2024 CVE Vulnerabilities

No CVEs published in 2024.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2024-41984LOW2.1A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >= V13.2 < V2506), SOA Au...
CVE-2024-41980LOW2A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >= V13.2 < V2506), SOA Au...
CVE-2024-8244LOW3.7The filepath.Walk and filepath.WalkDir functions are documented as not following symbolic links, but both functions are ...
CVE-2024-13978LOW2A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as problematic. Affected by this vulnerability is...
CVE-2024-42209LOW3.5HCL Connections is vulnerable to an information disclosure vulnerability that could allow a user to obtain sensitive inf...
CVE-2024-47065LOW2.7Meshtastic is an open source mesh networking solution. Prior to 2.5.1, traceroute responses from the remote node are not...
CVE-2024-36349LOW3.8A transient execution vulnerability in some AMD processors may allow a user process to infer TSC_AUX even when such a re...
CVE-2024-36348LOW3.8A transient execution vulnerability in some AMD processors may allow a user process to infer the control registers specu...
CVE-2024-58117LOW3.3Stack overflow risk when vector images are parsed during file preview Impact: Successful exploitation of this vulnerabil...
CVE-2024-38823LOW2.7Salt's request server is vulnerable to replay attacks when not using a TLS encrypted transport.
CVE-2024-38822LOW2.7Multiple methods in the salt master skip minion token validation. Therefore a misbehaving minion can impersonate another...
CVE-2024-50406LOW2A cross-site scripting (XSS) vulnerability has been reported to affect License Center. If exploited, the vulnerability c...
CVE-2024-13087LOW2.4A command injection vulnerability has been reported to affect QHora. If an attacker gains local network access who have ...
CVE-2024-7762LOW3.7The Simple Job Board WordPress plugin before 2.12.6 does not prevent uploaded files from being listed, allowing unauthen...
CVE-2024-6711LOW3.5The Event Tickets with Ticket Scanner WordPress plugin before 2.3.8 does not sanitise and escape some parameters, which ...
CVE-2024-4091LOW3.5The Responsive Gallery Grid WordPress plugin before 2.3.15 does not sanitise and escape some of its settings, which coul...
CVE-2024-4004LOW3.5The Advanced Cron Manager WordPress plugin before 2.5.7 does not sanitise and escape some of its settings, which could ...
CVE-2024-4002LOW3.5The Carousel, Slider, Gallery by WP Carousel WordPress plugin before 2.6.9 does not sanitise and escape some of its set...
CVE-2024-3996LOW3.5The Smart Post Show WordPress plugin before 2.4.28 does not sanitise and escape some of its settings, which could allow...
CVE-2024-12767LOW3.5The buddyboss-platform WordPress plugin before 2.7.60 lacks proper access controls and allows a logged-in user to view c...
CVE-2024-11140LOW3.5The Real WP Shop Lite Ajax eCommerce Shopping Cart WordPress plugin through 2.0.8 does not sanitise and escape some of i...
CVE-2024-10098LOW2.7The ApplyOnline WordPress plugin before 2.6.3 does not protect uploaded files during the application process, allowing ...
CVE-2024-12533LOW3.3Improper Check for Unusual or Exceptional Conditions vulnerability in Phoenix SecureCore Technology 4 allows Input Data ...
CVE-2024-55651LOW2i-Educar is free, fully online school management software. Version 2.9 of the application fails to properly validate and...
CVE-2024-51991LOW1.1October is a Content Management System (CMS) and web platform. A vulnerability in versions prior to 3.7.5 affects authen...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now