2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-25715 | MEDIUM | 6.1 | 0.4% | Feb 11, 2024 | Glewlwyd SSO server 2.x through 2.7.6 allows open redirection via redirect_uri. |
| CVE-2024-25714 | CRITICAL | 9.8 | 0.8% | Feb 11, 2024 | In Rhonabwy through 1.1.13, HMAC signature verification uses a strcmp function that is vulnerable to side-channel attack... |
| CVE-2024-1432 | MEDIUM | 5 | 0.6% | Feb 11, 2024 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in DeepFaceLab pretrained DF.wf.288res.384.92.72.22 and classi... |
| CVE-2024-1431 | MEDIUM | 6.5 | 0.5% | Feb 11, 2024 | A vulnerability was found in Netgear R7000 1.0.11.136_10.2.120 and classified as problematic. Affected by this issue is ... |
| CVE-2024-23724 | CRITICAL | 9 | 3.5% | Feb 11, 2024 | Ghost through 5.76.0 allows stored XSS, and resultant privilege escalation in which a contributor can take over any acco... |
| CVE-2024-1430 | MEDIUM | 6.5 | 0.6% | Feb 11, 2024 | A vulnerability has been found in Netgear R7000 1.0.11.136_10.2.120 and classified as problematic. Affected by this vuln... |
| CVE-2024-22313 | HIGH | 7.8 | 0.1% | Feb 10, 2024 | IBM Storage Defender - Resiliency Service 2.0 contains hard-coded credentials, such as a password or cryptographic key, ... |
| CVE-2024-22312 | MEDIUM | 5.5 | 0.2% | Feb 10, 2024 | IBM Storage Defender - Resiliency Service 2.0 stores user credentials in plain clear text which can be read by a local u... |
| CVE-2024-22361 | HIGH | 7.5 | 0.3% | Feb 10, 2024 | IBM Semeru Runtime 8.0.302.0 through 8.0.392.0, 11.0.12.0 through 11.0.21.0, 17.0.1.0 - 17.0.9.0, and 21.0.1.0 uses weak... |
| CVE-2024-23517 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Start Booking Sche... |
| CVE-2024-23516 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Calculators World ... |
| CVE-2024-23514 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ClickToTweet.Com C... |
| CVE-2024-24831 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Leap13 Premium Add... |
| CVE-2024-24804 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in websoudan MW WP Fo... |
| CVE-2024-24803 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPoperation Ultra ... |
| CVE-2024-24801 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LogicHunt OWL Caro... |
| CVE-2024-24717 | MEDIUM | 4.8 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mark Kinchin Beds2... |
| CVE-2024-24713 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Auto Listings A... |
| CVE-2024-24712 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Team Heateor Heate... |
| CVE-2024-1406 | MEDIUM | 4.3 | 0.5% | Feb 10, 2024 | A vulnerability was found in Linksys WRT54GL 4.30.18. It has been declared as problematic. This vulnerability affects un... |
| CVE-2024-0596 | MEDIUM | 5.3 | 0.4% | Feb 10, 2024 | The Awesome Support – WordPress HelpDesk & Support Plugin plugin for WordPress is vulnerable to unauthorized access of d... |
| CVE-2024-0595 | MEDIUM | 4.3 | 0.4% | Feb 10, 2024 | The Awesome Support – WordPress HelpDesk & Support Plugin plugin for WordPress is vulnerable to unauthorized access due ... |
| CVE-2024-0594 | HIGH | 8.8 | 0.6% | Feb 10, 2024 | The Awesome Support – WordPress HelpDesk & Support Plugin plugin for WordPress is vulnerable to union-based SQL Injectio... |
| CVE-2024-1405 | MEDIUM | 4.3 | 0.4% | Feb 10, 2024 | A vulnerability was found in Linksys WRT54GL 4.30.18. It has been classified as problematic. This affects an unknown par... |
| CVE-2024-21490 | HIGH | 7.5 | 1.8% | Feb 10, 2024 | This affects versions of the package angular from 1.3.0; versions of the package angularjs from 1.3.0. A regular express... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now