2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-20097 | MEDIUM | 4.4 | 0.1% | Oct 7, 2024 | In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc... |
| CVE-2024-20096 | MEDIUM | 4.4 | 0.1% | Oct 7, 2024 | In m4u, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl... |
| CVE-2024-20095 | MEDIUM | 4.4 | 0.1% | Oct 7, 2024 | In m4u, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl... |
| CVE-2024-20093 | MEDIUM | 4.4 | 0.1% | Oct 7, 2024 | In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc... |
| CVE-2024-20091 | MEDIUM | 4.4 | 0.1% | Oct 7, 2024 | In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc... |
| CVE-2024-20090 | MEDIUM | 6.7 | 0.1% | Oct 7, 2024 | In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p... |
| CVE-2024-47650 | MEDIUM | 6.5 | 0.2% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Axton WP-WebAuthn ... |
| CVE-2024-45250 | MEDIUM | 4.3 | 0.3% | Oct 6, 2024 | ZKteco – CWE 200 Exposure of Sensitive Information to an Unauthorized Actor |
| CVE-2024-44040 | MEDIUM | 5.9 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in plainware ShiftCon... |
| CVE-2024-44039 | MEDIUM | 5.9 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Travel WP Trave... |
| CVE-2024-44037 | MEDIUM | 5.9 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in magepeopleteam Mul... |
| CVE-2024-44036 | MEDIUM | 5.9 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pierre Lebedel Kod... |
| CVE-2024-44035 | MEDIUM | 6.5 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Atawai Gum Element... |
| CVE-2024-44033 | MEDIUM | 5.4 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nicheaddons Primar... |
| CVE-2024-44032 | MEDIUM | 5.4 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nicheaddons Restau... |
| CVE-2024-44027 | MEDIUM | 6.5 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Atawai Gum Element... |
| CVE-2024-44026 | MEDIUM | 5.4 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nicheaddons Charit... |
| CVE-2024-44025 | MEDIUM | 6.5 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nicejob NiceJob ni... |
| CVE-2024-44024 | MEDIUM | 6.5 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nicheaddons Medica... |
| CVE-2024-44022 | MEDIUM | 6.5 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Trustmary Review &... |
| CVE-2024-44010 | MEDIUM | 5.1 | 0.2% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in catchthemes Full f... |
| CVE-2024-9554 | MEDIUM | 6.3 | 0.4% | Oct 6, 2024 | A vulnerability classified as problematic was found in Sovell Smart Canteen System up to 3.0.7303.30513. Affected by thi... |
| CVE-2024-47313 | MEDIUM | 4.8 | 0.2% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in catchthemes Catch ... |
| CVE-2024-47310 | MEDIUM | 6.5 | 0.3% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in arisoft ARI Fancy ... |
| CVE-2024-47307 | MEDIUM | 6.5 | 0.2% | Oct 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Essential Plugin M... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now