2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-38862 | MEDIUM | 4.4 | 0.3% | Oct 14, 2024 | Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p18, <2.2.0p35, <2.1.0p48 and ... |
| CVE-2024-9923 | MEDIUM | 4.9 | 0.6% | Oct 14, 2024 | The Team+ from TEAMPLUS TECHNOLOGY does not properly validate a specific page parameter, allowing remote attackers with ... |
| CVE-2024-49214 | MEDIUM | 5.3 | 0.5% | Oct 14, 2024 | QUIC in HAProxy 3.1.x before 3.1-dev7, 3.0.x before 3.0.5, and 2.9.x before 2.9.11 allows opening a 0-RTT session with a... |
| CVE-2024-9917 | MEDIUM | 4.9 | 8.7% | Oct 13, 2024 | A vulnerability, which was classified as critical, was found in HuangDou UTCMS V9. This affects an unknown part of the f... |
| CVE-2024-9907 | MEDIUM | 6.3 | 0.4% | Oct 13, 2024 | A vulnerability classified as problematic was found in QileCMS up to 1.1.3. This vulnerability affects the function send... |
| CVE-2024-9906 | MEDIUM | 5.4 | 0.4% | Oct 13, 2024 | A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0. Affected is a... |
| CVE-2024-8902 | MEDIUM | 4.3 | 0.4% | Oct 12, 2024 | The Elementor Addon Elements plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,... |
| CVE-2024-9696 | MEDIUM | 5.4 | 0.2% | Oct 12, 2024 | The Rescue Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'rescue_tab' sh... |
| CVE-2024-9595 | MEDIUM | 5.4 | 0.3% | Oct 12, 2024 | The TablePress – Tables in WordPress made easy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the... |
| CVE-2024-8915 | MEDIUM | 6.4 | 0.3% | Oct 12, 2024 | The Category Icon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions... |
| CVE-2024-8760 | MEDIUM | 5.3 | 0.5% | Oct 12, 2024 | The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to CSS Injection in all versions up to,... |
| CVE-2024-9756 | MEDIUM | 4.3 | 0.9% | Oct 12, 2024 | The Order Attachments for WooCommerce plugin for WordPress is vulnerable to unauthorized limited arbitrary file uploads ... |
| CVE-2024-9704 | MEDIUM | 5.4 | 0.2% | Oct 12, 2024 | The Social Sharing (by Danny) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'dvk_so... |
| CVE-2024-9824 | MEDIUM | 4.3 | 0.3% | Oct 12, 2024 | The ImagePress – Image Gallery plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a... |
| CVE-2024-9778 | MEDIUM | 4.3 | 0.2% | Oct 12, 2024 | The ImagePress – Image Gallery plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a... |
| CVE-2024-9776 | MEDIUM | 4.8 | 0.3% | Oct 12, 2024 | The ImagePress – Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in a... |
| CVE-2024-9670 | MEDIUM | 6.1 | 0.3% | Oct 12, 2024 | The 2D Tag Cloud plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg wi... |
| CVE-2024-9656 | MEDIUM | 6.4 | 0.3% | Oct 12, 2024 | The Mynx Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all vers... |
| CVE-2024-9187 | MEDIUM | 4.3 | 0.3% | Oct 12, 2024 | The Read more By Adam plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check ... |
| CVE-2024-7489 | MEDIUM | 4.4 | 0.3% | Oct 12, 2024 | The Forms for Mailchimp by Optin Cat – Grow Your MailChimp List plugin for WordPress is vulnerable to Stored Cross-Site ... |
| CVE-2024-9860 | MEDIUM | 5.4 | 0.3% | Oct 12, 2024 | The Bridge Core plugin for WordPress is vulnerable to unauthorized modification of data or loss of data due to a missing... |
| CVE-2024-9592 | MEDIUM | 6.1 | 0.1% | Oct 12, 2024 | The Easy PayPal Gift Certificate plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and... |
| CVE-2024-48937 | MEDIUM | 6.1 | 0.4% | Oct 11, 2024 | Znuny before LTS 6.5.1 through 6.5.10 and 7.0.1 through 7.0.16 allows XSS. JavaScript code in the short description of t... |
| CVE-2024-45184 | MEDIUM | 6.2 | 0.2% | Oct 11, 2024 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with chipset Exynos 9820, 9825, 980,... |
| CVE-2024-48041 | MEDIUM | 6.5 | 0.3% | Oct 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CreativeMindsSolut... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now