2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-56060 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Link Software LLC ... |
| CVE-2024-56038 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in catalinsendsms Sen... |
| CVE-2024-56037 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SoftClever Limited... |
| CVE-2024-56036 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ondrej Donek odPho... |
| CVE-2024-56035 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Kurt Payne Upload ... |
| CVE-2024-56034 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Irshad A.Khan Serv... |
| CVE-2024-56033 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Think201 FAQs faqs... |
| CVE-2024-56032 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FolioVision FV Des... |
| CVE-2024-56030 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Carver Lab 10CentM... |
| CVE-2024-56029 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in dreamwinner Easy L... |
| CVE-2024-56028 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in lemonadestudio Lem... |
| CVE-2024-56027 | HIGH | 7.1 | 0.3% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bizswoop Leads CRM... |
| CVE-2024-56019 | MEDIUM | 6.5 | 0.2% | Jan 2, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in gavinr Inline Foot... |
| CVE-2024-13103 | MEDIUM | 5.3 | 0.8% | Jan 2, 2025 | A vulnerability, which was classified as critical, has been found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. This issu... |
| CVE-2024-13102 | MEDIUM | 5.3 | 0.8% | Jan 2, 2025 | A vulnerability classified as critical was found in D-Link DIR-816 A2 1.10CNB05_R1B011D88210. This vulnerability affects... |
| CVE-2024-13062 | HIGH | 7.2 | 1.0% | Jan 2, 2025 | An unintended entry point vulnerability has been identified in certain router models, which may allow for arbitrary comm... |
| CVE-2024-13093 | HIGH | 7.5 | 0.5% | Jan 2, 2025 | A vulnerability, which was classified as critical, has been found in code-projects Job Recruitment 1.0. This issue affec... |
| CVE-2024-13092 | HIGH | 7.5 | 0.5% | Jan 2, 2025 | A vulnerability classified as critical was found in code-projects Job Recruitment 1.0. This vulnerability affects unknow... |
| CVE-2024-12912 | HIGH | 7.2 | 1.2% | Jan 2, 2025 | An improper input insertion vulnerability in AiCloud on certain router models may lead to arbitrary command execution. R... |
| CVE-2024-12595 | MEDIUM | 4.7 | 0.3% | Jan 2, 2025 | The AHAthat Plugin WordPress plugin through 1.6 does not escape the $_SERVER['REQUEST_URI'] parameter before outputting ... |
| CVE-2024-11357 | MEDIUM | 5.9 | 0.3% | Jan 2, 2025 | The goodlayers-core WordPress plugin before 2.0.10 does not sanitise and escape some of its settings, which could allow ... |
| CVE-2024-11184 | MEDIUM | 4.8 | 0.4% | Jan 2, 2025 | The wp-enable-svg WordPress plugin through 0.7 does not sanitize SVG files when uploaded, allowing for authors and above... |
| CVE-2024-56830 | MEDIUM | 5.4 | 0.4% | Jan 2, 2025 | The Net::EasyTCP package 0.15 through 0.26 for Perl uses Perl's builtin rand() if no strong randomization module is pres... |
| CVE-2024-56829 | CRITICAL | 10 | 0.5% | Jan 2, 2025 | Huang Yaoshi Pharmaceutical Management Software through 16.0 allows arbitrary file upload via a .asp filename in the fil... |
| CVE-2024-11846 | MEDIUM | 6.1 | 0.4% | Jan 1, 2025 | The does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site S... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now