2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41173 | HIGH | 7.8 | 0.2% | Aug 27, 2024 | The IPC-Diagnostics package included in TwinCAT/BSD is vulnerable to a local authentication bypass by a low privileged a... |
| CVE-2024-7125 | HIGH | 7.8 | 0.2% | Aug 27, 2024 | Authentication Bypass vulnerability in Hitachi Ops Center Common Services.This issue affects Hitachi Ops Center Common S... |
| CVE-2024-45321 | HIGH | 8.1 | 0.7% | Aug 27, 2024 | The App::cpanminus package through 1.7047 for Perl downloads code via insecure HTTP, enabling code execution for network... |
| CVE-2024-43798 | HIGH | 8.6 | 0.4% | Aug 26, 2024 | Chisel is a fast TCP/UDP tunnel, transported over HTTP, secured via SSH. The Chisel server doesn't ever read the documen... |
| CVE-2024-43916 | HIGH | 7.1 | 0.3% | Aug 26, 2024 | Authorization Bypass Through User-Controlled Key vulnerability in Dylan James Zephyr Project Manager.This issue affects ... |
| CVE-2024-43325 | HIGH | 8.8 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Naiche Dark Mode for WP Dashboard.This issue affects Dark Mode for WP... |
| CVE-2024-43287 | HIGH | 8.8 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Brevo Newsletter, SMTP, Email marketing and Subscribe forms by Sendin... |
| CVE-2024-43264 | HIGH | 7.5 | 0.4% | Aug 26, 2024 | Insertion of Sensitive Information Into Sent Data vulnerability in mischiefmarmot Create by Mediavine mediavine-create.T... |
| CVE-2024-43259 | HIGH | 7.5 | 0.4% | Aug 26, 2024 | Insertion of Sensitive Information Into Sent Data vulnerability in WebFactory Order Export for WooCommerce order-export-... |
| CVE-2024-43258 | HIGH | 7.5 | 0.4% | Aug 26, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Store Locator Plus.This issue affects Store ... |
| CVE-2024-43230 | HIGH | 7.5 | 0.4% | Aug 26, 2024 | Insertion of Sensitive Information Into Sent Data vulnerability in Anssi Laitila Shared Files shared-files.This issue af... |
| CVE-2024-43117 | HIGH | 8.8 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WPMU DEV - Your All-in-One WordPress Platform Hummingbird hummingbird... |
| CVE-2024-43116 | HIGH | 8.8 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in 10up Simple Local Avatars.This issue affects Simple Local Avatars: fr... |
| CVE-2024-39657 | HIGH | 8.8 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Sender Sender – Newsletter, SMS and Email Marketing Automation for Wo... |
| CVE-2024-39645 | HIGH | 8.8 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Themeum Tutor LMS.This issue affects Tutor LMS: from n/a through 2.7.... |
| CVE-2024-39641 | HIGH | 8.8 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in ThimPress LearnPress.This issue affects LearnPress: from n/a through ... |
| CVE-2024-39628 | HIGH | 8.8 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Saturday Drive Ninja Forms allows Cross Site Request Forgery.This iss... |
| CVE-2024-28077 | HIGH | 7.5 | 0.4% | Aug 26, 2024 | A denial-of-service issue was discovered on certain GL-iNet devices. Some websites can detect devices exposed to the ext... |
| CVE-2024-7401 | HIGH | 7.5 | 0.8% | Aug 26, 2024 | Netskope was notified about a security gap in Netskope Client enrollment process where NSClient is using a static token ... |
| CVE-2024-8173 | HIGH | 7.5 | 0.7% | Aug 26, 2024 | A vulnerability, which was classified as critical, was found in code-projects Blood Bank System 1.0. Affected is an unkn... |
| CVE-2024-43289 | HIGH | 7.5 | 0.4% | Aug 26, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in gVectors Team wpForo Forum.This issue affect... |
| CVE-2024-43283 | HIGH | 7.5 | 1.1% | Aug 26, 2024 | Insertion of Sensitive Information Into Sent Data vulnerability in Wasiliy Strecker / ContestGallery developer Contest G... |
| CVE-2024-42791 | HIGH | 8.8 | 0.6% | Aug 26, 2024 | A Cross-Site Request Forgery (CSRF) vulnerability was found in Kashipara Music Management System v1.0 via /music/ajax.ph... |
| CVE-2024-7987 | HIGH | 7.8 | 0.3% | Aug 26, 2024 | A remote code execution vulnerability exists in the Rockwell Automation ThinManager® ThinServer™ that allows a threat ac... |
| CVE-2024-43966 | HIGH | 7.2 | 0.4% | Aug 26, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Stark Digital WP T... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now