2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-50544HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MicahBlu RSVP ME r...
CVE-2024-50539HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in lodgix Lodgix.com ...
CVE-2024-50524HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Quý Lê 91 Administ...
CVE-2024-10676HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wojciechborowicz C...
CVE-2024-51784HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VietFriend team Fr...
CVE-2024-51783HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in zaus Forms: 3rd-Pa...
CVE-2024-51782HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sanjay Prasad Logi...
CVE-2024-51625HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in edckwt Quran Short...
CVE-2024-51621HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in reza19 Download-Mi...
CVE-2024-51620HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in porsline Porsline ...
CVE-2024-51619HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in market360 Market 3...
CVE-2024-51607HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in percent20 Golf Tra...
CVE-2024-51602HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in oleksandr87 Simple...
CVE-2024-51601HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Maksym Marko Websi...
CVE-2024-51579HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saleswonder Team: ...
CVE-2024-51570HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in odihost Easy Galle...
CVE-2024-9874HIGH7.2The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to time-based SQL Injecti...
CVE-2024-10674HIGH8.8The Th Shop Mania theme for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a missing capab...
CVE-2024-10673HIGH8.8The Top Store theme for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a missing capabilit...
CVE-2024-10626HIGH8.1The WooCommerce Support Ticket System plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient ...
CVE-2024-10294HIGH7.5The CE21 Suite plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check...
CVE-2024-10285HIGH7.5The CE21 Suite plugin for WordPress is vulnerable to sensitive information disclosure via the plugin-log.txt in versions...
CVE-2024-52007HIGH8.6HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. XSLT parsing pe...
CVE-2024-52004HIGH8.7MediaCMS is an open source video and media CMS, written in Python/Django and React, featuring a REST API. MediaCMS has b...
CVE-2024-52002HIGH8.8Combodo iTop is a simple, web based IT Service Management tool. Several url endpoints are subject to a Cross-Site Reques...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now