2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-53757 | MEDIUM | 6.5 | 0.3% | Nov 30, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SocialEvolution WP... |
| CVE-2024-53756 | MEDIUM | 6.5 | 0.3% | Nov 30, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Aftab Husain Verti... |
| CVE-2024-53788 | MEDIUM | 5.9 | 0.3% | Nov 30, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in portfoliohub WordP... |
| CVE-2024-53787 | MEDIUM | 6.5 | 0.3% | Nov 30, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in M A Vinoth Kumar R... |
| CVE-2024-53768 | MEDIUM | 5.3 | 0.4% | Nov 30, 2024 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in ideinteractive Content Audit... |
| CVE-2024-53738 | MEDIUM | 4.4 | 0.3% | Nov 30, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Gabe Livan Asset CleanUp: Page Speed Booster wp-asset-clean-up allow... |
| CVE-2024-12002 | MEDIUM | 6.5 | 0.8% | Nov 30, 2024 | A vulnerability classified as problematic was found in Tenda FH451, FH1201, FH1202 and FH1206 up to 20241129. Affected b... |
| CVE-2024-12001 | MEDIUM | 5.4 | 0.4% | Nov 30, 2024 | A vulnerability classified as problematic has been found in code-projects Wazifa System 1.0. Affected is an unknown func... |
| CVE-2024-12000 | MEDIUM | 5.4 | 0.4% | Nov 30, 2024 | A vulnerability was found in code-projects Blood Bank System 1.0. It has been rated as problematic. This issue affects s... |
| CVE-2024-11997 | MEDIUM | 5.4 | 0.4% | Nov 30, 2024 | A vulnerability was found in code-projects Farmacia 1.0. It has been classified as problematic. This affects an unknown ... |
| CVE-2024-11996 | MEDIUM | 5.4 | 0.4% | Nov 30, 2024 | A vulnerability was found in code-projects Farmacia 1.0 and classified as problematic. Affected by this issue is some un... |
| CVE-2024-11252 | MEDIUM | 6.1 | 0.9% | Nov 30, 2024 | The Social Sharing Plugin – Sassy Social Share plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via ... |
| CVE-2024-54159 | MEDIUM | 4.1 | 0.2% | Nov 29, 2024 | stalld through 1.19.7 allows local users to cause a denial of service (file overwrite) via a /tmp/rtthrottle symlink att... |
| CVE-2024-11995 | MEDIUM | 6.1 | 0.4% | Nov 29, 2024 | A vulnerability has been found in code-projects Farmacia 1.0 and classified as problematic. Affected by this vulnerabili... |
| CVE-2024-53983 | MEDIUM | 5.4 | 0.4% | Nov 29, 2024 | The Backstage Scaffolder plugin Houses types and utilities for building scaffolder-related modules. A vulnerability is i... |
| CVE-2024-53864 | MEDIUM | 5.3 | 0.5% | Nov 29, 2024 | Ibexa Admin UI Bundle is all the necessary parts to run the Ibexa DXP Back Office interface. The Content name pattern is... |
| CVE-2024-52810 | MEDIUM | 6.9 | 0.7% | Nov 29, 2024 | @intlify/shared is a shared library for the intlify project. The latest version of @intlify/shared (10.0.4) is vulnerabl... |
| CVE-2024-52809 | MEDIUM | 5.3 | 0.6% | Nov 29, 2024 | vue-i18n is an internationalization plugin for Vue.js. In affected versions vue-i18n can be passed locale messages to `... |
| CVE-2024-52801 | MEDIUM | 5.3 | 0.4% | Nov 29, 2024 | sftpgo is a full-featured and highly configurable event-driven file transfer solution. Server protocols: SFTP, HTTP/S, F... |
| CVE-2024-52003 | MEDIUM | 6.1 | 0.4% | Nov 29, 2024 | Traefik (pronounced traffic) is an HTTP reverse proxy and load balancer. There is a vulnerability in Traefik that allows... |
| CVE-2024-36616 | MEDIUM | 6.5 | 0.6% | Nov 29, 2024 | An integer overflow in the component /libavformat/westwood_vqa.c of FFmpeg n6.1.1 allows attackers to cause a denial of ... |
| CVE-2024-36615 | MEDIUM | 5.9 | 0.4% | Nov 29, 2024 | FFmpeg n7.0 has a race condition vulnerability in the VP9 decoder. This could lead to a data race if video encoding para... |
| CVE-2024-36624 | MEDIUM | 5.4 | 0.4% | Nov 29, 2024 | Zulip 8.3 is vulnerable to Cross Site Scripting (XSS) via the construct_copy_div function in copy_and_paste.js. |
| CVE-2024-36621 | MEDIUM | 6.5 | 0.6% | Nov 29, 2024 | moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could... |
| CVE-2024-36620 | MEDIUM | 6.5 | 0.8% | Nov 29, 2024 | moby v25.0.0 - v26.0.2 is vulnerable to NULL Pointer Dereference via daemon/images/image_history.go. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now