2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-53702MEDIUM5.3Use of cryptographically weak pseudo-random number generator (PRNG) vulnerability in the SonicWall SMA100 SSLVPN backup ...
CVE-2024-45319MEDIUM6.3A vulnerability in the SonicWall SMA100 SSLVPN firmware 10.2.1.13-72sv and earlier versions allows a remote authentica...
CVE-2024-12227MEDIUM6.8A vulnerability, which was classified as problematic, was found in MSI Dragon Center up to 2.0.146.0. This affects the f...
CVE-2024-6516MEDIUM6.1Cross Site Scripting vulnerabilities where found providing a potential for malicious scripts to be injected into a clien...
CVE-2024-54127MEDIUM4.3This vulnerability exists in the TP-Link Archer C50 due to presence of terminal access on a serial interface without pro...
CVE-2024-48844MEDIUM6.5Denial of Service vulnerabilities where found providing a potiential for device service disruptions.  Affected products:...
CVE-2024-12094MEDIUM5.4This vulnerability exists in the Tinxy mobile app due to storage of logged-in user information in plaintext on the devic...
CVE-2024-45841MEDIUM6.5Incorrect permission assignment for critical resource issue exists in UD-LT1 firmware Ver.2.1.9 and earlier and UD-LT1/E...
CVE-2024-11779MEDIUM6.4The WIP WooCarousel Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wip_woocaro...
CVE-2024-11420MEDIUM5.4The Blocksy theme for WordPress is vulnerable to Stored Cross-Site Scripting via the Contact Info Block link parameter i...
CVE-2024-11341MEDIUM4.3The Simple Redirection plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu...
CVE-2024-11324MEDIUM6.1The Accounting for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of ad...
CVE-2024-10848MEDIUM6.4The NewsMunch theme for WordPress is vulnerable to Stored Cross-Site Scripting via a malicious display name in all versi...
CVE-2024-10777MEDIUM4.3The AnyWhere Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, ...
CVE-2024-10056MEDIUM6.4The Contact Form Builder by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's liv...
CVE-2024-10937MEDIUM5.3The Related Posts, Inline Related Posts, Contextual Related Posts, Related Content By PickPlugins plugin for WordPress i...
CVE-2024-42195MEDIUM6.8HCL DevOps Deploy / HCL Launch is vulnerable to HTML injection. This vulnerability may allow a user to embed arbitrary H...
CVE-2024-10178MEDIUM5.4The Gutentor – Gutenberg Blocks – Page Builder for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-S...
CVE-2024-10881MEDIUM6.4The LUNA RADIO PLAYER plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'lunaradio' shortcode in...
CVE-2024-12183MEDIUM5.4A vulnerability, which was classified as problematic, was found in DedeCMS 5.7.116. This affects the function RemoveXSS ...
CVE-2024-12182MEDIUM5.4A vulnerability, which was classified as problematic, has been found in DedeCMS 5.7.116. Affected by this issue is some ...
CVE-2024-12181MEDIUM5.4A vulnerability classified as problematic was found in DedeCMS 5.7.116. Affected by this vulnerability is an unknown fun...
CVE-2024-12180MEDIUM5.4A vulnerability classified as problematic has been found in DedeCMS 5.7.116. Affected is an unknown function of the file...
CVE-2024-54675MEDIUM6.1app/webroot/js/workflows-editor/workflows-editor.js in MISP through 2.5.2 has stored XSS in the editor interface for an ...
CVE-2024-54674MEDIUM6.1app/View/GalaxyClusters/cluster_export_misp_galaxy.ctp in MISP through 2.5.2 has stored XSS when exporting custom cluste...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now