2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-45200MEDIUM6.3In Nintendo Mario Kart 8 Deluxe before 3.0.3, the LAN/LDN local multiplayer implementation allows a remote attacker to e...
CVE-2024-41999MEDIUM6.8Smart-tab Android app installed April 2023 or earlier contains an active debug code vulnerability. If this vulnerability...
CVE-2024-8449MEDIUM6.8Certain switch models from PLANET Technology have a Hard-coded Credential in the password recovering functionality, allo...
CVE-2024-8536MEDIUM5.4The Ultimate Blocks WordPress plugin before 3.2.2 does not validate and escape some of its block attributes before outp...
CVE-2024-8283MEDIUM4.8The Slider by 10Web WordPress plugin before 1.2.59 does not sanitise and escape some of its settings, which could allow...
CVE-2024-8239MEDIUM5.4The Starbox WordPress plugin before 3.5.3 does not properly render social media profiles URLs in certain contexts, like...
CVE-2024-3635MEDIUM4.8The Post Grid WordPress plugin before 7.5.0 does not sanitise and escape some of its Grid settings, which could allow h...
CVE-2024-9323MEDIUM5.4A vulnerability was found in SourceCodester Inventory Management System 1.0. It has been declared as problematic. Affect...
CVE-2024-9321MEDIUM5.3A vulnerability was found in SourceCodester Online Railway Reservation System 1.0 and classified as critical. This issue...
CVE-2024-9320MEDIUM5.4A vulnerability has been found in SourceCodester Online Timesheet App 1.0 and classified as problematic. This vulnerabil...
CVE-2024-9300MEDIUM6.1A vulnerability classified as problematic was found in SourceCodester Online Railway Reservation System 1.0. This vulner...
CVE-2024-9299MEDIUM5.4A vulnerability classified as problematic has been found in SourceCodester Online Railway Reservation System 1.0. This a...
CVE-2024-9298MEDIUM4.3A vulnerability was found in SourceCodester Online Railway Reservation System 1.0. It has been rated as problematic. Aff...
CVE-2024-8189MEDIUM4.8The WP MultiTasking – WP Utilities plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘wpmt_menu_...
CVE-2024-9297MEDIUM6.3A vulnerability was found in SourceCodester Online Railway Reservation System 1.0. It has been declared as critical. Aff...
CVE-2024-8712MEDIUM6.1The GTM Server Side plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg...
CVE-2024-23961MEDIUM6.8Alpine Halo9 UPDM_wemCmdUpdFSpeDecomp Command Injection Remote Code Execution Vulnerability. This vulnerability allows p...
CVE-2024-23960MEDIUM4.6Alpine Halo9 Improper Verification of Cryptographic Signature Vulnerability. This vulnerability allows physically presen...
CVE-2024-23924MEDIUM6.8Alpine Halo9 UPDM_wemCmdCreatSHA256Hash Command Injection Remote Code Execution Vulnerability. This vulnerability allows...
CVE-2024-8715MEDIUM6.1The Simple LDAP Login plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_a...
CVE-2024-9189MEDIUM5.3The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a m...
CVE-2024-9023MEDIUM5.4The WP-WebAuthn plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wwa_login_form shortc...
CVE-2024-8788MEDIUM6.1The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the us...
CVE-2024-8547MEDIUM5.4The Simple Popup Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's [popup] short...
CVE-2024-9294MEDIUM6.3A vulnerability, which was classified as critical, has been found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff922722...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now