2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-7420MEDIUM6.5The Insert PHP Code Snippet plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and ...
CVE-2024-6533MEDIUM5.4Directus v10.13.0 allows an authenticated external attacker to execute arbitrary JavaScript on the client. This is possi...
CVE-2024-25024MEDIUM5.5IBM QRadar Suite Software 1.10.12.0 through 1.10.23.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 stores u...
CVE-2024-7809MEDIUM5.3A vulnerability was found in SourceCodester Online Graduate Tracer System 1.0. It has been declared as problematic. Affe...
CVE-2024-7625MEDIUM5.8In HashiCorp Nomad and Nomad Enterprise from 0.6.1 up to 1.6.13, 1.7.10, and 1.8.2, the archive unpacking process is vul...
CVE-2024-43368MEDIUM6.5The Trix editor, versions prior to 2.1.4, is vulnerable to XSS when pasting malicious code. This vulnerability is a bypa...
CVE-2024-7793MEDIUM5.4A vulnerability was found in SourceCodester Task Progress Tracker 1.0. It has been declared as problematic. Affected by ...
CVE-2024-42353MEDIUM6.1WebOb provides objects for HTTP requests and responses. When WebOb normalizes the HTTP Location header to include the re...
CVE-2024-7507MEDIUM6.5CVE-2024-7507 IMPACT A denial-of-service vulnerability exists in the affected products. This vulnerability occurs when...
CVE-2024-37529MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 could allow an authenticated user to cau...
CVE-2024-35152MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow an authenticated user to cause a deni...
CVE-2024-35136MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) federated server 10.5, 11.1, and 11.5 is vulnerable to...
CVE-2024-31882MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to a denial of service, un...
CVE-2024-5916MEDIUM4.4An information exposure vulnerability in Palo Alto Networks PAN-OS software enables a local system administrator to unin...
CVE-2024-42441MEDIUM6.7Incorrect privilege assignment in the installer for Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS and...
CVE-2024-42440MEDIUM6.7Improper privilege management in the installer for Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS and ...
CVE-2024-42439MEDIUM6.5Untrusted search path in the installer for Zoom Workplace Desktop App for macOS and Zoom Meeting SDK for macOS before 6....
CVE-2024-42438MEDIUM6.5Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user ...
CVE-2024-42437MEDIUM6.5Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user ...
CVE-2024-42436MEDIUM6.5Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user ...
CVE-2024-42435MEDIUM4.9Sensitive information disclosure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a pri...
CVE-2024-42434MEDIUM4.9Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged use...
CVE-2024-39824MEDIUM4.9Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged use...
CVE-2024-39823MEDIUM4.9Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged use...
CVE-2024-39822MEDIUM6.5Sensitive information exposure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an auth...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now