2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-44192MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in Safari 18, iOS 18 and iPadOS 18, macOS Sequoia 15, ...
CVE-2024-55199MEDIUM5.4A Stored Cross Site Scripting (XSS) vulnerability in Celk Sistemas Celk Saude v.3.1.252.1 allows a remote attacker to st...
CVE-2024-53307MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability in the /mw/ endpoint of Evisions MAPS v6.10.2.267 allows attackers ...
CVE-2024-52812MEDIUM5.4LF Edge eKuiper is an internet-of-things data analytics and stream processing engine. Prior to version 2.0.8, auser with...
CVE-2024-47109MEDIUM5.3IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 UI could disclosure the installation path ...
CVE-2024-12604MEDIUM6.5Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Pa...
CVE-2024-57492MEDIUM5.5An issue in redoxOS relibc before commit 98aa4ea5 allows a local attacker to cause a denial of service via the round_up_...
CVE-2024-13919MEDIUM6.1The Laravel framework versions between 11.9.0 and 11.35.1 are susceptible to reflected cross-site scripting due to an im...
CVE-2024-13918MEDIUM6.1The Laravel framework versions between 11.9.0 and 11.35.1 are susceptible to reflected cross-site scripting due to an im...
CVE-2024-10326MEDIUM4.3The RomethemeKit For Elementor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing ...
CVE-2024-13675MEDIUM5.4The SlingBlocks – Gutenberg Blocks by FunnelKit (Formerly WooFunnels) plugin for WordPress is vulnerable to Stored Cross...
CVE-2024-13649MEDIUM5.4The 140+ Widgets | Xpro Addons For Elementor – FREE plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi...
CVE-2024-13816MEDIUM5.4The Aiomatic - Automatic AI Content Writer & Editor, GPT-3 & GPT-4, ChatGPT ChatBot & AI Toolkit plugin for WordPress is...
CVE-2024-10321MEDIUM4.3The All-in-One Addons for Elementor – WidgetKit plugin for WordPress is vulnerable to Sensitive Information Exposure in ...
CVE-2024-13844MEDIUM4.9The Post SMTP plugin for WordPress is vulnerable to generic SQL Injection via the ‘columns’ parameter in all versions up...
CVE-2024-13826MEDIUM5.4The Email Keep WordPress plugin through 1.1 does not have CSRF check in place when updating its settings, which could al...
CVE-2024-13825MEDIUM6.1The Email Keep WordPress plugin through 1.1 does not sanitise and escape a parameter before outputting it back in the pa...
CVE-2024-12119MEDIUM5.4The FooGallery – Responsive Photo Gallery, Image Viewer, Justified, Masonry & Carousel plugin for WordPress is vulnerabl...
CVE-2024-12114MEDIUM4.3The FooGallery – Responsive Photo Gallery, Image Viewer, Justified, Masonry & Carousel plugin for WordPress is vulnerabl...
CVE-2024-13640MEDIUM5.9The Print Invoice & Delivery Notes for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure ...
CVE-2024-13895MEDIUM6.3The The Code Snippets CPT plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and...
CVE-2024-13774MEDIUM6.5The Wishlist for WooCommerce: Multi Wishlists Per Customer plugin for WordPress is vulnerable to Cross-Site Request Forg...
CVE-2024-12460MEDIUM6.4The Years Since – Timeless Texts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'yea...
CVE-2024-53698MEDIUM4.9A double free vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner...
CVE-2024-53696MEDIUM4.9A server-side request forgery (SSRF) vulnerability has been reported to affect QuLog Center. If exploited, the vulnerabi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now