2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41735 | MEDIUM | 5.4 | 0.2% | Aug 13, 2024 | SAP Commerce Backoffice does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vul... |
| CVE-2024-41733 | MEDIUM | 5.3 | 0.3% | Aug 13, 2024 | In SAP Commerce, valid user accounts can be identified during the customer registration and login processes. This allows... |
| CVE-2024-41732 | MEDIUM | 5.4 | 0.3% | Aug 13, 2024 | SAP NetWeaver Application Server ABAP allows an unauthenticated attacker to craft a URL link that could bypass allowli... |
| CVE-2024-41731 | MEDIUM | 4.3 | 0.4% | Aug 13, 2024 | SAP BusinessObjects Business Intelligence Platform allows an authenticated attacker to upload malicious code over the ne... |
| CVE-2024-33005 | MEDIUM | 6.3 | 0.2% | Aug 13, 2024 | Due to the missing authorization checks in the local systems, the admin users of SAP Web Dispatcher, SAP NetWeaver Appli... |
| CVE-2024-28166 | MEDIUM | 4.3 | 0.3% | Aug 13, 2024 | SAP BusinessObjects Business Intelligence Platform allows an authenticated attacker to upload malicious code over the ... |
| CVE-2024-7388 | MEDIUM | 4 | 0.2% | Aug 13, 2024 | The WP Bannerize Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via banner alt data in all versio... |
| CVE-2024-7709 | MEDIUM | 6.9 | 0.4% | Aug 13, 2024 | A vulnerability, which was classified as problematic, has been found in OcoMon 4.0RC1/4.0/5.0RC1. This issue affects som... |
| CVE-2024-7705 | MEDIUM | 5.3 | 0.3% | Aug 12, 2024 | A vulnerability was found in Fujian mwcms 1.0.0. It has been declared as critical. Affected by this vulnerability is the... |
| CVE-2024-43150 | MEDIUM | 5.4 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Xpro Xpro E... |
| CVE-2024-43149 | MEDIUM | 6.5 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CreativeMin... |
| CVE-2024-43148 | MEDIUM | 5.9 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in bPlugins St... |
| CVE-2024-43147 | MEDIUM | 6.5 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Merkulove S... |
| CVE-2024-43139 | MEDIUM | 6.5 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Antoine Hur... |
| CVE-2024-43137 | MEDIUM | 5.9 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WappPress T... |
| CVE-2024-43133 | MEDIUM | 5.4 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Themify The... |
| CVE-2024-43130 | MEDIUM | 5.9 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Antoine Hur... |
| CVE-2024-43125 | MEDIUM | 6.5 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Table Bu... |
| CVE-2024-43124 | MEDIUM | 6.5 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Iqonic Desi... |
| CVE-2024-43123 | MEDIUM | 6.5 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Techeshta C... |
| CVE-2024-37924 | MEDIUM | 5.3 | 0.4% | Aug 12, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wp2speed WP2Speed Faster allows Accessing Fu... |
| CVE-2024-35775 | MEDIUM | 5.9 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting'), Improper Authentication vul... |
| CVE-2024-7590 | MEDIUM | 5.4 | 0.3% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brainstorm Force S... |
| CVE-2024-43226 | MEDIUM | 6.5 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Jeroen Sorm... |
| CVE-2024-43225 | MEDIUM | 5.4 | 0.2% | Aug 12, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ThemeLooks ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now