2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-20996 | MEDIUM | 4.9 | 0.9% | Jul 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are... |
| CVE-2024-6777 | MEDIUM | 6.5 | 0.3% | Jul 16, 2024 | Use after free in Navigation in Google Chrome prior to 126.0.6478.182 allowed an attacker who convinced a user to instal... |
| CVE-2024-6395 | MEDIUM | 5.3 | 0.5% | Jul 16, 2024 | An exposure of sensitive information vulnerability in GitHub Enterprise Server would allow an attacker to enumerate the ... |
| CVE-2024-6336 | MEDIUM | 5.3 | 0.4% | Jul 16, 2024 | A Security Misconfiguration vulnerability in GitHub Enterprise Server allowed sensitive information disclosure to unauth... |
| CVE-2024-5817 | MEDIUM | 6.5 | 0.5% | Jul 16, 2024 | An Incorrect Authorization vulnerability was identified in GitHub Enterprise Server that allowed read access to issue co... |
| CVE-2024-5816 | MEDIUM | 5.3 | 0.5% | Jul 16, 2024 | An Incorrect Authorization vulnerability was identified in GitHub Enterprise Server that allowed a suspended GitHub App ... |
| CVE-2024-5815 | MEDIUM | 6.5 | 0.3% | Jul 16, 2024 | A Cross-Site Request Forgery vulnerability in GitHub Enterprise Server allowed write operations on a victim-owned reposi... |
| CVE-2024-5795 | MEDIUM | 6.5 | 0.6% | Jul 16, 2024 | A Denial of Service vulnerability was identified in GitHub Enterprise Server that allowed an attacker to cause unbounded... |
| CVE-2024-5566 | MEDIUM | 6.5 | 0.5% | Jul 16, 2024 | An improper privilege management vulnerability allowed users to migrate private repositories without having appropriate ... |
| CVE-2024-40536 | MEDIUM | 5.3 | 0.4% | Jul 16, 2024 | Shenzhen Libituo Technology Co., Ltd LBT-T300-T400 v3.2 were discovered to contain a stack overflow via the pin_3g_code ... |
| CVE-2024-40503 | MEDIUM | 6.5 | 0.4% | Jul 16, 2024 | An issue in Tenda AX12 v.16.03.49.18_cn+ allows a remote attacker to cause a denial of service via the Routing functiona... |
| CVE-2024-39036 | MEDIUM | 6.5 | 0.6% | Jul 16, 2024 | SeaCMS v12.9 is vulnerable to Arbitrary File Read via admin_safe.php. |
| CVE-2024-39908 | MEDIUM | 4.3 | 1.5% | Jul 16, 2024 | REXML is an XML toolkit for Ruby. The REXML gem before 3.3.1 has some DoS vulnerabilities when it parses an XML that ha... |
| CVE-2024-6326 | MEDIUM | 5.5 | 0.2% | Jul 16, 2024 | An exposure of sensitive information vulnerability exists in the Rockwell Automation FactoryTalk® System Service. A mali... |
| CVE-2024-6325 | MEDIUM | 6.5 | 0.3% | Jul 16, 2024 | The v6.40 release of Rockwell Automation FactoryTalk® Policy Manager CVE-2021-22681 https://www.rockwellautomation.com/e... |
| CVE-2024-40626 | MEDIUM | 5.4 | 0.5% | Jul 16, 2024 | Outline is an open source, collaborative document editor. A type confusion issue was found in ProseMirror’s rendering pr... |
| CVE-2024-3232 | MEDIUM | 6.8 | 0.5% | Jul 16, 2024 | A formula injection vulnerability exists in Tenable Identity Exposure where an authenticated remote attacker with admini... |
| CVE-2024-6621 | MEDIUM | 4.3 | 0.4% | Jul 16, 2024 | The RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging plugin for WordPress is vulnerable to unauth... |
| CVE-2024-6579 | MEDIUM | 4.3 | 0.4% | Jul 16, 2024 | The Web and WooCommerce Addons for WPBakery Builder plugin for WordPress is vulnerable to unauthorized plugin settings m... |
| CVE-2024-6570 | MEDIUM | 5.3 | 0.5% | Jul 16, 2024 | The Glossary plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 2.2.26. Th... |
| CVE-2024-6565 | MEDIUM | 5.3 | 0.4% | Jul 16, 2024 | The AForms — Form Builder for Price Calculator & Cost Estimation plugin for WordPress is vulnerable to Full Path Disclos... |
| CVE-2024-5852 | MEDIUM | 4.3 | 0.7% | Jul 16, 2024 | The WordPress File Upload plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including... |
| CVE-2024-3779 | MEDIUM | 5.5 | 0.2% | Jul 16, 2024 | Denial of service vulnerability present shortly after product installation or upgrade, potentially allowed an attacker t... |
| CVE-2024-3587 | MEDIUM | 5.4 | 0.4% | Jul 16, 2024 | The Premium Portfolio Features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the... |
| CVE-2024-2691 | MEDIUM | 5.4 | 0.3% | Jul 16, 2024 | The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now