2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-50585 | MEDIUM | 4.7 | 0.5% | Dec 11, 2024 | Users who click on a malicious link or visit a website under the control of an attacker can be infected with arbitrary J... |
| CVE-2024-51460 | MEDIUM | 4.3 | 0.3% | Dec 11, 2024 | IBM InfoSphere Information Server 11.7 could allow an authenticated user to obtain sensitive information when a detailed... |
| CVE-2024-11351 | MEDIUM | 5.3 | 0.4% | Dec 11, 2024 | The Restrict – membership, site, content and user access restrictions for WordPress plugin for WordPress is vulnerable t... |
| CVE-2024-12325 | MEDIUM | 6.1 | 0.3% | Dec 11, 2024 | The Waymark plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘content’ parameter in all vers... |
| CVE-2024-12294 | MEDIUM | 5.3 | 0.4% | Dec 11, 2024 | The Last Viewed Posts by WPBeginner plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions... |
| CVE-2024-11008 | MEDIUM | 5.3 | 0.4% | Dec 11, 2024 | The Members – Membership & User Role Editor Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure ... |
| CVE-2024-54269 | MEDIUM | 4.3 | 0.3% | Dec 11, 2024 | Missing Authorization vulnerability in Ninja Team Notibar notibar allows Exploiting Incorrectly Configured Access Contro... |
| CVE-2024-11401 | MEDIUM | 5.3 | 0.3% | Dec 11, 2024 | Rapid7 Insight Platform versions prior to November 13th 2024, suffer from a privilege escalation vulnerability whereby, ... |
| CVE-2024-12283 | MEDIUM | 6.1 | 0.4% | Dec 11, 2024 | The WP Pipes plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘x1’ parameter in all versions... |
| CVE-2024-12004 | MEDIUM | 6.1 | 0.2% | Dec 11, 2024 | The WPC Order Notes for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up ... |
| CVE-2024-10511 | MEDIUM | 6.3 | 1.0% | Dec 11, 2024 | CWE-287: Improper Authentication vulnerability exists that could cause Denial of access to the web interface when someon... |
| CVE-2024-53292 | MEDIUM | 6.7 | 0.1% | Dec 11, 2024 | Dell VxVerify, versions prior to x.40.405, contain a Plain-text Password Storage Vulnerability in the shell wrapper. A l... |
| CVE-2024-52537 | MEDIUM | 6.7 | 0.2% | Dec 11, 2024 | Dell Client Platform Firmware Update Utility contains an Improper Link Resolution vulnerability. A high privileged attac... |
| CVE-2024-35117 | MEDIUM | 4.4 | 0.2% | Dec 11, 2024 | IBM OpenPages with Watson 9.0 may write sensitive information, under specific configurations, in clear text to the syste... |
| CVE-2024-55653 | MEDIUM | 6.5 | 0.6% | Dec 10, 2024 | PwnDoc is a penetration test report generator. In versions up to and including 0.5.3, an authenticated user is able to c... |
| CVE-2024-53960 | MEDIUM | 5.4 | 0.4% | Dec 10, 2024 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-53006 | MEDIUM | 5.5 | 0.4% | Dec 10, 2024 | Substance3D - Modeler versions 1.14.1 and earlier are affected by a NULL Pointer Dereference vulnerability that could re... |
| CVE-2024-53005 | MEDIUM | 5.5 | 0.4% | Dec 10, 2024 | Substance3D - Modeler versions 1.14.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to... |
| CVE-2024-53004 | MEDIUM | 5.5 | 0.4% | Dec 10, 2024 | Substance3D - Modeler versions 1.14.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to... |
| CVE-2024-52993 | MEDIUM | 5.4 | 0.4% | Dec 10, 2024 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-52992 | MEDIUM | 5.4 | 0.4% | Dec 10, 2024 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-52991 | MEDIUM | 5.4 | 0.4% | Dec 10, 2024 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-52865 | MEDIUM | 5.4 | 0.4% | Dec 10, 2024 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-52864 | MEDIUM | 5.4 | 0.4% | Dec 10, 2024 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-52862 | MEDIUM | 5.4 | 0.4% | Dec 10, 2024 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now