2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-9101LOW2.1A reflected cross-site scripting (XSS) vulnerability in the 'Entry Chooser' of phpLDAPadmin (version 1.2.1 through the l...
CVE-2024-12784CRITICAL9.8A vulnerability was found in itsourcecode Vehicle Management System 1.0. It has been classified as critical. Affected is...
CVE-2024-10244CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ISDO Software Web ...
CVE-2024-12783MEDIUM6.1A vulnerability was found in itsourcecode Vehicle Management System 1.0 and classified as problematic. This issue affect...
CVE-2024-12782HIGH7.3A vulnerability has been found in Fujifilm Business Innovation Apeos C3070, Apeos C5570 and Apeos C6580 up to 24.8.28 an...
CVE-2024-45819MEDIUM5.5PVH guests have their ACPI tables constructed by the toolstack. The construction involves building the tables in local ...
CVE-2024-45818MEDIUM6.5The hypervisor contains code to accelerate VGA memory accesses for HVM guests, when the (virtual) VGA is in "standard" m...
CVE-2024-37962MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Agency Dominion In...
CVE-2024-12626CRITICAL9.6The AutomatorWP – Automator plugin for no-code automations, webhooks & custom integrations in WordPress plugin for WordP...
CVE-2024-12331MEDIUM4.3The File Manager Pro – Filester plugin for WordPress is vulnerable to unauthorized modification of data due to a missing...
CVE-2024-11616MEDIUM5.6Netskope was made aware of a security vulnerability in Netskope Endpoint DLP’s Content Control Driver where a double-fet...
CVE-2024-12569HIGH7.8Disclosure of sensitive information in a Milestone XProtect Device Pack driver’s log file for third-party cameras, allow...
CVE-2024-4230HIGH7.8External Control of File Name or Path vulnerability in Edgecross Basic Software for Windows versions 1.00 and later and ...
CVE-2024-4229HIGH7.8Incorrect Default Permissions vulnerability in Edgecross Basic Software for Windows versions 1.00 and later and Edgecros...
CVE-2024-12560MEDIUM6.5The Button Block – Get fully customizable & multi-functional buttons plugin for WordPress is vulnerable to Sensitive Inf...
CVE-2024-11768MEDIUM5.3The Download Manager plugin for WordPress is vulnerable to unauthorized download of password-protected content due to im...
CVE-2024-11740HIGH7.3The The Download Manager plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and ...
CVE-2024-11984CRITICAL9.4A unrestricted upload of file with dangerous type vulnerability in epaper draft function in Corporate Training Managemen...
CVE-2024-51532HIGH7.1Dell PowerStore contains an Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerabi...
CVE-2024-35141HIGH7.8IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate their privileges due to exe...
CVE-2024-12121MEDIUM5.4The Broken Link Checker | Finder plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions...
CVE-2024-10548MEDIUM6.5The WP Project Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and i...
CVE-2024-55603MEDIUM6.5Kanboard is project management software that focuses on the Kanban methodology. In affected versions sessions are still ...
CVE-2024-56319HIGH7.5In Matter (aka connectedhomeip or Project CHIP) through 1.4.0.0 before e3277eb, unlimited user label appends in a userla...
CVE-2024-56318HIGH7.5In raw\TCP.cpp in Matter (aka connectedhomeip or Project CHIP) through 1.4.0.0 before 27ca6ec, there is a NULL pointer d...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now