2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-30141MEDIUM4.7HCL BigFix Compliance is vulnerable to the generation of error messages containing sensitive information. Detailed erro...
CVE-2024-30140MEDIUM5.4HCL BigFix Compliance is affected by unvalidated redirects and forwards. The HOST header can be manipulated by an attac...
CVE-2024-10027MEDIUM4.8The WP Booking Calendar WordPress plugin before 10.6.3 does not sanitise and escape some of its Widgets settings, which ...
CVE-2024-51409MEDIUM6.5Buffer Overflow vulnerability in Tenda O3 v.1.0.0.5 allows a remote attacker to cause a denial of service via a network ...
CVE-2024-10928MEDIUM6.1A vulnerability was found in MonoCMS up to 20240528. It has been declared as problematic. Affected by this vulnerability...
CVE-2024-10927MEDIUM6.1A vulnerability was found in MonoCMS up to 20240528. It has been classified as problematic. Affected is an unknown funct...
CVE-2024-50345MEDIUM6.1symfony/http-foundation is a module for the Symphony PHP framework which defines an object-oriented layer for the HTTP s...
CVE-2024-50342MEDIUM4.3symfony/http-client is a module for the Symphony PHP framework which provides powerful methods to fetch HTTP resources s...
CVE-2024-10941MEDIUM6.5A malicious website could have included an iframe with an malformed URI resulting in a non-exploitable browser crash. Th...
CVE-2024-10926MEDIUM5.3A vulnerability was found in IBPhoenix ibWebAdmin up to 1.0.2 and classified as problematic. This issue affects some unk...
CVE-2024-51988MEDIUM6.5RabbitMQ is a feature rich, multi-protocol messaging and streaming broker. In affected versions queue deletion via the H...
CVE-2024-51751MEDIUM6.5Gradio is an open-source Python package designed to enable quick builds of a demo or web application. If File or UploadB...
CVE-2024-50637MEDIUM5.4UnoPim 0.1.3 and below is vulnerable to Cross Site Scripting (XSS) in the Create User function. This allows attackers to...
CVE-2024-20540MEDIUM5.4A vulnerability in the web-based management interface of Cisco Unified Contact Center Management Portal (Unified CCMP) c...
CVE-2024-20539MEDIUM4.8A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to cond...
CVE-2024-20538MEDIUM6.1A vulnerability in the web-based management interface of Cisco ISE could allow an unauthenticated, remote attacker to co...
CVE-2024-20537MEDIUM6.5A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to bypa...
CVE-2024-20534MEDIUM4.8A vulnerability in the web UI of Cisco Desk Phone 9800 Series, Cisco IP Phone 6800, 7800, and 8800 Series, and Cisco Vid...
CVE-2024-20533MEDIUM4.8A vulnerability in the web UI of Cisco Desk Phone 9800 Series, Cisco IP Phone 6800, 7800, and 8800 Series, and Cisco Vid...
CVE-2024-20532MEDIUM5.5A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read and delete arbitrary files...
CVE-2024-20531MEDIUM6.5A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read arbitrary files on the und...
CVE-2024-20530MEDIUM6.1A vulnerability in the web-based management interface of Cisco ISE could allow an unauthenticated, remote attacker to co...
CVE-2024-20529MEDIUM5.5A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read and delete arbitrary files...
CVE-2024-20527MEDIUM5.5A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read and delete arbitrary files...
CVE-2024-20525MEDIUM6.1A vulnerability in the web-based management interface of Cisco ISE could allow an unauthenticated, remote attacker to co...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now