2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-10015 | MEDIUM | 6.4 | 0.8% | Nov 16, 2024 | The ConvertCalculator for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'id' and '... |
| CVE-2024-10861 | MEDIUM | 5.3 | 0.4% | Nov 16, 2024 | The Popup Box – Create Countdown, Coupon, Video, Contact Form Popups plugin for WordPress is vulnerable to unauthorized ... |
| CVE-2024-10795 | MEDIUM | 4.3 | 0.3% | Nov 16, 2024 | The Popularis Extra plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.2... |
| CVE-2024-10786 | MEDIUM | 4.3 | 0.3% | Nov 16, 2024 | The Simple Local Avatars plugin for WordPress is vulnerable to unauthorized modification of datadue to a missing capabil... |
| CVE-2024-51765 | MEDIUM | 5.5 | 0.1% | Nov 15, 2024 | A security vulnerability has been identified in HPE Cray Data Virtualization Service (DVS). Depending on configuration, ... |
| CVE-2024-51764 | MEDIUM | 5.5 | 0.1% | Nov 15, 2024 | A security vulnerability has been identified in HPE Data Management Framework (DMF) Suite (CXFS). Depending on configura... |
| CVE-2024-50983 | MEDIUM | 5.4 | 0.3% | Nov 15, 2024 | FlightPath 7.5 contains a Cross Site Scripting (XSS) vulnerability, which allows authenticated remote attackers with adm... |
| CVE-2024-11261 | MEDIUM | 6.1 | 0.3% | Nov 15, 2024 | A vulnerability, which was classified as critical, was found in SourceCodester Student Record Management System 1.0. Aff... |
| CVE-2024-49592 | MEDIUM | 6.7 | 0.2% | Nov 15, 2024 | Trial installer for McAfee Total Protection (legacy trial installer software) 16.0.53 allows local privilege escalation ... |
| CVE-2024-45611 | MEDIUM | 5.4 | 0.3% | Nov 15, 2024 | GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track... |
| CVE-2024-45610 | MEDIUM | 6.1 | 0.3% | Nov 15, 2024 | GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track... |
| CVE-2024-11217 | MEDIUM | 4.9 | 0.4% | Nov 15, 2024 | A vulnerability was found in the OAuth-server. OAuth-server logs the OAuth2 client secret when the logLevel is Debug hig... |
| CVE-2024-49536 | MEDIUM | 5.5 | 0.2% | Nov 15, 2024 | Audition versions 23.6.9, 24.4.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disc... |
| CVE-2024-45609 | MEDIUM | 6.1 | 0.3% | Nov 15, 2024 | GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an... |
| CVE-2024-3334 | MEDIUM | 4.3 | 0.1% | Nov 15, 2024 | A security bypass vulnerability exists in the Removable Media Encryption (RME)component of Digital Guardian Windows Agen... |
| CVE-2024-24459 | MEDIUM | 5.9 | 0.3% | Nov 15, 2024 | An invalid memory access when handling the ProtocolIE_ID field of S1Setup Request messages in Athonet vEPC MME v11.4.0 a... |
| CVE-2024-24458 | MEDIUM | 5.9 | 0.3% | Nov 15, 2024 | An invalid memory access when handling the ENB Configuration Transfer messages containing invalid PLMN Identities in Ath... |
| CVE-2024-24457 | MEDIUM | 5.9 | 0.3% | Nov 15, 2024 | An invalid memory access when handling the ProtocolIE_ID field of E-RAB Setup List Context SURes messages in Athonet vEP... |
| CVE-2024-24455 | MEDIUM | 5.9 | 0.3% | Nov 15, 2024 | An invalid memory access when handling a UE Context Release message containing an invalid UE identifier in Athonet vEPC ... |
| CVE-2024-24454 | MEDIUM | 5.9 | 0.3% | Nov 15, 2024 | An invalid memory access when handling the ProtocolIE_ID field of E-RAB Modify Request messages in Athonet vEPC MME v11.... |
| CVE-2024-24453 | MEDIUM | 5.9 | 0.3% | Nov 15, 2024 | An invalid memory access when handling the ProtocolIE_ID field of E-RAB NotToBeModifiedBearerModInd information element ... |
| CVE-2024-24452 | MEDIUM | 5.9 | 0.4% | Nov 15, 2024 | An invalid memory access when handling the ProtocolIE_ID field of E-RAB Release Indication messages in Athonet vEPC MME ... |
| CVE-2024-11259 | MEDIUM | 6.1 | 0.4% | Nov 15, 2024 | A vulnerability, which was classified as problematic, has been found in code-projects Farmacia 1.0. This issue affects s... |
| CVE-2024-51330 | MEDIUM | 5.1 | 0.2% | Nov 15, 2024 | An issue in UltiMaker Cura v.4.41 and 5.8.1 and before allows a local attacker to execute arbitrary code via Inter-proce... |
| CVE-2024-51142 | MEDIUM | 5.4 | 0.3% | Nov 15, 2024 | Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 allows an attacker to execute arbitrary code via the svkey p... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now