2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-10852MEDIUM4.3The Buy one click WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabil...
CVE-2024-10851MEDIUM6.1The Razorpay Payment Button Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use o...
CVE-2024-10850MEDIUM6.1The Razorpay Payment Button Elementor Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to...
CVE-2024-10778MEDIUM4.3The BuddyPress Builder for Elementor – BuddyBuilder plugin for WordPress is vulnerable to Information Exposure in all ve...
CVE-2024-10717MEDIUM6.5The Styler for Ninja Forms plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a de...
CVE-2024-10577MEDIUM6.1The 胖鼠采集(Fat Rat Collect) 微信知乎简书腾讯新闻列表分页采集, 还有自动采集、自动发布、自动标签、等多项功能。开源插件 plugin for WordPress is vulnerable to Reflected ...
CVE-2024-10038MEDIUM6.1The WP-Strava plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to...
CVE-2024-28731MEDIUM4.3Cross Site Request Forgery vulnerability in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.3...
CVE-2024-28730MEDIUM5.4Cross Site Scripting vulnerability in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.34ME al...
CVE-2024-28728MEDIUM6.6Cross Site Scripting vulnerability in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.34ME al...
CVE-2024-48075MEDIUM5.3A Heap buffer overflow in the server-site handshake implementation in Real Time Logic SharkSSL from 09/09/24 and earlier...
CVE-2024-11168MEDIUM6.3The urllib.parse.urlsplit() and urlparse() functions improperly validated bracketed hosts (`[]`), allowing hosts that we...
CVE-2024-49512MEDIUM5.5InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could le...
CVE-2024-49511MEDIUM5.5InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could le...
CVE-2024-49510MEDIUM5.5InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could le...
CVE-2024-11117MEDIUM4.3Inappropriate implementation in FileSystem in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass f...
CVE-2024-11116MEDIUM4.3Inappropriate implementation in Blink in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced a ...
CVE-2024-11111MEDIUM4.3Inappropriate implementation in Autofill in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced...
CVE-2024-11110MEDIUM6.5Inappropriate implementation in Extensions in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass s...
CVE-2024-47440MEDIUM5.5Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to...
CVE-2024-47439MEDIUM5.5Substance3D - Painter versions 10.1.0 and earlier are affected by a NULL Pointer Dereference vulnerability that could re...
CVE-2024-47438MEDIUM5.5Substance3D - Painter versions 10.1.0 and earlier are affected by a Write-what-where Condition vulnerability that could ...
CVE-2024-47437MEDIUM5.5Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to...
CVE-2024-47436MEDIUM5.5Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to...
CVE-2024-47435MEDIUM5.5Substance3D - Painter versions 10.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now