2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-10015MEDIUM6.4The ConvertCalculator for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'id' and '...
CVE-2024-10861MEDIUM5.3The Popup Box – Create Countdown, Coupon, Video, Contact Form Popups plugin for WordPress is vulnerable to unauthorized ...
CVE-2024-10795MEDIUM4.3The Popularis Extra plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.2...
CVE-2024-10786MEDIUM4.3The Simple Local Avatars plugin for WordPress is vulnerable to unauthorized modification of datadue to a missing capabil...
CVE-2024-51765MEDIUM5.5A security vulnerability has been identified in HPE Cray Data Virtualization Service (DVS). Depending on configuration, ...
CVE-2024-51764MEDIUM5.5A security vulnerability has been identified in HPE Data Management Framework (DMF) Suite (CXFS). Depending on configura...
CVE-2024-50983MEDIUM5.4FlightPath 7.5 contains a Cross Site Scripting (XSS) vulnerability, which allows authenticated remote attackers with adm...
CVE-2024-11261MEDIUM6.1A vulnerability, which was classified as critical, was found in SourceCodester Student Record Management System 1.0. Aff...
CVE-2024-49592MEDIUM6.7Trial installer for McAfee Total Protection (legacy trial installer software) 16.0.53 allows local privilege escalation ...
CVE-2024-45611MEDIUM5.4GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track...
CVE-2024-45610MEDIUM6.1GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track...
CVE-2024-11217MEDIUM4.9A vulnerability was found in the OAuth-server. OAuth-server logs the OAuth2 client secret when the logLevel is Debug hig...
CVE-2024-49536MEDIUM5.5Audition versions 23.6.9, 24.4.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disc...
CVE-2024-45609MEDIUM6.1GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an...
CVE-2024-3334MEDIUM4.3A security bypass vulnerability exists in the Removable Media Encryption (RME)component of Digital Guardian Windows Agen...
CVE-2024-24459MEDIUM5.9An invalid memory access when handling the ProtocolIE_ID field of S1Setup Request messages in Athonet vEPC MME v11.4.0 a...
CVE-2024-24458MEDIUM5.9An invalid memory access when handling the ENB Configuration Transfer messages containing invalid PLMN Identities in Ath...
CVE-2024-24457MEDIUM5.9An invalid memory access when handling the ProtocolIE_ID field of E-RAB Setup List Context SURes messages in Athonet vEP...
CVE-2024-24455MEDIUM5.9An invalid memory access when handling a UE Context Release message containing an invalid UE identifier in Athonet vEPC ...
CVE-2024-24454MEDIUM5.9An invalid memory access when handling the ProtocolIE_ID field of E-RAB Modify Request messages in Athonet vEPC MME v11....
CVE-2024-24453MEDIUM5.9An invalid memory access when handling the ProtocolIE_ID field of E-RAB NotToBeModifiedBearerModInd information element ...
CVE-2024-24452MEDIUM5.9An invalid memory access when handling the ProtocolIE_ID field of E-RAB Release Indication messages in Athonet vEPC MME ...
CVE-2024-11259MEDIUM6.1A vulnerability, which was classified as problematic, has been found in code-projects Farmacia 1.0. This issue affects s...
CVE-2024-51330MEDIUM5.1An issue in UltiMaker Cura v.4.41 and 5.8.1 and before allows a local attacker to execute arbitrary code via Inter-proce...
CVE-2024-51142MEDIUM5.4Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 allows an attacker to execute arbitrary code via the svkey p...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now