2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12897 | MEDIUM | 5.3 | 0.5% | Dec 23, 2024 | A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2 up to 20241222. It has ... |
| CVE-2024-56375 | HIGH | 7.5 | 0.4% | Dec 22, 2024 | An integer underflow was discovered in Fort 1.6.3 and 1.6.4 before 1.6.5. A malicious RPKI repository that descends from... |
| CVE-2024-12896 | MEDIUM | 6.9 | 0.5% | Dec 22, 2024 | A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2 up to 20241222 and clas... |
| CVE-2024-56314 | MEDIUM | 5.4 | 0.4% | Dec 22, 2024 | A stored cross-site scripting (XSS) vulnerability in the Project name of REDCap through 14.9.6 allows authenticated user... |
| CVE-2024-56313 | MEDIUM | 5.4 | 0.4% | Dec 22, 2024 | A stored cross-site scripting (XSS) vulnerability in the Calendar feature of REDCap through 14.9.6 allows authenticated ... |
| CVE-2024-56312 | MEDIUM | 5.4 | 0.4% | Dec 22, 2024 | A stored cross-site scripting (XSS) vulnerability in the Project Dashboard name of REDCap through 14.9.6 allows authenti... |
| CVE-2024-56311 | HIGH | 8.8 | 0.3% | Dec 22, 2024 | REDCap through 14.9.6 has a security flaw in the Notes section of calendar events, exposing users to a Cross-Site Reques... |
| CVE-2024-56310 | HIGH | 8.8 | 0.2% | Dec 22, 2024 | REDCap through 14.9.6 has a security flaw in the Project Dashboards name, exposing users to a Cross-Site Request Forgery... |
| CVE-2024-12895 | CRITICAL | 9.8 | 0.5% | Dec 22, 2024 | A vulnerability has been found in TreasureHuntGame TreasureHunt up to 963e0e0 and classified as critical. Affected by th... |
| CVE-2024-12894 | CRITICAL | 9.8 | 0.5% | Dec 22, 2024 | A vulnerability, which was classified as critical, was found in TreasureHuntGame TreasureHunt up to 963e0e0. Affected is... |
| CVE-2024-12893 | MEDIUM | 5.4 | 0.5% | Dec 22, 2024 | A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar up to 2.9. Affected by this ... |
| CVE-2024-12892 | MEDIUM | 5.4 | 0.4% | Dec 22, 2024 | A vulnerability classified as problematic was found in code-projects Online Exam Mastering System 1.0. Affected by this ... |
| CVE-2024-12891 | HIGH | 8.8 | 0.5% | Dec 22, 2024 | A vulnerability classified as critical has been found in code-projects Online Exam Mastering System 1.0. Affected is an ... |
| CVE-2024-12890 | HIGH | 8.8 | 0.5% | Dec 22, 2024 | A vulnerability was found in code-projects Online Exam Mastering System 1.0. It has been rated as critical. This issue a... |
| CVE-2024-11852 | MEDIUM | 4.3 | 0.3% | Dec 22, 2024 | The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid, Carousel and Remote Arrows) plugin for... |
| CVE-2024-51464 | MEDIUM | 4.3 | 1.4% | Dec 21, 2024 | IBM i 7.3, 7.4, and 7.5 is vulnerable to bypassing Navigator for i interface restrictions. By sending a specially craft... |
| CVE-2024-51463 | MEDIUM | 5.4 | 0.9% | Dec 21, 2024 | IBM i 7.3, 7.4, and 7.5 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker ... |
| CVE-2024-12884 | CRITICAL | 9.8 | 0.8% | Dec 21, 2024 | A vulnerability was found in Codezips E-Commerce Website 1.0. It has been rated as critical. Affected by this issue is s... |
| CVE-2024-12883 | MEDIUM | 6.1 | 0.8% | Dec 21, 2024 | A vulnerability was found in code-projects Job Recruitment 1.0. It has been declared as problematic. Affected by this vu... |
| CVE-2024-12875 | MEDIUM | 4.9 | 1.0% | Dec 21, 2024 | The Easy Digital Downloads – eCommerce Payments and Subscriptions made easy plugin for WordPress is vulnerable to Direct... |
| CVE-2024-12591 | MEDIUM | 6.4 | 0.3% | Dec 21, 2024 | The MagicPost plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wb_share_social shortco... |
| CVE-2024-12558 | MEDIUM | 6.5 | 1.2% | Dec 21, 2024 | The WP BASE Booking of Appointments, Services and Events plugin for WordPress is vulnerable to unauthorized access of da... |
| CVE-2024-12408 | MEDIUM | 6.1 | 0.3% | Dec 21, 2024 | The WP on AWS plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via $_POST data in all versions up to... |
| CVE-2024-11722 | MEDIUM | 5.9 | 0.6% | Dec 21, 2024 | The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to SQL Injection via the 'orderby' parameter in all ... |
| CVE-2024-11688 | MEDIUM | 6.1 | 0.4% | Dec 21, 2024 | The LaTeX2HTML plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'ver' or 'date' parameter in... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now