2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-2432HIGH7A privilege escalation (PE) vulnerability in the Palo Alto Networks GlobalProtect app on Windows devices enables a local...
CVE-2024-2431MEDIUM5.5An issue in the Palo Alto Networks GlobalProtect app enables a non-privileged user to disable the GlobalProtect app in c...
CVE-2024-2418CRITICAL9.8A vulnerability was found in SourceCodester Best POS Management System 1.0. It has been declared as critical. Affected b...
CVE-2024-2403MEDIUM5.9 Improper cleanup in temporary file handling component in Devolutions Remote Desktop Manager 2024.1.12 and earlier on Wi...
CVE-2024-28196MEDIUM6.1your_spotify is an open source, self hosted Spotify tracking dashboard. YourSpotify version < 1.9.0 does not prevent oth...
CVE-2024-28195HIGH8.8your_spotify is an open source, self hosted Spotify tracking dashboard. YourSpotify versions < 1.9.0 do not protect the ...
CVE-2024-27953MEDIUM4.7Missing Authorization vulnerability in Cool Plugins Cryptocurrency Widgets – Price Ticker & Coins List.This issue affect...
CVE-2024-27952MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Codeus Advanced...
CVE-2024-20327HIGH7.4A vulnerability in the PPP over Ethernet (PPPoE) termination feature of Cisco IOS XR Software for Cisco ASR 9000 Series ...
CVE-2024-20322MEDIUM5.8A vulnerability in the access control list (ACL) processing on Pseudowire interfaces in the ingress direction of Cisco I...
CVE-2024-20320HIGH7.8A vulnerability in the SSH client feature of Cisco IOS XR Software for Cisco 8000 Series Routers and Cisco Network Conve...
CVE-2024-20319MEDIUM4.3A vulnerability in the UDP forwarding code of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to...
CVE-2024-20318HIGH7.4A vulnerability in the Layer 2 Ethernet services of Cisco IOS XR Software could allow an unauthenticated, adjacent attac...
CVE-2024-20315MEDIUM5.8A vulnerability in the access control list (ACL) processing on MPLS interfaces in the ingress direction of Cisco IOS XR ...
CVE-2024-20266MEDIUM5.3A vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow an unauthenticated, r...
CVE-2024-20262MEDIUM6.5A vulnerability in the Secure Copy Protocol (SCP) and SFTP feature of Cisco IOS XR Software could allow an authenticated...
CVE-2024-0173LOW3.3Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper parameter initialization vulnerability. A lo...
CVE-2024-0163MEDIUM6.3Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain a TOCTOU race condition vulnerability. A local low privi...
CVE-2024-0162HIGH8.8Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulner...
CVE-2024-0154LOW3.3Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper parameter initialization vulnerability. A lo...
CVE-2024-2293MEDIUM6.4The Site Reviews plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the user display name in all vers...
CVE-2024-2286MEDIUM5.4The Sky Addons for Elementor (Free Templates Library, Live Copy, Animations, Post Grid, Post Carousel, Particles, Slider...
CVE-2024-2252MEDIUM5.4The Droit Elementor Addons – Widgets, Blocks, Templates Library For Elementor Builder plugin for WordPress is vulnerable...
CVE-2024-2239MEDIUM5.4The Premium Addons PRO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Premium Magic Scroll mo...
CVE-2024-2238MEDIUM5.4The Premium Addons PRO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom Mouse Cursor mod...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now