2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-38749 | HIGH | 7.5 | 0.4% | Aug 13, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Olive Themes Olive One Click Demo Import all... |
| CVE-2024-38747 | HIGH | 7.5 | 0.4% | Aug 13, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in HitPay Payment Solutions Pte Ltd HitPay Paym... |
| CVE-2024-38724 | HIGH | 7.1 | 0.2% | Aug 13, 2024 | Cross-Site Request Forgery (CSRF), Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scrip... |
| CVE-2024-38699 | HIGH | 7.5 | 0.4% | Aug 13, 2024 | Missing Authorization vulnerability in WP Swings Wallet System for WooCommerce allows Accessing Functionality Not Proper... |
| CVE-2024-37935 | HIGH | 7.5 | 0.4% | Aug 13, 2024 | Missing Authorization vulnerability in anhvnit Woocommerce OpenPos allows Accessing Functionality Not Properly Constrain... |
| CVE-2024-41977 | HIGH | 8 | 0.4% | Aug 13, 2024 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.1), RUGGEDCOM... |
| CVE-2024-41976 | HIGH | 8.8 | 0.8% | Aug 13, 2024 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.1), RUGGEDCOM... |
| CVE-2024-41939 | HIGH | 8.8 | 0.5% | Aug 13, 2024 | A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly enfor... |
| CVE-2024-41908 | HIGH | 7.8 | 0.2% | Aug 13, 2024 | A vulnerability has been identified in NX (All versions < V2406.3000). The affected applications contains an out of boun... |
| CVE-2024-41904 | HIGH | 7.5 | 0.5% | Aug 13, 2024 | A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected a... |
| CVE-2024-41903 | HIGH | 7.2 | 0.4% | Aug 13, 2024 | A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected a... |
| CVE-2024-41681 | HIGH | 7.5 | 0.2% | Aug 13, 2024 | A vulnerability has been identified in Location Intelligence family (All versions < V4.4). The web server of affected pr... |
| CVE-2024-36398 | HIGH | 7.8 | 0.2% | Aug 13, 2024 | A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application executes a subset of it... |
| CVE-2024-6823 | HIGH | 8.8 | 1.3% | Aug 13, 2024 | The Media Library Assistant plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type valida... |
| CVE-2024-42374 | HIGH | 8.2 | 0.5% | Aug 13, 2024 | BEx Web Java Runtime Export Web Service does not sufficiently validate an XML document accepted from an untrusted source... |
| CVE-2024-43127 | HIGH | 7.1 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPFactory P... |
| CVE-2024-43126 | HIGH | 7.1 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Sender Send... |
| CVE-2024-37930 | HIGH | 7.5 | 0.4% | Aug 12, 2024 | Insertion of Sensitive Information into Log File vulnerability in ThemeSphere SmartMag smartmag-responsive-retina-wordpr... |
| CVE-2024-43217 | HIGH | 7.1 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Pierre Lebe... |
| CVE-2024-43213 | HIGH | 7.1 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in MultiVendor... |
| CVE-2024-43163 | HIGH | 7.1 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Parcel Pane... |
| CVE-2024-7704 | HIGH | 7.5 | 0.8% | Aug 12, 2024 | A vulnerability was found in Weaver e-cology 8. It has been classified as problematic. Affected is an unknown function o... |
| CVE-2024-43233 | HIGH | 7.1 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BannerSky B... |
| CVE-2024-42748 | HIGH | 8.8 | 1.7% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42747 | HIGH | 8.8 | 1.0% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now