2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-9320MEDIUM5.4A vulnerability has been found in SourceCodester Online Timesheet App 1.0 and classified as problematic. This vulnerabil...
CVE-2024-9300MEDIUM6.1A vulnerability classified as problematic was found in SourceCodester Online Railway Reservation System 1.0. This vulner...
CVE-2024-9299MEDIUM5.4A vulnerability classified as problematic has been found in SourceCodester Online Railway Reservation System 1.0. This a...
CVE-2024-9298MEDIUM4.3A vulnerability was found in SourceCodester Online Railway Reservation System 1.0. It has been rated as problematic. Aff...
CVE-2024-8189MEDIUM4.8The WP MultiTasking – WP Utilities plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘wpmt_menu_...
CVE-2024-9297MEDIUM6.3A vulnerability was found in SourceCodester Online Railway Reservation System 1.0. It has been declared as critical. Aff...
CVE-2024-8712MEDIUM6.1The GTM Server Side plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg...
CVE-2024-23961MEDIUM6.8Alpine Halo9 UPDM_wemCmdUpdFSpeDecomp Command Injection Remote Code Execution Vulnerability. This vulnerability allows p...
CVE-2024-23960MEDIUM4.6Alpine Halo9 Improper Verification of Cryptographic Signature Vulnerability. This vulnerability allows physically presen...
CVE-2024-23924MEDIUM6.8Alpine Halo9 UPDM_wemCmdCreatSHA256Hash Command Injection Remote Code Execution Vulnerability. This vulnerability allows...
CVE-2024-8715MEDIUM6.1The Simple LDAP Login plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_a...
CVE-2024-9189MEDIUM5.3The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a m...
CVE-2024-9023MEDIUM5.4The WP-WebAuthn plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wwa_login_form shortc...
CVE-2024-8788MEDIUM6.1The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the us...
CVE-2024-8547MEDIUM5.4The Simple Popup Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's [popup] short...
CVE-2024-9294MEDIUM6.3A vulnerability, which was classified as critical, has been found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff922722...
CVE-2024-38796MEDIUM5.9EDK2 contains a vulnerability in the PeCoffLoaderRelocateImage(). An Attacker may cause memory corruption due to an over...
CVE-2024-9291MEDIUM5.4A vulnerability classified as problematic has been found in kalvinGit kvf-admin up to f12a94dc1ebb7d1c51ee978a85e4c7ed75...
CVE-2024-47186MEDIUM6.1Filament is a collection of full-stack components for Laravel development. Versions of Filament from v3.0.0 through v3.2...
CVE-2024-46453MEDIUM6.1A cross-site scripting (XSS) vulnerability in the component /test/ of iq3xcite v2.31 to v3.05 allows attackers to execut...
CVE-2024-6436MEDIUM6.5An input validation vulnerability exists in the Rockwell Automation Sequence Manager™ which could allow a malicious user...
CVE-2024-9160MEDIUM5.4In versions of the PEADM Forge Module prior to 3.24.0 a security misconfiguration was discovered.
CVE-2024-46257MEDIUM6.3A Command injection vulnerability in requestLetsEncryptSslWithDnsChallenge in NginxProxyManager 2.11.3 allows an attacke...
CVE-2024-38308MEDIUM6.1Advantech ADAM 5550's web application includes a "logs" page where all the HTTP requests received are displayed to the ...
CVE-2024-37187MEDIUM5.7Advantech ADAM-5550 share user credentials with a low level of encryption, consisting of base 64 encoding.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now