2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37046 | MEDIUM | 4.9 | 0.7% | Nov 22, 2024 | A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul... |
| CVE-2024-37045 | MEDIUM | 4.9 | 0.6% | Nov 22, 2024 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploite... |
| CVE-2024-37043 | MEDIUM | 4.9 | 0.7% | Nov 22, 2024 | A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul... |
| CVE-2024-37042 | MEDIUM | 4.9 | 0.6% | Nov 22, 2024 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploite... |
| CVE-2024-32770 | MEDIUM | 5.4 | 0.4% | Nov 22, 2024 | A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co... |
| CVE-2024-32769 | MEDIUM | 5.4 | 0.4% | Nov 22, 2024 | A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co... |
| CVE-2024-32768 | MEDIUM | 5.4 | 0.4% | Nov 22, 2024 | A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co... |
| CVE-2024-32767 | MEDIUM | 5.4 | 0.4% | Nov 22, 2024 | A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability co... |
| CVE-2024-10863 | MEDIUM | 5.1 | 0.4% | Nov 22, 2024 | : Insufficient Logging vulnerability in OpenText Secure Content Manager on Windows allows Audit Log Manipulation.This is... |
| CVE-2024-49054 | MEDIUM | 4.3 | 0.6% | Nov 22, 2024 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2024-51766 | MEDIUM | 6.5 | 0.2% | Nov 22, 2024 | A potential security vulnerability has been identified in the HPE NonStop DISK UTIL (T9208) product. This vulnerability ... |
| CVE-2024-41781 | MEDIUM | 5.9 | 0.3% | Nov 22, 2024 | IBM PowerVM Platform KeyStore (IBM PowerVM Hypervisor FW950.00 through FW950.90, FW1030.00 through FW1030.60, FW1050.00 ... |
| CVE-2024-7882 | MEDIUM | 6.5 | 0.3% | Nov 22, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Special Minds Desi... |
| CVE-2024-8929 | MEDIUM | 5.8 | 2.3% | Nov 22, 2024 | In PHP versions 8.1.* before 8.1.31, 8.2.* before 8.2.26, 8.3.* before 8.3.14, a hostile MySQL server can cause the clie... |
| CVE-2024-9422 | MEDIUM | 6.6 | 0.7% | Nov 22, 2024 | The GEO my WP WordPress plugin before 4.5, gmw-premium-settings WordPress plugin before 3.1 does not sufficiently valida... |
| CVE-2024-8735 | MEDIUM | 6.1 | 0.5% | Nov 22, 2024 | The MailMunch – Grow your Email List plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use... |
| CVE-2024-11381 | MEDIUM | 6.4 | 0.7% | Nov 22, 2024 | The Control horas plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ch_registro' short... |
| CVE-2024-11355 | MEDIUM | 4.3 | 0.5% | Nov 22, 2024 | The Ultimate YouTube Video & Shorts Player With Vimeo plugin for WordPress is vulnerable to unauthorized access of data ... |
| CVE-2024-11225 | MEDIUM | 6.1 | 0.5% | Nov 22, 2024 | The Premium Packages – Sell Digital Products Securely plugin for WordPress is vulnerable to Reflected Cross-Site Scripti... |
| CVE-2024-10666 | MEDIUM | 4.3 | 0.4% | Nov 22, 2024 | The Easy Twitter Feed – Twitter feeds plugin for WP plugin for WordPress is vulnerable to Information Exposure in all ve... |
| CVE-2024-10034 | MEDIUM | 5.5 | 0.4% | Nov 22, 2024 | The Gallery Blocks with Lightbox. Image Gallery, (HTML5 video , YouTube, Vimeo) Video Gallery and Lightbox for native ga... |
| CVE-2024-38296 | MEDIUM | 4.4 | 0.2% | Nov 22, 2024 | Dell Edge Gateway 3200, versions prior to 15.40.30.2879, and Edge Gateway 5200, versions prior to 12.0.94.2380, contain ... |
| CVE-2024-47142 | MEDIUM | 5.5 | 0.3% | Nov 22, 2024 | AIPHONE IXG SYSTEM IXG-2C7 firmware Ver.2.03 and earlier and IXG-2C7-L firmware Ver.2.03 and earlier contain an issue wi... |
| CVE-2024-45837 | MEDIUM | 5.4 | 0.3% | Nov 22, 2024 | Use of hard-coded cryptographic key issue exists in AIPHONE IX SYSTEM, IXG SYSTEM, and System Support Software. A networ... |
| CVE-2024-39290 | MEDIUM | 6.5 | 0.4% | Nov 22, 2024 | Insufficiently protected credentials issue exists in AIPHONE IX SYSTEM and IXG SYSTEM. A network-adjacent unauthenticate... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now