2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-32582 | HIGH | 7.1 | 0.3% | Apr 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bowo Debug Log Man... |
| CVE-2024-32574 | HIGH | 7.1 | 0.4% | Apr 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ashish Ajani WP Si... |
| CVE-2024-32570 | HIGH | 7.1 | 0.3% | Apr 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Archetyped Corners... |
| CVE-2024-32563 | HIGH | 7.1 | 0.4% | Apr 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VikBooking Hotel B... |
| CVE-2024-32562 | HIGH | 8.6 | 0.5% | Apr 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VIICTORY MEDIA LLC... |
| CVE-2024-32559 | HIGH | 7.1 | 0.4% | Apr 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in hwk-fr WP 404 Auto... |
| CVE-2024-32558 | HIGH | 7.1 | 0.4% | Apr 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in impleCode eCommerc... |
| CVE-2024-32603 | HIGH | 8.8 | 0.5% | Apr 18, 2024 | Deserialization of Untrusted Data vulnerability in ThemeKraft WooBuddy.This issue affects WooBuddy: from n/a through 3.4... |
| CVE-2024-32595 | HIGH | 7.1 | 0.4% | Apr 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mat Bao Corp WP He... |
| CVE-2024-32588 | HIGH | 7.1 | 0.5% | Apr 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThimPress LearnPre... |
| CVE-2024-29001 | HIGH | 7.4 | 0.6% | Apr 18, 2024 | A SolarWinds Platform SWQL Injection Vulnerability was identified in the user interface. This vulnerability requires aut... |
| CVE-2024-32345 | HIGH | 7.2 | 0.5% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings menu of CMSimple v5.15 allows attackers to execute arbitrary ... |
| CVE-2024-21989 | HIGH | 8.8 | 0.4% | Apr 17, 2024 | ONTAP Select Deploy administration utility versions 9.12.1.x, 9.13.1.x and 9.14.1.x are susceptible to a vulnerability ... |
| CVE-2024-3323 | HIGH | 8.3 | 0.4% | Apr 17, 2024 | Cross Site Scripting in UI Request/Response Validation in TIBCO JasperReports Server 8.0.4 and 8.2.0 allows allows f... |
| CVE-2024-31583 | HIGH | 7.8 | 0.3% | Apr 17, 2024 | Pytorch before version v2.2.0 was discovered to contain a use-after-free vulnerability in torch/csrc/jit/mobile/interpre... |
| CVE-2024-31582 | HIGH | 7.8 | 0.3% | Apr 17, 2024 | FFmpeg version n6.1 was discovered to contain a heap buffer overflow vulnerability in the draw_block_rectangle function ... |
| CVE-2024-31041 | HIGH | 7.5 | 0.6% | Apr 17, 2024 | Null Pointer Dereference vulnerability in topic_filtern function in mqtt_parser.c in NanoMQ 0.21.7 allows attackers to c... |
| CVE-2024-31031 | HIGH | 7.5 | 0.9% | Apr 17, 2024 | An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a sequence of messages leadin... |
| CVE-2024-2961 | HIGH | 7.3 | 88.3% | Apr 17, 2024 | The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4... |
| CVE-2024-30983 | HIGH | 7.3 | 0.3% | Apr 17, 2024 | SQL Injection vulnerability in phpgurukul Cyber Cafe Management System Using PHP & MySQL 1.0 allows attackers to run arb... |
| CVE-2024-28073 | HIGH | 7.2 | 1.1% | Apr 17, 2024 | SolarWinds Serv-U was found to be susceptible to a Directory Traversal Remote Code Vulnerability. This vulnerability req... |
| CVE-2024-32463 | HIGH | 7.1 | 0.6% | Apr 17, 2024 | phlex is an open source framework for building object-oriented views in Ruby. There is a potential cross-site scripting ... |
| CVE-2024-32317 | HIGH | 7.5 | 0.4% | Apr 17, 2024 | Tenda AC10 v4.0 V16.03.10.13 and V16.03.10.20 firmware has a stack overflow vulnerability via the adslPwd parameter in t... |
| CVE-2024-32305 | HIGH | 8.8 | 0.6% | Apr 17, 2024 | Tenda A18 v15.03.05.05 firmware has a stack overflow vulnerability located via the PPW parameter in the fromWizardHandle... |
| CVE-2024-32303 | HIGH | 8 | 0.4% | Apr 17, 2024 | Tenda AC15 v15.03.20_multi, v15.03.05.19, and v15.03.05.18 firmware has a stack overflow vulnerability located via the P... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now