2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-41173HIGH7.8The IPC-Diagnostics package included in TwinCAT/BSD is vulnerable to a local authentication bypass by a low privileged a...
CVE-2024-7125HIGH7.8Authentication Bypass vulnerability in Hitachi Ops Center Common Services.This issue affects Hitachi Ops Center Common S...
CVE-2024-45321HIGH8.1The App::cpanminus package through 1.7047 for Perl downloads code via insecure HTTP, enabling code execution for network...
CVE-2024-43798HIGH8.6Chisel is a fast TCP/UDP tunnel, transported over HTTP, secured via SSH. The Chisel server doesn't ever read the documen...
CVE-2024-43916HIGH7.1Authorization Bypass Through User-Controlled Key vulnerability in Dylan James Zephyr Project Manager.This issue affects ...
CVE-2024-43325HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Naiche Dark Mode for WP Dashboard.This issue affects Dark Mode for WP...
CVE-2024-43287HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Brevo Newsletter, SMTP, Email marketing and Subscribe forms by Sendin...
CVE-2024-43264HIGH7.5Insertion of Sensitive Information Into Sent Data vulnerability in mischiefmarmot Create by Mediavine mediavine-create.T...
CVE-2024-43259HIGH7.5Insertion of Sensitive Information Into Sent Data vulnerability in WebFactory Order Export for WooCommerce order-export-...
CVE-2024-43258HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Store Locator Plus.This issue affects Store ...
CVE-2024-43230HIGH7.5Insertion of Sensitive Information Into Sent Data vulnerability in Anssi Laitila Shared Files shared-files.This issue af...
CVE-2024-43117HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WPMU DEV - Your All-in-One WordPress Platform Hummingbird hummingbird...
CVE-2024-43116HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in 10up Simple Local Avatars.This issue affects Simple Local Avatars: fr...
CVE-2024-39657HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Sender Sender – Newsletter, SMS and Email Marketing Automation for Wo...
CVE-2024-39645HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Themeum Tutor LMS.This issue affects Tutor LMS: from n/a through 2.7....
CVE-2024-39641HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in ThimPress LearnPress.This issue affects LearnPress: from n/a through ...
CVE-2024-39628HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Saturday Drive Ninja Forms allows Cross Site Request Forgery.This iss...
CVE-2024-28077HIGH7.5A denial-of-service issue was discovered on certain GL-iNet devices. Some websites can detect devices exposed to the ext...
CVE-2024-7401HIGH7.5Netskope was notified about a security gap in Netskope Client enrollment process where NSClient is using a static token ...
CVE-2024-8173HIGH7.5A vulnerability, which was classified as critical, was found in code-projects Blood Bank System 1.0. Affected is an unkn...
CVE-2024-43289HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in gVectors Team wpForo Forum.This issue affect...
CVE-2024-43283HIGH7.5Insertion of Sensitive Information Into Sent Data vulnerability in Wasiliy Strecker / ContestGallery developer Contest G...
CVE-2024-42791HIGH8.8A Cross-Site Request Forgery (CSRF) vulnerability was found in Kashipara Music Management System v1.0 via /music/ajax.ph...
CVE-2024-7987HIGH7.8A remote code execution vulnerability exists in the Rockwell Automation ThinManager® ThinServer™ that allows a threat ac...
CVE-2024-43966HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Stark Digital WP T...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now