2024 CVE Vulnerabilities

39,220 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-10315MEDIUM6.9In Gliffy Online an insecure configuration was discovered in versions before 4.14.0-6. Reported by Alpha Inferno PVT LTD...
CVE-2024-45087MEDIUM4.8IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows a privileg...
CVE-2024-10917MEDIUM5.3In Eclipse OpenJ9 versions up to 0.47, the JNI function GetStringUTFLength may return an incorrect value which has wrapp...
CVE-2024-45088MEDIUM5.4IBM Maximo Asset Management 7.6.1.3 is vulnerable to stored cross-site scripting. This vulnerability allows authenticate...
CVE-2024-43439MEDIUM6.1A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting...
CVE-2024-51054MEDIUM4.8A Cross Site Scriptng (XSS) vulnerability was found in /omrs/admin/search.php in PHPGurukul Online Marriage Registration...
CVE-2024-50991MEDIUM4.8A Cross Site Scripting (XSS) vulnerability was found in /ums-sp/admin/registered-users.php in PHPGurukul User Management...
CVE-2024-50990MEDIUM6.1A Reflected Cross Site Scriptng (XSS) vulnerability was found in /omrs/user/search.php in PHPGurukul Online Marriage Reg...
CVE-2024-11070MEDIUM5.4A vulnerability, which was classified as problematic, has been found in Sanluan PublicCMS 5.202406.d. This issue affects...
CVE-2024-50263MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fork: only invoke khugepaged, ksm hooks if no error...
CVE-2024-34014MEDIUM5.5Arbitrary file overwrite during recovery due to improper symbolic link handling. The following products are affected: Ac...
CVE-2024-43437MEDIUM6.1A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scrip...
CVE-2024-43435MEDIUM5.3A flaw was found in moodle. Insufficient capability checks make it possible for users with access to restore glossaries ...
CVE-2024-43433MEDIUM5.3A flaw was found in moodle. Matrix room membership and power levels are incorrectly applied and revoked for suspended Mo...
CVE-2024-43432MEDIUM5.3A flaw was found in moodle. The cURL wrapper in Moodle strips HTTPAUTH and USERPWD headers during emulated redirects, bu...
CVE-2024-43430MEDIUM5.3A flaw was found in moodle. External API access to Quiz can override contained insufficient access control.
CVE-2024-43429MEDIUM5.3A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in user...
CVE-2024-11021MEDIUM5.4Webopac from Grand Vice info has Stored Cross-site Scripting vulnerability. Remote attackers with regular privileges can...
CVE-2024-52355MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MiKa OSM osm.This ...
CVE-2024-52354MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Cool Plugins Web S...
CVE-2024-52353MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Gabriel Serafini C...
CVE-2024-52352MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in miloandrew Postcas...
CVE-2024-52351MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BU Web Team BU Sli...
CVE-2024-52350MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nrmendez CRM 2go c...
CVE-2024-11019MEDIUM6.1Webopac from Grand Vice info has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attacke...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now