2024 CVE Vulnerabilities

39,223 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-50312MEDIUM5.3A vulnerability was found in GraphQL due to improper access controls on the GraphQL introspection query. This flaw allow...
CVE-2024-50311MEDIUM6.5A denial of service (DoS) vulnerability was found in OpenShift. This flaw allows attackers to exploit the GraphQL batchi...
CVE-2024-9231MEDIUM6.1The WP-Members Membership Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of ...
CVE-2024-10189MEDIUM5.4The Anchor Episodes Index (Spotify for Podcasters) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
CVE-2024-9591MEDIUM4.8The Category and Taxonomy Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the '_category_ima...
CVE-2024-9590MEDIUM4.8The Category and Taxonomy Meta Fields plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the image me...
CVE-2024-9589MEDIUM4.8The Category and Taxonomy Meta Fields plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'new_met...
CVE-2024-9588MEDIUM5.4The Category and Taxonomy Meta Fields plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to...
CVE-2024-9541MEDIUM4.3The News Kit Elementor Addons plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to...
CVE-2024-8852MEDIUM5.3The All-in-One WP Migration and Backup plugin for WordPress is vulnerable to Sensitive Information Exposure in all versi...
CVE-2024-10003MEDIUM6.3The Rover IDX plugin for WordPress is vulnerable to unauthorized access, modification, and loss of data due to a missing...
CVE-2024-47224MEDIUM6.5A vulnerability in the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.20...
CVE-2024-41712MEDIUM6.6A vulnerability in the Web Conferencing Component of Mitel MiCollab through 9.8.1.5 could allow an authenticated attacke...
CVE-2024-40091MEDIUM5.3Vilo 5 Mesh WiFi System <= 5.16.1.33 lacks authentication in the Boa webserver, which allows remote, unauthenticated att...
CVE-2024-40090MEDIUM4.3Vilo 5 Mesh WiFi System <= 5.16.1.33 is vulnerable to Information Disclosure. An information leak in the Boa webserver a...
CVE-2024-40088MEDIUM5.3A Directory Traversal vulnerability in the Boa webserver of Vilo 5 Mesh WiFi System <= 5.16.1.33 allows remote, unauthen...
CVE-2024-35315MEDIUM5.6A vulnerability in the Desktop Client of Mitel MiCollab through 9.7.1.110, and MiVoice Business Solution Virtual Instanc...
CVE-2024-35287MEDIUM6.7A vulnerability in the NuPoint Messenger (NPM) component of Mitel MiCollab through version 9.8 SP1 (9.8.1.5) could allow...
CVE-2024-30160MEDIUM4.8A vulnerability in the Suite Applications Services component of Mitel MiCollab through 9.7.1.110 could allow an authenti...
CVE-2024-30159MEDIUM4.8A vulnerability in the web conferencing component of Mitel MiCollab through 9.7.1.110 could allow an authenticated attac...
CVE-2024-50065MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ntfs3: Change to non-blocking allocation in ntfs_d_...
CVE-2024-50064MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: zram: free secondary algorithms names We need to k...
CVE-2024-50062MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs-srv: Avoid null pointer deref during path...
CVE-2024-50060MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: io_uring: check if we need to reschedule during ove...
CVE-2024-50058MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: serial: protect uart_port_dtr_rts() in uart_shutdow...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now