2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-50991MEDIUM4.8A Cross Site Scripting (XSS) vulnerability was found in /ums-sp/admin/registered-users.php in PHPGurukul User Management...
CVE-2024-50990MEDIUM6.1A Reflected Cross Site Scriptng (XSS) vulnerability was found in /omrs/user/search.php in PHPGurukul Online Marriage Reg...
CVE-2024-11070MEDIUM5.4A vulnerability, which was classified as problematic, has been found in Sanluan PublicCMS 5.202406.d. This issue affects...
CVE-2024-50263MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fork: only invoke khugepaged, ksm hooks if no error...
CVE-2024-34014MEDIUM5.5Arbitrary file overwrite during recovery due to improper symbolic link handling. The following products are affected: Ac...
CVE-2024-43437MEDIUM6.1A flaw was found in moodle. Insufficient sanitizing of data when performing a restore could result in a cross-site scrip...
CVE-2024-43435MEDIUM5.3A flaw was found in moodle. Insufficient capability checks make it possible for users with access to restore glossaries ...
CVE-2024-43433MEDIUM5.3A flaw was found in moodle. Matrix room membership and power levels are incorrectly applied and revoked for suspended Mo...
CVE-2024-43432MEDIUM5.3A flaw was found in moodle. The cURL wrapper in Moodle strips HTTPAUTH and USERPWD headers during emulated redirects, bu...
CVE-2024-43430MEDIUM5.3A flaw was found in moodle. External API access to Quiz can override contained insufficient access control.
CVE-2024-43429MEDIUM5.3A flaw was found in moodle. Some hidden user profile fields are visible in gradebook reports, which could result in user...
CVE-2024-11021MEDIUM5.4Webopac from Grand Vice info has Stored Cross-site Scripting vulnerability. Remote attackers with regular privileges can...
CVE-2024-52355MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MiKa OSM osm.This ...
CVE-2024-52354MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Cool Plugins Web S...
CVE-2024-52353MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Gabriel Serafini C...
CVE-2024-52352MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in miloandrew Postcas...
CVE-2024-52351MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BU Web Team BU Sli...
CVE-2024-52350MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nrmendez CRM 2go c...
CVE-2024-11019MEDIUM6.1Webopac from Grand Vice info has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attacke...
CVE-2024-52358MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CyberChimps Respon...
CVE-2024-52357MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in lqd LIQUID BLOCKS ...
CVE-2024-52356MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webangon The Pack ...
CVE-2024-51882MEDIUM6.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in gopalkumar315 Gboy...
CVE-2024-51843MEDIUM6.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in fruitcakestudios H...
CVE-2024-51837MEDIUM6.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sophia M Williams ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now