2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-50609 | HIGH | 7.5 | 1.0% | Feb 18, 2025 | An issue was discovered in Fluent Bit 3.1.9. When the OpenTelemetry input plugin is running and listening on an IP addre... |
| CVE-2024-50608 | HIGH | 7.5 | 1.0% | Feb 18, 2025 | An issue was discovered in Fluent Bit 3.1.9. When the Prometheus Remote Write input plugin is running and listening on a... |
| CVE-2024-57046 | HIGH | 8.8 | 2.1% | Feb 18, 2025 | A vulnerability in the Netgear DGN2200 router with firmware version v1.0.0.46 and earlier permits unauthorized individua... |
| CVE-2024-13681 | HIGH | 7.5 | 0.6% | Feb 18, 2025 | The Uncode theme for WordPress is vulnerable to arbitrary file read due to insufficient input validation in the 'uncode_... |
| CVE-2024-13369 | HIGH | 8.8 | 0.4% | Feb 18, 2025 | The Tour Master - Tour Booking, Travel, Hotel plugin for WordPress is vulnerable to time-based SQL Injection via the ‘re... |
| CVE-2024-57964 | HIGH | 7.3 | 0.2% | Feb 18, 2025 | Insecure Loading of Dynamic Link Libraries have been discovered in HVAC Energy Saving Program, which could allow local a... |
| CVE-2024-57963 | HIGH | 7.3 | 0.2% | Feb 18, 2025 | Insecure Loading of Dynamic Link Libraries have been discovered in USB-CONVERTERCABLE DRIVER, which could allow local at... |
| CVE-2024-13315 | HIGH | 8.8 | 0.2% | Feb 18, 2025 | The Shopwarden – Automated WooCommerce monitoring & testing plugin for WordPress is vulnerable to Cross-Site Request For... |
| CVE-2024-13852 | HIGH | 8.8 | 0.3% | Feb 18, 2025 | The Option Editor plugin for WordPress is vulnerable to Cross-Site Request Forgery in version 1.0. This is due to missin... |
| CVE-2024-13684 | HIGH | 8.1 | 0.2% | Feb 18, 2025 | The Reset plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.6. Th... |
| CVE-2024-13677 | HIGH | 8.8 | 0.5% | Feb 18, 2025 | The GetBookingsWP – Appointments Booking Calendar Plugin For WordPress plugin for WordPress is vulnerable to privilege e... |
| CVE-2024-13622 | HIGH | 7.5 | 0.5% | Feb 18, 2025 | The File Uploads Addon for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versi... |
| CVE-2024-12314 | HIGH | 7.2 | 0.3% | Feb 18, 2025 | The Rapid Cache plugin for WordPress is vulnerable to Cache Poisoning in all versions up to, and including, 1.2.3. This ... |
| CVE-2024-13726 | HIGH | 8.6 | 1.9% | Feb 17, 2025 | The Coder WordPress plugin through 1.3.4 does not properly sanitise and escape a parameter before using it in a SQL st... |
| CVE-2024-13626 | HIGH | 7.1 | 0.3% | Feb 17, 2025 | The VR-Frases (collect & share quotes) WordPress plugin through 3.0.1 does not sanitise and escape a parameter before ou... |
| CVE-2024-13625 | HIGH | 7.1 | 0.6% | Feb 17, 2025 | The Tube Video Ads Lite WordPress plugin through 1.5.7 does not sanitise and escape a parameter before outputting it bac... |
| CVE-2024-44044 | HIGH | 7.1 | 0.2% | Feb 16, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in brandexponents Osh... |
| CVE-2024-13488 | HIGH | 7.5 | 1.1% | Feb 15, 2025 | The LTL Freight Quotes – Estes Edition plugin for WordPress is vulnerable to SQL Injection via the 'dropship_edit_id' an... |
| CVE-2024-5462 | HIGH | 7.5 | 0.1% | Feb 15, 2025 | If Brocade Fabric OS before Fabric OS 9.2.0 configuration settings are not set to encrypt SNMP passwords, then the SNMP ... |
| CVE-2024-5461 | HIGH | 8 | 0.4% | Feb 15, 2025 | Implementation of the Simple Network Management Protocol (SNMP) operating on the Brocade 6547 (FC5022) embedded switch... |
| CVE-2024-8893 | HIGH | 7.3 | 0.3% | Feb 14, 2025 | Use of Hard-coded Credentials vulnerability in GoodWe Technologies Co., Ltd. GW1500‑XS allows anyone in physical proximi... |
| CVE-2024-57778 | HIGH | 8.8 | 0.5% | Feb 14, 2025 | An issue in Orbe ONetView Roeador Onet-1200 Orbe 1680210096 allows a remote attacker to escalate privileges via the serv... |
| CVE-2024-12651 | HIGH | 8.5 | 0.3% | Feb 14, 2025 | Exposed Dangerous Method or Function vulnerability in PTT Inc. HGS Mobile App allows Manipulating User-Controlled Variab... |
| CVE-2024-52500 | HIGH | 7.2 | 0.4% | Feb 14, 2025 | Missing Authorization vulnerability in monetagwp Monetag Official Plugin monetag-official allows Exploiting Incorrectly ... |
| CVE-2024-13641 | HIGH | 7.5 | 0.4% | Feb 14, 2025 | The Return Refund and Exchange For WooCommerce – Return Management System, RMA Exchange, Wallet And Cancel Order Feature... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now