2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-10474 | MEDIUM | 6.5 | 0.3% | Oct 29, 2024 | Focus was incorrectly allowing internal links to utilize the app scheme used for deeplinking, which could result in link... |
| CVE-2024-10468 | MEDIUM | 5.3 | 0.4% | Oct 29, 2024 | Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash. ... |
| CVE-2024-10465 | MEDIUM | 6.5 | 0.5% | Oct 29, 2024 | A clipboard "paste" button could persist across tabs which allowed a spoofing attack. This vulnerability affects Firefox... |
| CVE-2024-10464 | MEDIUM | 6.5 | 0.6% | Oct 29, 2024 | Repeated writes to history interface attributes could have been used to cause a Denial of Service condition in the brows... |
| CVE-2024-10463 | MEDIUM | 6.5 | 0.7% | Oct 29, 2024 | Video frames could have been leaked between origins in some situations. This vulnerability affects Firefox < 132, Firefo... |
| CVE-2024-10462 | MEDIUM | 6.5 | 0.5% | Oct 29, 2024 | Truncation of a long URL could have allowed origin spoofing in a permission prompt. This vulnerability affects Firefox <... |
| CVE-2024-10461 | MEDIUM | 6.1 | 0.6% | Oct 29, 2024 | In multipart/x-mixed-replace responses, `Content-Disposition: attachment` in the response header was not respected and d... |
| CVE-2024-10460 | MEDIUM | 5.3 | 0.3% | Oct 29, 2024 | The origin of an external protocol handler prompt could have been obscured using a data: URL within an `iframe`. This vu... |
| CVE-2024-49667 | MEDIUM | 5.4 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Asaduzzaman Abir L... |
| CVE-2024-49665 | MEDIUM | 5.4 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Web Bricks ... |
| CVE-2024-49664 | MEDIUM | 6.1 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in chatplusjp chatplu... |
| CVE-2024-49663 | MEDIUM | 6.1 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in elenkadark uCAT – ... |
| CVE-2024-49662 | MEDIUM | 6.1 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Webgensis Simple L... |
| CVE-2024-49661 | MEDIUM | 6.1 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Lew Ayotte leenk.m... |
| CVE-2024-49660 | MEDIUM | 6.1 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CampusExplorer Cam... |
| CVE-2024-49659 | MEDIUM | 5.4 | 0.2% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Coub Coub coub all... |
| CVE-2024-49656 | MEDIUM | 6.1 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in fifthsegment Docum... |
| CVE-2024-49654 | MEDIUM | 6.1 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Marian Heddesheime... |
| CVE-2024-49651 | MEDIUM | 6.1 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Matt Royal WooComm... |
| CVE-2024-10181 | MEDIUM | 6.4 | 0.4% | Oct 29, 2024 | The Newsletters plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's newsletters_video sho... |
| CVE-2024-50410 | MEDIUM | 5.4 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bob Namaste! LMS n... |
| CVE-2024-50409 | MEDIUM | 5.4 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bob Namaste! LMS n... |
| CVE-2024-50407 | MEDIUM | 6.1 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bob Namaste! LMS n... |
| CVE-2024-49692 | MEDIUM | 5.4 | 0.2% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPCenter Affiliate... |
| CVE-2024-49679 | MEDIUM | 5.4 | 0.3% | Oct 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpkoithemes WPKoi ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now