2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-20512MEDIUM6.1A vulnerability in the web-based management interface of Cisco Unified Contact Center Management Portal (Unified CCMP) c...
CVE-2024-20462MEDIUM5.5A vulnerability in the web-based management interface of Cisco ATA 190 Series Multiplatform Analog Telephone Adapter fir...
CVE-2024-20461MEDIUM6A vulnerability in the CLI of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an authenticated, ...
CVE-2024-20460MEDIUM6.1A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could al...
CVE-2024-20421MEDIUM6.5A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could al...
CVE-2024-20280MEDIUM6.3A vulnerability in the backup feature of Cisco UCS Central Software could allow an attacker with access to a backup file...
CVE-2024-10033MEDIUM6.1A vulnerability was found in aap-gateway. A Cross-site Scripting (XSS) vulnerability exists in the gateway component. Th...
CVE-2024-49265MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SPBooking.com Book...
CVE-2024-29155MEDIUM4.3On Microchip RN4870 devices, when more than one consecutive PairReqNoInputNoOutput request is received, the device beco...
CVE-2024-49268MEDIUM6.1Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in sunburntkam...
CVE-2024-49267MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nayon46 Unlimited ...
CVE-2024-49266MEDIUM5.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Thimo Grauerholz W...
CVE-2024-48744MEDIUM6.1A Reflected Cross Site Scripting (XSS) vulnerability was found in /trms/listed- teachers.php in PHPGurukul Teachers Reco...
CVE-2024-47139MEDIUM6.8A stored cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IQ Configuration utility that...
CVE-2024-49270MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in hashthemes Smart B...
CVE-2024-49258MEDIUM6.5Path Traversal: '.../...//' vulnerability in Limbcode WordPress Gallery Plugin – Limb Image Gallery limb-gallery.This is...
CVE-2024-49252MEDIUM5.3Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in VaultDweller Leyka leyka.Thi...
CVE-2024-22034MEDIUM5.5Attackers could put the special files in .osc into the actual package sources (e.g. _apiurl). This allows the attacker t...
CVE-2024-22033MEDIUM6.3The OBS service obs-service-download_url was vulnerable to a command injection vulnerability. The attacker could provide...
CVE-2024-6380MEDIUM5.4A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEX...
CVE-2024-8921MEDIUM6.4The Zita Elementor Site Library plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads i...
CVE-2024-9444MEDIUM5.4The ElementsReady Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File up...
CVE-2024-9540MEDIUM4.3The Sina Extension for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up...
CVE-2024-45715MEDIUM5.2The SolarWinds Platform was susceptible to a Cross-Site Scripting vulnerability when performing an edit function to exis...
CVE-2024-45714MEDIUM4.1Application is vulnerable to Cross Site Scripting (XSS) an authenticated attacker with users’ permissions can modify a v...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now