2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-52345 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RobertoAlicata ra_... |
| CVE-2024-52344 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Codeies Pvt Ltd Pr... |
| CVE-2024-52343 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Offshorent Solutio... |
| CVE-2024-52342 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Offshorent Solutio... |
| CVE-2024-52341 | MEDIUM | 6.5 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Offshorent Solutio... |
| CVE-2024-10486 | MEDIUM | 5.3 | 0.9% | Nov 18, 2024 | The Google for WooCommerce plugin for WordPress is vulnerable to Information Disclosure in all versions up to, and inclu... |
| CVE-2024-52585 | MEDIUM | 5.4 | 0.3% | Nov 18, 2024 | Autolab is a course management service that enables auto-graded programming assignments. There is an HTML injection vuln... |
| CVE-2024-52584 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | Autolab is a course management service that enables auto-graded programming assignments. There is a vulnerability in ver... |
| CVE-2024-52506 | MEDIUM | 6.5 | 0.6% | Nov 18, 2024 | Graylog is a free and open log management platform. The reporting functionality in Graylog allows the creation and sched... |
| CVE-2024-50849 | MEDIUM | 4.8 | 0.5% | Nov 18, 2024 | A Stored Cross-Site Scripting (XSS) vulnerability in the "Rules" functionality of WorldServer v11.8.2 allows a remote au... |
| CVE-2024-50848 | MEDIUM | 6.5 | 1.2% | Nov 18, 2024 | An XML External Entity (XXE) vulnerability in the Import object and Translation Memory import functionalities of WorldSe... |
| CVE-2024-48294 | MEDIUM | 5.5 | 0.2% | Nov 18, 2024 | A NULL pointer dereference in the component libPdfCore.dll of Wondershare PDF Reader v1.0.9.2544 allows attackers to cau... |
| CVE-2024-48293 | MEDIUM | 6.5 | 0.3% | Nov 18, 2024 | Incorrect access control in QuickHeal Antivirus Pro 24.1.0.182 and earlier allows authenticated attackers with low-level... |
| CVE-2024-43416 | MEDIUM | 5.3 | 1.2% | Nov 18, 2024 | GLPI is a free asset and IT management software package. Starting in version 0.80 and prior to version 10.0.17, an unaut... |
| CVE-2024-10390 | MEDIUM | 6.4 | 0.2% | Nov 18, 2024 | The Elfsight Telegram Chat CC plugin for WordPress is vulnerable to unauthorized modification of data to a missing capab... |
| CVE-2024-52426 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Linear Oy Linear l... |
| CVE-2024-52425 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vladislav Urchenko... |
| CVE-2024-52424 | MEDIUM | 6.1 | 0.2% | Nov 18, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in sureshdsk wp-login customizer wp-login-customizer allows Stored XSS.T... |
| CVE-2024-52423 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themifyme Themify ... |
| CVE-2024-52422 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Terry L. WP Github... |
| CVE-2024-52419 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Clipboard Agency C... |
| CVE-2024-11304 | MEDIUM | 5.1 | 0.5% | Nov 18, 2024 | Missing input validation in the SEH Computertechnik utnserver Pro, SEH Computertechnik utnserver ProMAX, SEH Computertec... |
| CVE-2024-9526 | MEDIUM | 5.4 | 0.2% | Nov 18, 2024 | There exists a stored XSS Vulnerability in Kubeflow Pipeline View web UI. The Kubeflow Web UI allows to create new pipel... |
| CVE-2024-52318 | MEDIUM | 6.1 | 1.7% | Nov 18, 2024 | Incorrect object recycling and reuse vulnerability in Apache Tomcat. This issue affects Apache Tomcat: 11.0.0, 10.1.31,... |
| CVE-2024-52317 | MEDIUM | 6.5 | 2.0% | Nov 18, 2024 | Incorrect object re-cycling and re-use vulnerability in Apache Tomcat. Incorrect recycling of the request and response u... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now