2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-42450CRITICAL10The Versa Director uses PostgreSQL (Postgres) to store operational and configuration data. It is also needed for High Av...
CVE-2024-11003HIGH7.8Qualys discovered that needrestart, before version 3.8, passes unsanitized data to a library (Modules::ScanDeps) which e...
CVE-2024-10224HIGH7.8Qualys discovered that if unsanitized input was used with the library Modules::ScanDeps, before version 1.36 a local att...
CVE-2024-52789HIGH8Tenda W30E v2.0 V16.01.0.8 was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which allows ...
CVE-2024-52788HIGH8Tenda W9 v1.0.0.7(4456) was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which allows att...
CVE-2024-52600MEDIUM5.3Statmatic is a Laravel and Git powered content management system (CMS). Prior to version 5.17.0, assets uploaded with ap...
CVE-2024-52421HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in wp-buy WP Popup Window Maker easy-popup-lightbox-maker allows Stored ...
CVE-2024-52420MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Themeisle Disable Admin Notices individually disable-admin-notices al...
CVE-2024-52402CRITICAL9.6Cross-Site Request Forgery (CSRF) vulnerability in gunghoinc Exclusive Content Password Protect exclusive-content-passwo...
CVE-2024-52401CRITICAL9.6Cross-Site Request Forgery (CSRF) vulnerability in HuangYe WuDeng Hacklog DownloadManager hacklog-downloadmanager allows...
CVE-2024-52395MEDIUM5.3Missing Authorization vulnerability in QuantumCloud Floating Buttons for WooCommerce shop-assistant-for-woocommerce-jarv...
CVE-2024-52388HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in mikeage Hebrew Date hebrewdates allows Stored XSS.This issue affects ...
CVE-2024-51938MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nicheaddons Charit...
CVE-2024-51937MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bnisia IA Map Anal...
CVE-2024-51936MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in eSparkBiz ESB Test...
CVE-2024-51935MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sam Perrow Fast Vi...
CVE-2024-51934MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Uri Lazcano Ekilin...
CVE-2024-51933MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in dozyde Cookie Nons...
CVE-2024-51932MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Saif Kings Tab Sli...
CVE-2024-51931MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Shazahanul Islam S...
CVE-2024-51930MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in IronFeet Custom UR...
CVE-2024-51929MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in philspectrum Icon ...
CVE-2024-51928MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jakir Hasan Blocks...
CVE-2024-51927MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Asaduzzaman Abir R...
CVE-2024-51926MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpsoul GreenCon gr...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now