2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-22223HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_cbr utility. An authen...
CVE-2024-22222HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_udoctor utility. An au...
CVE-2024-22221MEDIUM6.5 Dell Unity, versions prior to 5.4, contains SQL Injection vulnerability. An authenticated attacker could potentially ex...
CVE-2024-0170HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cava utility. An authentic...
CVE-2024-0169MEDIUM5.4Dell Unity, version(s) 5.3 and prior, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-...
CVE-2024-0168HIGH7.8 Dell Unity, versions prior to 5.4, contains a Command Injection Vulnerability in svc_oscheck utility. An authenticated ...
CVE-2024-0167HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in the svc_topstats utility. An authe...
CVE-2024-0166HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_tcpdump utility. An authen...
CVE-2024-0165HIGH7.8 Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_acldb_dump utility. An aut...
CVE-2024-0164HIGH7.8 Dell Unity, versions prior to 5.4, contain an OS Command Injection Vulnerability in its svc_topstats utility. An authen...
CVE-2024-25360MEDIUM5.3A hidden interface in Motorola CX2L Router firmware v1.0.1 leaks information regarding the SystemWizardStatus component ...
CVE-2024-0566HIGH7.2The Smart Manager WordPress plugin before 8.28.0 does not properly sanitise and escape a parameter before using it in a ...
CVE-2024-0421MEDIUM5.3The MapPress Maps for WordPress plugin before 2.88.16 is affected by an IDOR as it does not ensure that posts to be retr...
CVE-2024-0420MEDIUM5.4The MapPress Maps for WordPress plugin before 2.88.15 does not sanitize and escape the map title when outputting it back...
CVE-2024-0250MEDIUM6.1The Analytics Insights for Google Analytics 4 (AIWP) WordPress plugin before 6.3 is vulnerable to Open Redirect due to i...
CVE-2024-0248MEDIUM4.3The EazyDocs WordPress plugin before 2.4.0 re-introduced CVE-2023-6029 (https://wpscan.com/vulnerability/7a0aaf85-8130-4...
CVE-2024-1420Rejected reason: **REJECT** This is a duplicate of CVE-2024-1049. Please use CVE-2024-1049 instead.
CVE-2024-1062MEDIUM5.5A heap overflow flaw was found in 389-ds-base. This issue leads to a denial of service when writing a value larger than ...
CVE-2024-1439LOW3.3Inadequate access control in Moodle LMS. This vulnerability could allow a local user with a student role to create arbit...
CVE-2024-24935HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WpSimpleTools Basic Log Viewer.This issue affects Basic Log Viewer: f...
CVE-2024-24929HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Ryan Duff, Peter Westwood WP Contact Form.This issue affects WP Conta...
CVE-2024-24887HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Contest Gallery Photos and Files Contest Gallery – Contact Form, Uplo...
CVE-2024-24884HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in ARI Soft Contact Form 7 Connector.This issue affects Contact Form 7 C...
CVE-2024-24875HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Yannick Lefebvre Link Library.This issue affects Link Library: from n...
CVE-2024-23512CRITICAL9.8Deserialization of Untrusted Data vulnerability in wpxpo ProductX – WooCommerce Builder & Gutenberg WooCommerce Blocks.T...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now