2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-43524MEDIUM6.8Windows Mobile Broadband Driver Remote Code Execution Vulnerability
CVE-2024-43523MEDIUM6.8Windows Mobile Broadband Driver Remote Code Execution Vulnerability
CVE-2024-43520MEDIUM5Windows Kernel Denial of Service Vulnerability
CVE-2024-43513MEDIUM6.4BitLocker Security Feature Bypass Vulnerability
CVE-2024-43508MEDIUM5.5Windows Graphics Component Information Disclosure Vulnerability
CVE-2024-43500MEDIUM5.5Windows Resilient File System (ReFS) Information Disclosure Vulnerability
CVE-2024-43480MEDIUM6.6Azure Service Fabric for Linux Remote Code Execution Vulnerability
CVE-2024-38129MEDIUM6.6Windows Kerberos Elevation of Privilege Vulnerability
CVE-2024-37983MEDIUM6.7Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability
CVE-2024-37976MEDIUM6.7Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability
CVE-2024-35215MEDIUM6.2NULL pointer dereference in IP socket options processing of the Networking Stack in QNX Software Development Platform (S...
CVE-2024-9622MEDIUM5.3A vulnerability was found in the resteasy-netty4 library arising from improper handling of HTTP requests using smuggling...
CVE-2024-9621MEDIUM5.3A vulnerability was found in Quarkus CXF. Passwords and other secrets may appear in the application log in spite of the...
CVE-2024-9620MEDIUM5.3A flaw was found in Event-Driven Automation (EDA) in Ansible Automation Platform (AAP), which lacks encryption of sensit...
CVE-2024-47951MEDIUM5.4In JetBrains TeamCity before 2024.07.3 stored XSS was possible via server global settings
CVE-2024-47950MEDIUM5.4In JetBrains TeamCity before 2024.07.3 stored XSS was possible in Backup configuration settings
CVE-2024-47161MEDIUM6.5In JetBrains TeamCity before 2024.07.3 password could be exposed via Sonar runner REST API
CVE-2024-45231MEDIUM5.3An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, wh...
CVE-2024-33506MEDIUM4.3An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiManager 7.4.2 and below, 7...
CVE-2024-8482MEDIUM6.4The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’...
CVE-2024-8431MEDIUM4.3The Photo Gallery, Images, Slider in Rbs Image Gallery plugin for WordPress is vulnerable to unauthorized access of data...
CVE-2024-9207MEDIUM6.1The BuddyPress Docs plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of remove_query_...
CVE-2024-8488MEDIUM4.8The Survey Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Survey fields in all versions up ...
CVE-2024-8629MEDIUM6.1The WooCommerce Multilingual & Multicurrency with WPML plugin for WordPress is vulnerable to Reflected Cross-Site Script...
CVE-2024-8433MEDIUM6.4The Easy Mega Menu Plugin for WordPress – ThemeHunk plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now