2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-52390 | MEDIUM | 4.9 | 0.5% | Nov 18, 2024 | Path Traversal: '.../...//' vulnerability in Greg Ross CYAN Backup cyan-backup allows Path Traversal.This issue affects ... |
| CVE-2024-52389 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpjobportal WP Job... |
| CVE-2024-52349 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Md. Shiddikur Rahm... |
| CVE-2024-52348 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AA Extensions AA A... |
| CVE-2024-52347 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpwebsitecreator W... |
| CVE-2024-52346 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in JavierMendezPWG Si... |
| CVE-2024-52345 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RobertoAlicata ra_... |
| CVE-2024-52344 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Codeies Pvt Ltd Pr... |
| CVE-2024-52343 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Offshorent Solutio... |
| CVE-2024-52342 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Offshorent Solutio... |
| CVE-2024-52341 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Offshorent Solutio... |
| CVE-2024-10486 | MEDIUM | 5.3 | 0.9% | Nov 18, 2024 | The Google for WooCommerce plugin for WordPress is vulnerable to Information Disclosure in all versions up to, and inclu... |
| CVE-2024-52585 | MEDIUM | 5.4 | 0.3% | Nov 18, 2024 | Autolab is a course management service that enables auto-graded programming assignments. There is an HTML injection vuln... |
| CVE-2024-52584 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | Autolab is a course management service that enables auto-graded programming assignments. There is a vulnerability in ver... |
| CVE-2024-52506 | MEDIUM | 6.5 | 0.6% | Nov 18, 2024 | Graylog is a free and open log management platform. The reporting functionality in Graylog allows the creation and sched... |
| CVE-2024-50849 | MEDIUM | 4.8 | 0.5% | Nov 18, 2024 | A Stored Cross-Site Scripting (XSS) vulnerability in the "Rules" functionality of WorldServer v11.8.2 allows a remote au... |
| CVE-2024-50848 | MEDIUM | 6.5 | 1.2% | Nov 18, 2024 | An XML External Entity (XXE) vulnerability in the Import object and Translation Memory import functionalities of WorldSe... |
| CVE-2024-48294 | MEDIUM | 5.5 | 0.2% | Nov 18, 2024 | A NULL pointer dereference in the component libPdfCore.dll of Wondershare PDF Reader v1.0.9.2544 allows attackers to cau... |
| CVE-2024-48293 | MEDIUM | 6.5 | 0.3% | Nov 18, 2024 | Incorrect access control in QuickHeal Antivirus Pro 24.1.0.182 and earlier allows authenticated attackers with low-level... |
| CVE-2024-43416 | MEDIUM | 5.3 | 1.2% | Nov 18, 2024 | GLPI is a free asset and IT management software package. Starting in version 0.80 and prior to version 10.0.17, an unaut... |
| CVE-2024-10390 | MEDIUM | 6.4 | 0.2% | Nov 18, 2024 | The Elfsight Telegram Chat CC plugin for WordPress is vulnerable to unauthorized modification of data to a missing capab... |
| CVE-2024-52426 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Linear Oy Linear l... |
| CVE-2024-52425 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vladislav Urchenko... |
| CVE-2024-52424 | MEDIUM | 6.1 | 0.2% | Nov 18, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in sureshdsk wp-login customizer wp-login-customizer allows Stored XSS.T... |
| CVE-2024-52423 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themifyme Themify ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now