2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-12685——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-12681——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-12154——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-11505——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-11389——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-11105——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-10243——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-10212——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-0398——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-58254——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-11738. Reason: This candidate is a duplicate of ...
CVE-2024-9453MEDIUM6.5A vulnerability was found in Red Hat OpenShift Jenkins. The bearer token is not obfuscated in the logs and potentially c...
CVE-2024-11937MEDIUM5.4The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's link...
CVE-2024-5647MEDIUM6.4Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled Magnific Popups li...
CVE-2024-9017MEDIUM6.4The PeepSo Core: Groups plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Group Description fiel...
CVE-2024-35164HIGH7.5The terminal emulator of Apache Guacamole 1.5.5 and older does not properly validate console codes received from servers...
CVE-2024-13786CRITICAL9.8The education theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.6.10 via...
CVE-2024-13451HIGH7.5The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form buil...
CVE-2024-11405MEDIUM6.1The WP Front-end login and register plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the email a...
CVE-2024-49365HIGH8.1tiny-secp256k1 is a tiny secp256k1 native/JS wrapper. Prior to version 1.1.7, a malicious JSON-stringifyable message can...
CVE-2024-49364HIGH8.1tiny-secp256k1 is a tiny secp256k1 native/JS wrapper. Prior to version 1.1.7, a private key can be extracted on signing ...
CVE-2024-46993MEDIUM4.4Electron is an open source framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. In ...
CVE-2024-46992HIGH7.8Electron is an open source framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Fro...
CVE-2024-12915MEDIUM4.6Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Devinim Sof...
CVE-2024-53621HIGH7.5A buffer overflow in the formSetCfm() function of Tenda AC1206 1200M 11ac US_AC1206V1.0RTL_V15.03.06.23_multi_TD01 allow...
CVE-2024-8419HIGH7.5The endpoint hosts a script that allows an unauthorized remote attacker to put the system in a fail-safe state over the ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now