2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-4309HIGH8.1SQL injection vulnerability in HubBank affecting version 1.0.2. This vulnerability could allow an attacker to send a spe...
CVE-2024-4308HIGH8.1SQL injection vulnerability in HubBank affecting version 1.0.2. This vulnerability could allow an attacker to send a spe...
CVE-2024-4307HIGH8.1SQL injection vulnerability in HubBank affecting version 1.0.2. This vulnerability could allow an attacker to send a spe...
CVE-2024-27322HIGH8.8Deserialization of untrusted data can occur in the R statistical programming language, on any version starting at 1.4.0 ...
CVE-2024-4306HIGH8.8Critical unrestricted file upload vulnerability in HubBank affecting version 1.0.2. This vulnerability allows a register...
CVE-2024-33595HIGH8.8Missing Authorization vulnerability in Jewel Theme Master Addons for Elementor.This issue affects Master Addons for Elem...
CVE-2024-33594HIGH7.5Missing Authorization vulnerability in Leaky Paywall.This issue affects Leaky Paywall: from n/a through 4.20.8.
CVE-2024-33591HIGH7.5Missing Authorization vulnerability in Tips and Tricks HQ Easy Accept Payments.This issue affects Easy Accept Payments: ...
CVE-2024-33635HIGH7.5Missing Authorization vulnerability in Piotnet Piotnet Addons For Elementor Pro.This issue affects Piotnet Addons For El...
CVE-2024-33597HIGH7.5Missing Authorization vulnerability in ProFaceOff SSU.This issue affects SSU: from n/a through 1.5.0.
CVE-2024-28961HIGH7.8Dell OpenManage Enterprise, versions 4.0.0 and 4.0.1, contains a sensitive information disclosure vulnerability. A local...
CVE-2024-33637HIGH7.5Insertion of Sensitive Information into Log File vulnerability in Solid Plugins Solid Affiliate.This issue affects Solid...
CVE-2024-3195HIGH7.2A vulnerability was found in MailCleaner up to 2023.03.14. It has been classified as critical. This affects an unknown p...
CVE-2024-3193HIGH8.8A vulnerability has been found in MailCleaner up to 2023.03.14 and classified as critical. Affected by this vulnerabilit...
CVE-2024-4303HIGH8.8ArmorX Android APP's multi-factor authentication (MFA) for the login function is not properly implemented. Remote attack...
CVE-2024-33904HIGH7In plugins/HookSystem.cpp in Hyprland through 0.39.1 (before 28c8561), through a race condition, a local attacker can ca...
CVE-2024-33681HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Sandor Kovacs Regenerate post permalink allows Cross-Site Scripting (...
CVE-2024-33571HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Infomaniak Network...
CVE-2024-33562HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 8theme XStore allo...
CVE-2024-33548HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AA-Team WZone allo...
CVE-2024-2505HIGH8.1The GamiPress WordPress plugin before 6.8.9's access control mechanism fails to properly restrict access to its setting...
CVE-2024-33646HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Toast Plugins Sticky Anything allows Cross-Site Scripting (XSS).This ...
CVE-2024-33645HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Eftakhairul Islam ...
CVE-2024-33633HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Piotnet Piotnet Ad...
CVE-2024-4301HIGH8.8N-Reporter and N-Cloud, products of the N-Partner, have an OS Command Injection vulnerability. Remote attackers with nor...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now