7.5Buffer Overflow vulnerability in TOTOLink X5000R V9.1.0u.6118-B20201102 and A7000R V9.1.0u.6115-B20201022 allows a remot...
CVE-2024-28639CRITICAL9.8Buffer Overflow vulnerability in TOTOLink X5000R V9.1.0u.6118-B20201102 and A7000R V9.1.0u.6115-B20201022, allow remote ...
CVE-2024-28070MEDIUM6.8A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthen...
CVE-2024-28069HIGH7.5A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthen...
CVE-2024-24156MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Gnuboard g6 before Github commit 58c737a263ac0c523592fd87ff71b9e3c07d7cf5, a...
CVE-2024-1733MEDIUM5.3The Word Replacer Pro plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit...
CVE-2024-1685HIGH8.8The Social Media Share Buttons plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and inc...
CVE-2024-24845MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Sewpafly Post Thumbnail Editor.This issue af...
CVE-2024-23523MEDIUM6.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Elementor Pro.This issue affects Elementor P...
CVE-2024-22259HIGH8.1Applications that use UriComponentsBuilder in Spring Framework to parse an externally provided URL (e.g. through a query...
CVE-2024-2042MEDIUM5.4The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordi...
CVE-2024-1239MEDIUM5.4The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the blog post rea...
CVE-2024-2308MEDIUM5.4The ElementInvader Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the button...
CVE-2024-2294MEDIUM4.9The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to Directory Traversal in all versi...
CVE-2024-27197HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Bee BeePress allows Stored XSS.This issue affects BeePress: from n/a ...
CVE-2024-27195HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in sverde1 Watermark RELOADED watermark-reloaded allows Cross Site Reque...
CVE-2024-27194MEDIUM6.1Cross-Site Request Forgery (CSRF) vulnerability in Andrei Ivasiuc Fontific | Google Fonts allows Stored XSS.This issue a...
CVE-2024-28862MEDIUM5.5The Ruby One Time Password library (ROTP) is an open source library for generating and validating one time passwords. Af...
CVE-2024-2514CRITICAL9.8A vulnerability classified as critical was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. Affecte...
CVE-2024-28859CRITICAL9Symfony1 is a community fork of symfony 1.4 with DIC, form enhancements, latest Swiftmailer, better performance, compose...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now