2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-50965 | MEDIUM | 5.4 | 0.3% | Nov 22, 2024 | Cross Site Scripting vulnerability in Public Knowledge Project PKP Platform OJS/OMP/OPS- before v.3.3.0.16 allows an att... |
| CVE-2024-38646 | MEDIUM | 6 | 0.2% | Nov 22, 2024 | An incorrect permission assignment for critical resource vulnerability has been reported to affect Notes Station 3. If e... |
| CVE-2024-38645 | MEDIUM | 6.5 | 0.6% | Nov 22, 2024 | A server-side request forgery (SSRF) vulnerability has been reported to affect Notes Station 3. If exploited, the vulner... |
| CVE-2024-37050 | MEDIUM | 6.5 | 0.8% | Nov 22, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-37049 | MEDIUM | 6.5 | 0.8% | Nov 22, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-37048 | MEDIUM | 4.9 | 0.6% | Nov 22, 2024 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploite... |
| CVE-2024-37047 | MEDIUM | 6.5 | 0.8% | Nov 22, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2024-37046 | MEDIUM | 4.9 | 0.7% | Nov 22, 2024 | A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul... |
| CVE-2024-37045 | MEDIUM | 4.9 | 0.6% | Nov 22, 2024 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploite... |
| CVE-2024-37043 | MEDIUM | 4.9 | 0.7% | Nov 22, 2024 | A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul... |
| CVE-2024-37042 | MEDIUM | 4.9 | 0.6% | Nov 22, 2024 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploite... |
| CVE-2024-32770 | MEDIUM | 5.4 | 0.4% | Nov 22, 2024 | A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co... |
| CVE-2024-32769 | MEDIUM | 5.4 | 0.4% | Nov 22, 2024 | A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co... |
| CVE-2024-32768 | MEDIUM | 5.4 | 0.4% | Nov 22, 2024 | A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co... |
| CVE-2024-32767 | MEDIUM | 5.4 | 0.4% | Nov 22, 2024 | A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co... |
| CVE-2024-10863 | MEDIUM | 5.1 | 0.4% | Nov 22, 2024 | : Insufficient Logging vulnerability in OpenText Secure Content Manager on Windows allows Audit Log Manipulation.This is... |
| CVE-2024-49054 | MEDIUM | 4.3 | 0.6% | Nov 22, 2024 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2024-51766 | MEDIUM | 6.5 | 0.2% | Nov 22, 2024 | A potential security vulnerability has been identified in the HPE NonStop DISK UTIL (T9208) product. This vulnerability ... |
| CVE-2024-41781 | MEDIUM | 5.9 | 0.3% | Nov 22, 2024 | IBM PowerVM Platform KeyStore (IBM PowerVM Hypervisor FW950.00 through FW950.90, FW1030.00 through FW1030.60, FW1050.00 ... |
| CVE-2024-7882 | MEDIUM | 6.5 | 0.3% | Nov 22, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Special Minds Desi... |
| CVE-2024-8929 | MEDIUM | 5.8 | 2.3% | Nov 22, 2024 | In PHP versions 8.1.* before 8.1.31, 8.2.* before 8.2.26, 8.3.* before 8.3.14, a hostile MySQL server can cause the clie... |
| CVE-2024-9422 | MEDIUM | 6.6 | 0.7% | Nov 22, 2024 | The GEO my WP WordPress plugin before 4.5, gmw-premium-settings WordPress plugin before 3.1 does not sufficiently valida... |
| CVE-2024-8735 | MEDIUM | 6.1 | 0.5% | Nov 22, 2024 | The MailMunch – Grow your Email List plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use... |
| CVE-2024-11381 | MEDIUM | 6.4 | 0.7% | Nov 22, 2024 | The Control horas plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ch_registro' short... |
| CVE-2024-11355 | MEDIUM | 4.3 | 0.5% | Nov 22, 2024 | The Ultimate YouTube Video & Shorts Player With Vimeo plugin for WordPress is vulnerable to unauthorized access of data ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now