2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-25596 | MEDIUM | 4.8 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Doofinder Doofinde... |
| CVE-2024-25593 | MEDIUM | 5.4 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Basix NEX-Forms – ... |
| CVE-2024-25592 | MEDIUM | 4.8 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPMU DEV Broken Li... |
| CVE-2024-2495 | MEDIUM | 4.4 | 0.2% | Mar 15, 2024 | Cryptographic key vulnerability encoded in the FriendlyWrt firmware affecting version 2022-11-16.51b3d35. This vulnerabi... |
| CVE-2024-27196 | MEDIUM | 6.1 | 0.4% | Mar 15, 2024 | Cross Site Scripting (XSS) vulnerability in Joel Starnes postMash – custom post order allows Reflected XSS.This issue af... |
| CVE-2024-27193 | MEDIUM | 6.1 | 0.4% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PayU India PayU In... |
| CVE-2024-27192 | HIGH | 7.1 | 0.4% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Reilly Confi... |
| CVE-2024-27189 | MEDIUM | 5.4 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in catchsquare WP Soc... |
| CVE-2024-25936 | MEDIUM | 6.5 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SoundCloud Inc., L... |
| CVE-2024-25934 | MEDIUM | 5.4 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FormFacade allows ... |
| CVE-2024-25921 | HIGH | 7.1 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Concerted Action A... |
| CVE-2024-25919 | MEDIUM | 6.5 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hiroaki Miyashita ... |
| CVE-2024-25916 | MEDIUM | 6.5 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Joseph C Dolson My... |
| CVE-2024-25598 | MEDIUM | 5.4 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Livemesh Livemesh ... |
| CVE-2024-28752 | CRITICAL | 9.3 | 5.8% | Mar 15, 2024 | A SSRF vulnerability using the Aegis DataBinding in versions of Apache CXF before 4.0.4, 3.6.3 and 3.5.8 allows an attac... |
| CVE-2024-27987 | MEDIUM | 6.1 | 0.4% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in StellarWP GiveWP g... |
| CVE-2024-23944 | MEDIUM | 5.3 | 0.2% | Mar 15, 2024 | Information disclosure in persistent watchers handling in Apache ZooKeeper due to missing ACL check. It allows an attack... |
| CVE-2024-2490 | HIGH | 8.8 | 1.6% | Mar 15, 2024 | A vulnerability classified as critical was found in Tenda AC18 15.03.05.05. Affected by this vulnerability is the functi... |
| CVE-2024-2450 | HIGH | 8.8 | 0.6% | Mar 15, 2024 | Mattermost versions 8.1.x before 8.1.10, 9.2.x before 9.2.6, 9.3.x before 9.3.2, and 9.4.x before 9.4.3 fail to correctl... |
| CVE-2024-2446 | MEDIUM | 4.3 | 0.4% | Mar 15, 2024 | Mattermost versions 8.1.x before 8.1.10, 9.2.x before 9.2.6, 9.3.x before 9.3.2, and 9.4.x before 9.4.3 fail to limit th... |
| CVE-2024-2445 | MEDIUM | 6.1 | 0.3% | Mar 15, 2024 | Mattermost Jira plugin versions shipped with Mattermost versions 8.1.x before 8.1.10, 9.2.x before 9.2.6, 9.3.x before 9... |
| CVE-2024-2489 | HIGH | 8.8 | 1.6% | Mar 15, 2024 | A vulnerability classified as critical has been found in Tenda AC18 15.03.05.05. Affected is the function formSetQosBand... |
| CVE-2024-2488 | HIGH | 8.8 | 1.5% | Mar 15, 2024 | A vulnerability was found in Tenda AC18 15.03.05.05. It has been rated as critical. This issue affects the function form... |
| CVE-2024-2487 | HIGH | 8.8 | 1.6% | Mar 15, 2024 | A vulnerability was found in Tenda AC18 15.03.05.05. It has been declared as critical. This vulnerability affects the fu... |
| CVE-2024-28053 | MEDIUM | 6.5 | 0.5% | Mar 15, 2024 | Resource Exhaustion in Mattermost Server versions 8.1.x before 8.1.10 fails to limit the size of the payload that can be... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now