2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-11842MEDIUM4.3The DN Shipping by Weight for WooCommerce WordPress plugin before 1.2 does not have CSRF check in place when updating it...
CVE-2024-11645MEDIUM4.8The float block WordPress plugin through 1.7 does not sanitise and escape some of its settings, which could allow high p...
CVE-2024-11644MEDIUM5.9The WP-SVG WordPress plugin through 0.9 does not validate and escape some of its shortcode attributes before outputting ...
CVE-2024-11605MEDIUM4.8The wp-publications WordPress plugin through 1.2 does not escape filenames before outputting them back in the page, whic...
CVE-2024-56522HIGH7.5An issue was discovered in TCPDF before 6.8.0. unserializeTCPDFtag uses != (aka loose comparison) and does not use a con...
CVE-2024-56521CRITICAL9.8An issue was discovered in TCPDF before 6.8.0. If libcurl is used, CURLOPT_SSL_VERIFYHOST and CURLOPT_SSL_VERIFYPEER are...
CVE-2024-56520HIGH7.3An issue was discovered in tc-lib-pdf-font before 2.6.4, as used in TCPDF before 6.8.0 and other products. Fonts are mis...
CVE-2024-56519HIGH7.5An issue was discovered in TCPDF before 6.8.0. setSVGStyles does not sanitize the SVG font-family attribute.
CVE-2024-12980MEDIUM6.1A vulnerability was found in code-projects Job Recruitment 1.0. It has been classified as problematic. Affected is the f...
CVE-2024-12979MEDIUM6.1A vulnerability was found in code-projects Job Recruitment 1.0 and classified as problematic. This issue affects the fun...
CVE-2024-12978HIGH7.5A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as critical. This vulnerability affec...
CVE-2024-9774MEDIUM6.5A vulnerability was found in python-sql where unary operators do not escape non-Expression.
CVE-2024-12977CRITICAL9.8A vulnerability, which was classified as critical, was found in PHPGurukul Complaint Management System 1.0. This affects...
CVE-2024-12976CRITICAL9.8A vulnerability, which was classified as critical, has been found in CodeZips Hospital Management System 1.0. Affected b...
CVE-2024-12969CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Hospital Management System 1.0. Affec...
CVE-2024-56361MEDIUM5.3LGSL (Live Game Server List) provides online status for games. Before 7.0.0, a stored cross-site scripting (XSS) vulnera...
CVE-2024-55950HIGH8.6Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.216, Tabby terminal emulator contains...
CVE-2024-53850HIGH8.2The Addressing GLPI plugin enables you to create IP reports for visualize IP addresses used and free on a given network....
CVE-2024-45805MEDIUM4.3OpenCTI is an open-source cyber threat intelligence platform. Before 6.3.0, general users can access information that ca...
CVE-2024-45600HIGH7.7Fields is a GLPI plugin that allows users to add custom fields on GLPI items forms. Prior to 1.21.13, an authenticated u...
CVE-2024-12968CRITICAL9.8A vulnerability classified as critical was found in code-projects Job Recruitment 1.0. Affected by this vulnerability is...
CVE-2024-12967CRITICAL9.8A vulnerability classified as critical has been found in code-projects Job Recruitment 1.0. Affected is the function fln...
CVE-2024-56510MEDIUM5.3@marp-team/marp-core is the core for Marp, which is the ecosystem to write your presentation with plain Markdown. Marp C...
CVE-2024-12966CRITICAL9.8A vulnerability was found in code-projects Job Recruitment 1.0. It has been rated as critical. This issue affects the fu...
CVE-2024-12965CRITICAL9.8A vulnerability was found in 1000 Projects Portfolio Management System MCA 1.0. It has been declared as critical. This v...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now