2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-42450 | CRITICAL | 10 | 0.6% | Nov 19, 2024 | The Versa Director uses PostgreSQL (Postgres) to store operational and configuration data. It is also needed for High Av... |
| CVE-2024-11003 | HIGH | 7.8 | 11.5% | Nov 19, 2024 | Qualys discovered that needrestart, before version 3.8, passes unsanitized data to a library (Modules::ScanDeps) which e... |
| CVE-2024-10224 | HIGH | 7.8 | 8.6% | Nov 19, 2024 | Qualys discovered that if unsanitized input was used with the library Modules::ScanDeps, before version 1.36 a local att... |
| CVE-2024-52789 | HIGH | 8 | 0.4% | Nov 19, 2024 | Tenda W30E v2.0 V16.01.0.8 was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which allows ... |
| CVE-2024-52788 | HIGH | 8 | 0.4% | Nov 19, 2024 | Tenda W9 v1.0.0.7(4456) was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which allows att... |
| CVE-2024-52600 | MEDIUM | 5.3 | 0.6% | Nov 19, 2024 | Statmatic is a Laravel and Git powered content management system (CMS). Prior to version 5.17.0, assets uploaded with ap... |
| CVE-2024-52421 | HIGH | 7.1 | 0.2% | Nov 19, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in wp-buy WP Popup Window Maker easy-popup-lightbox-maker allows Stored ... |
| CVE-2024-52420 | MEDIUM | 4.3 | 0.2% | Nov 19, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Themeisle Disable Admin Notices individually disable-admin-notices al... |
| CVE-2024-52402 | CRITICAL | 9.6 | 0.8% | Nov 19, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in gunghoinc Exclusive Content Password Protect exclusive-content-passwo... |
| CVE-2024-52401 | CRITICAL | 9.6 | 0.3% | Nov 19, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in HuangYe WuDeng Hacklog DownloadManager hacklog-downloadmanager allows... |
| CVE-2024-52395 | MEDIUM | 5.3 | 0.4% | Nov 19, 2024 | Missing Authorization vulnerability in QuantumCloud Floating Buttons for WooCommerce shop-assistant-for-woocommerce-jarv... |
| CVE-2024-52388 | HIGH | 7.1 | 0.2% | Nov 19, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in mikeage Hebrew Date hebrewdates allows Stored XSS.This issue affects ... |
| CVE-2024-51938 | MEDIUM | 5.4 | 0.3% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nicheaddons Charit... |
| CVE-2024-51937 | MEDIUM | 6.5 | 0.2% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bnisia IA Map Anal... |
| CVE-2024-51936 | MEDIUM | 6.5 | 0.2% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in eSparkBiz ESB Test... |
| CVE-2024-51935 | MEDIUM | 6.5 | 0.2% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sam Perrow Fast Vi... |
| CVE-2024-51934 | MEDIUM | 6.5 | 0.2% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Uri Lazcano Ekilin... |
| CVE-2024-51933 | MEDIUM | 6.5 | 0.2% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in dozyde Cookie Nons... |
| CVE-2024-51932 | MEDIUM | 6.5 | 0.2% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Saif Kings Tab Sli... |
| CVE-2024-51931 | MEDIUM | 6.5 | 0.2% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Shazahanul Islam S... |
| CVE-2024-51930 | MEDIUM | 6.5 | 0.2% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in IronFeet Custom UR... |
| CVE-2024-51929 | MEDIUM | 6.5 | 0.3% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in philspectrum Icon ... |
| CVE-2024-51928 | MEDIUM | 6.5 | 0.3% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jakir Hasan Blocks... |
| CVE-2024-51927 | MEDIUM | 6.5 | 0.2% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Asaduzzaman Abir R... |
| CVE-2024-51926 | MEDIUM | 6.5 | 0.2% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpsoul GreenCon gr... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now