2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4309 | HIGH | 8.1 | 0.4% | Apr 29, 2024 | SQL injection vulnerability in HubBank affecting version 1.0.2. This vulnerability could allow an attacker to send a spe... |
| CVE-2024-4308 | HIGH | 8.1 | 0.4% | Apr 29, 2024 | SQL injection vulnerability in HubBank affecting version 1.0.2. This vulnerability could allow an attacker to send a spe... |
| CVE-2024-4307 | HIGH | 8.1 | 0.4% | Apr 29, 2024 | SQL injection vulnerability in HubBank affecting version 1.0.2. This vulnerability could allow an attacker to send a spe... |
| CVE-2024-27322 | HIGH | 8.8 | 23.6% | Apr 29, 2024 | Deserialization of untrusted data can occur in the R statistical programming language, on any version starting at 1.4.0 ... |
| CVE-2024-4306 | HIGH | 8.8 | 0.7% | Apr 29, 2024 | Critical unrestricted file upload vulnerability in HubBank affecting version 1.0.2. This vulnerability allows a register... |
| CVE-2024-33595 | HIGH | 8.8 | 0.5% | Apr 29, 2024 | Missing Authorization vulnerability in Jewel Theme Master Addons for Elementor.This issue affects Master Addons for Elem... |
| CVE-2024-33594 | HIGH | 7.5 | 0.5% | Apr 29, 2024 | Missing Authorization vulnerability in Leaky Paywall.This issue affects Leaky Paywall: from n/a through 4.20.8. |
| CVE-2024-33591 | HIGH | 7.5 | 0.5% | Apr 29, 2024 | Missing Authorization vulnerability in Tips and Tricks HQ Easy Accept Payments.This issue affects Easy Accept Payments: ... |
| CVE-2024-33635 | HIGH | 7.5 | 0.6% | Apr 29, 2024 | Missing Authorization vulnerability in Piotnet Piotnet Addons For Elementor Pro.This issue affects Piotnet Addons For El... |
| CVE-2024-33597 | HIGH | 7.5 | 0.6% | Apr 29, 2024 | Missing Authorization vulnerability in ProFaceOff SSU.This issue affects SSU: from n/a through 1.5.0. |
| CVE-2024-28961 | HIGH | 7.8 | 0.1% | Apr 29, 2024 | Dell OpenManage Enterprise, versions 4.0.0 and 4.0.1, contains a sensitive information disclosure vulnerability. A local... |
| CVE-2024-33637 | HIGH | 7.5 | 0.6% | Apr 29, 2024 | Insertion of Sensitive Information into Log File vulnerability in Solid Plugins Solid Affiliate.This issue affects Solid... |
| CVE-2024-3195 | HIGH | 7.2 | 1.0% | Apr 29, 2024 | A vulnerability was found in MailCleaner up to 2023.03.14. It has been classified as critical. This affects an unknown p... |
| CVE-2024-3193 | HIGH | 8.8 | 4.2% | Apr 29, 2024 | A vulnerability has been found in MailCleaner up to 2023.03.14 and classified as critical. Affected by this vulnerabilit... |
| CVE-2024-4303 | HIGH | 8.8 | 0.7% | Apr 29, 2024 | ArmorX Android APP's multi-factor authentication (MFA) for the login function is not properly implemented. Remote attack... |
| CVE-2024-33904 | HIGH | 7 | 0.2% | Apr 29, 2024 | In plugins/HookSystem.cpp in Hyprland through 0.39.1 (before 28c8561), through a race condition, a local attacker can ca... |
| CVE-2024-33681 | HIGH | 7.1 | 0.2% | Apr 29, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Sandor Kovacs Regenerate post permalink allows Cross-Site Scripting (... |
| CVE-2024-33571 | HIGH | 7.1 | 0.4% | Apr 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Infomaniak Network... |
| CVE-2024-33562 | HIGH | 7.1 | 0.4% | Apr 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 8theme XStore allo... |
| CVE-2024-33548 | HIGH | 7.1 | 0.4% | Apr 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AA-Team WZone allo... |
| CVE-2024-2505 | HIGH | 8.1 | 0.6% | Apr 29, 2024 | The GamiPress WordPress plugin before 6.8.9's access control mechanism fails to properly restrict access to its setting... |
| CVE-2024-33646 | HIGH | 7.1 | 0.2% | Apr 29, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Toast Plugins Sticky Anything allows Cross-Site Scripting (XSS).This ... |
| CVE-2024-33645 | HIGH | 7.1 | 0.4% | Apr 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Eftakhairul Islam ... |
| CVE-2024-33633 | HIGH | 7.1 | 0.4% | Apr 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Piotnet Piotnet Ad... |
| CVE-2024-4301 | HIGH | 8.8 | 1.1% | Apr 29, 2024 | N-Reporter and N-Cloud, products of the N-Partner, have an OS Command Injection vulnerability. Remote attackers with nor... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now