2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-38862MEDIUM4.4Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p18, <2.2.0p35, <2.1.0p48 and ...
CVE-2024-9923MEDIUM4.9The Team+ from TEAMPLUS TECHNOLOGY does not properly validate a specific page parameter, allowing remote attackers with ...
CVE-2024-49214MEDIUM5.3QUIC in HAProxy 3.1.x before 3.1-dev7, 3.0.x before 3.0.5, and 2.9.x before 2.9.11 allows opening a 0-RTT session with a...
CVE-2024-9917MEDIUM4.9A vulnerability, which was classified as critical, was found in HuangDou UTCMS V9. This affects an unknown part of the f...
CVE-2024-9907MEDIUM6.3A vulnerability classified as problematic was found in QileCMS up to 1.1.3. This vulnerability affects the function send...
CVE-2024-9906MEDIUM5.4A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0. Affected is a...
CVE-2024-8902MEDIUM4.3The Elementor Addon Elements plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,...
CVE-2024-9696MEDIUM5.4The Rescue Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'rescue_tab' sh...
CVE-2024-9595MEDIUM5.4The TablePress – Tables in WordPress made easy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
CVE-2024-8915MEDIUM6.4The Category Icon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions...
CVE-2024-8760MEDIUM5.3The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to CSS Injection in all versions up to,...
CVE-2024-9756MEDIUM4.3The Order Attachments for WooCommerce plugin for WordPress is vulnerable to unauthorized limited arbitrary file uploads ...
CVE-2024-9704MEDIUM5.4The Social Sharing (by Danny) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'dvk_so...
CVE-2024-9824MEDIUM4.3The ImagePress – Image Gallery plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a...
CVE-2024-9778MEDIUM4.3The ImagePress – Image Gallery plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a...
CVE-2024-9776MEDIUM4.8The ImagePress – Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in a...
CVE-2024-9670MEDIUM6.1The 2D Tag Cloud plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg wi...
CVE-2024-9656MEDIUM6.4The Mynx Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all vers...
CVE-2024-9187MEDIUM4.3The Read more By Adam plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check ...
CVE-2024-7489MEDIUM4.4The Forms for Mailchimp by Optin Cat – Grow Your MailChimp List plugin for WordPress is vulnerable to Stored Cross-Site ...
CVE-2024-9860MEDIUM5.4The Bridge Core plugin for WordPress is vulnerable to unauthorized modification of data or loss of data due to a missing...
CVE-2024-9592MEDIUM6.1The Easy PayPal Gift Certificate plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and...
CVE-2024-48937MEDIUM6.1Znuny before LTS 6.5.1 through 6.5.10 and 7.0.1 through 7.0.16 allows XSS. JavaScript code in the short description of t...
CVE-2024-45184MEDIUM6.2An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with chipset Exynos 9820, 9825, 980,...
CVE-2024-48041MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CreativeMindsSolut...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now