2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-50965MEDIUM5.4Cross Site Scripting vulnerability in Public Knowledge Project PKP Platform OJS/OMP/OPS- before v.3.3.0.16 allows an att...
CVE-2024-38646MEDIUM6An incorrect permission assignment for critical resource vulnerability has been reported to affect Notes Station 3. If e...
CVE-2024-38645MEDIUM6.5A server-side request forgery (SSRF) vulnerability has been reported to affect Notes Station 3. If exploited, the vulner...
CVE-2024-37050MEDIUM6.5A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver...
CVE-2024-37049MEDIUM6.5A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver...
CVE-2024-37048MEDIUM4.9A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploite...
CVE-2024-37047MEDIUM6.5A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver...
CVE-2024-37046MEDIUM4.9A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul...
CVE-2024-37045MEDIUM4.9A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploite...
CVE-2024-37043MEDIUM4.9A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul...
CVE-2024-37042MEDIUM4.9A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploite...
CVE-2024-32770MEDIUM5.4A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co...
CVE-2024-32769MEDIUM5.4A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co...
CVE-2024-32768MEDIUM5.4A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co...
CVE-2024-32767MEDIUM5.4A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co...
CVE-2024-10863MEDIUM5.1: Insufficient Logging vulnerability in OpenText Secure Content Manager on Windows allows Audit Log Manipulation.This is...
CVE-2024-49054MEDIUM4.3Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2024-51766MEDIUM6.5A potential security vulnerability has been identified in the HPE NonStop DISK UTIL (T9208) product. This vulnerability ...
CVE-2024-41781MEDIUM5.9IBM PowerVM Platform KeyStore (IBM PowerVM Hypervisor FW950.00 through FW950.90, FW1030.00 through FW1030.60, FW1050.00 ...
CVE-2024-7882MEDIUM6.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Special Minds Desi...
CVE-2024-8929MEDIUM5.8In PHP versions 8.1.* before 8.1.31, 8.2.* before 8.2.26, 8.3.* before 8.3.14, a hostile MySQL server can cause the clie...
CVE-2024-9422MEDIUM6.6The GEO my WP WordPress plugin before 4.5, gmw-premium-settings WordPress plugin before 3.1 does not sufficiently valida...
CVE-2024-8735MEDIUM6.1The MailMunch – Grow your Email List plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use...
CVE-2024-11381MEDIUM6.4The Control horas plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ch_registro' short...
CVE-2024-11355MEDIUM4.3The Ultimate YouTube Video & Shorts Player With Vimeo plugin for WordPress is vulnerable to unauthorized access of data ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now