2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12443 | MEDIUM | 6.4 | 0.3% | Dec 16, 2024 | The CRM Perks – WordPress HelpDesk Integration – Zendesk, Freshdesk, HelpScout plugin for WordPress is vulnerable to Sto... |
| CVE-2024-55554 | MEDIUM | 5.4 | 0.2% | Dec 16, 2024 | Intrexx Portal Server before 12.0.2 allows XSS via a user-defined portlet. |
| CVE-2024-37776 | MEDIUM | 4.8 | 0.3% | Dec 16, 2024 | A cross-site scripting (XSS) vulnerability in Sunbird DCIM dcTrack v9.1.2 allows attackers to execute arbitrary web scri... |
| CVE-2024-37773 | MEDIUM | 4.8 | 0.2% | Dec 16, 2024 | An HTML injection vulnerability in Sunbird DCIM dcTrack 9.1.2 allows attackers authenticated as administrators to inject... |
| CVE-2024-55100 | MEDIUM | 4.8 | 0.3% | Dec 16, 2024 | A stored cross-site scripting (XSS) vulnerability in the component /admin/profile.php of Online Nurse Hiring System v1.0... |
| CVE-2024-55951 | MEDIUM | 4.8 | 0.4% | Dec 16, 2024 | Metabase is an open-source data analytics platform. For new sandboxing configurations created in 1.52.0 till 1.52.2.4, s... |
| CVE-2024-12667 | MEDIUM | 5.9 | 0.5% | Dec 16, 2024 | A vulnerability was found in InvoicePlane up to 1.6.1 and classified as problematic. Affected by this issue is some unkn... |
| CVE-2024-12665 | MEDIUM | 5.4 | 0.4% | Dec 16, 2024 | A vulnerability, which was classified as problematic, was found in ruifang-tech Rebuild 3.8.5. Affected is an unknown fu... |
| CVE-2024-12664 | MEDIUM | 5.4 | 0.4% | Dec 16, 2024 | A vulnerability, which was classified as problematic, has been found in ruifang-tech Rebuild 3.8.5. This issue affects s... |
| CVE-2024-12663 | MEDIUM | 6.3 | 0.4% | Dec 16, 2024 | A vulnerability classified as problematic was found in funnyzpc Mee-Admin up to 1.6. This vulnerability affects unknown ... |
| CVE-2024-12662 | MEDIUM | 5.5 | 0.3% | Dec 16, 2024 | A vulnerability classified as problematic has been found in IObit Advanced SystemCare Utimate up to 17.0.0. This affects... |
| CVE-2024-12661 | MEDIUM | 6.8 | 0.4% | Dec 16, 2024 | A vulnerability was found in IObit Advanced SystemCare Utimate up to 17.0.0. It has been rated as problematic. Affected ... |
| CVE-2024-12660 | MEDIUM | 5.5 | 0.5% | Dec 16, 2024 | A vulnerability was found in IObit Advanced SystemCare Utimate up to 17.0.0. It has been declared as problematic. Affect... |
| CVE-2024-12659 | MEDIUM | 5.5 | 0.5% | Dec 16, 2024 | A vulnerability was found in IObit Advanced SystemCare Utimate up to 17.0.0. It has been classified as problematic. Affe... |
| CVE-2024-12658 | MEDIUM | 5.5 | 0.5% | Dec 16, 2024 | A vulnerability was found in IObit Advanced SystemCare Utimate up to 17.0.0 and classified as problematic. This issue af... |
| CVE-2024-12657 | MEDIUM | 5.5 | 0.4% | Dec 16, 2024 | A vulnerability has been found in IObit Advanced SystemCare Utimate up to 17.0.0 and classified as problematic. This vul... |
| CVE-2024-12656 | MEDIUM | 5.5 | 0.3% | Dec 16, 2024 | A vulnerability, which was classified as problematic, was found in FabulaTech USB over Network 6.0.6.1. This affects the... |
| CVE-2024-12655 | MEDIUM | 5.5 | 0.5% | Dec 16, 2024 | A vulnerability, which was classified as problematic, has been found in FabulaTech USB over Network 6.0.6.1. Affected by... |
| CVE-2024-11358 | MEDIUM | 5.5 | 0.1% | Dec 16, 2024 | Mattermost Android Mobile Apps versions <=2.21.0 fail to properly configure file providers which allows an attacker with... |
| CVE-2024-56003 | MEDIUM | 4.3 | 0.3% | Dec 16, 2024 | Missing Authorization vulnerability in David Cramer Caldera SMTP Mailer caldera-smtp-mailer.This issue affects Caldera S... |
| CVE-2024-55999 | MEDIUM | 5.3 | 0.4% | Dec 16, 2024 | Missing Authorization vulnerability in Marco Giannini XML Multilanguage Sitemap Generator xml-multilanguage-sitemap-gene... |
| CVE-2024-54357 | MEDIUM | 4.3 | 0.2% | Dec 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in ThemeFusion Avada avada.This issue affects Avada: from n/a through <=... |
| CVE-2024-54348 | MEDIUM | 6.5 | 0.2% | Dec 16, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in yaycommerce Brand ... |
| CVE-2024-12654 | MEDIUM | 5.5 | 0.3% | Dec 16, 2024 | A vulnerability classified as problematic was found in FabulaTech USB over Network 6.0.6.1. Affected by this vulnerabili... |
| CVE-2024-12653 | MEDIUM | 5.5 | 0.4% | Dec 16, 2024 | A vulnerability classified as problematic has been found in FabulaTech USB over Network 6.0.6.1. Affected is the functio... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now