2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-10522MEDIUM6.1The Co-marquage service-public.fr plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of...
CVE-2024-10482MEDIUM5.4The Media File Rename, Find Unused File, Add Alt text, Caption, Desc For Image SEO WordPress plugin before 1.5.0 does n...
CVE-2024-10393MEDIUM5.3The Tutor LMS plugin for WordPress is vulnerable to bypass to user registration in versions up to, and including, 2.7.6....
CVE-2024-10316MEDIUM4.3The Stratum – Elementor Widgets plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up ...
CVE-2024-10177MEDIUM6.4The Beds24 Online Booking plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's beds24-link...
CVE-2024-10172MEDIUM5.4The WPBakery Visual Composer WHMCS Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl...
CVE-2024-10164MEDIUM6.4The Premium Packages – Sell Digital Products Securely plugin for WordPress is vulnerable to Stored Cross-Site Scripting ...
CVE-2024-52755MEDIUM4.9D-LINK DI-8003 v16.07.26A1 was discovered to contain a buffer overflow via the host_ip parameter in the ipsec_road_asp f...
CVE-2024-52702MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in the component install\index.php of MyBB v1.8.38 allows attackers to...
CVE-2024-52701MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in the Configuration page of Piwigo v14.5.0 allows attackers to execut...
CVE-2024-48535MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in eSoft Planner 3.24.08271-USA allows attackers to execute arbitrary ...
CVE-2024-48534MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability on the Camp Details module of eSoft Planner 3.24.08271-USA allows a...
CVE-2024-48533MEDIUM5.3A discrepancy between responses for valid and invalid e-mail accounts in the Forgot your Login? module of eSoft Planner ...
CVE-2024-48531MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability on the Rental Availability module of eSoft Planner 3.24.08271-USA a...
CVE-2024-52757MEDIUM4.9D-LINK DI-8003 v16.07.16A1 was discovered to contain a buffer overflow via the notify parameter in the arp_sys_asp funct...
CVE-2024-52754MEDIUM4.9D-LINK DI-8003 v16.07.16A1 was discovered to contain a buffer overflow via the fn parameter in the tgfile_htm function.
CVE-2024-45510MEDIUM5.4An issue was discovered in Zimbra Collaboration (ZCS) through 10.0. Zimbra Webmail (Modern UI) is vulnerable to a stored...
CVE-2024-45511MEDIUM5.4An issue was discovered in Zimbra Collaboration (ZCS) through 10.1. A reflected Cross-Site Scripting (XSS) issue exists ...
CVE-2024-11493MEDIUM6.1A vulnerability classified as problematic was found in 115cms up to 20240807. This vulnerability affects unknown code of...
CVE-2024-11492MEDIUM6.1A vulnerability classified as problematic has been found in 115cms up to 20240807. This affects an unknown part of the f...
CVE-2024-52796MEDIUM5.3Password Pusher, an open source application to communicate sensitive information over the web, comes with a configurable...
CVE-2024-52725MEDIUM4.9SemCms v4.8 was discovered to contain a SQL injection vulnerability. This allows an attacker to execute arbitrary code v...
CVE-2024-11491MEDIUM5.4A vulnerability was found in 115cms up to 20240807. It has been rated as problematic. Affected by this issue is some unk...
CVE-2024-11490MEDIUM6.1A vulnerability was found in 115cms up to 20240807. It has been declared as problematic. Affected by this vulnerability ...
CVE-2024-11489MEDIUM6.1A vulnerability was found in 115cms up to 20240807. It has been classified as problematic. Affected is an unknown functi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now