2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-5911MEDIUM4.9An arbitrary file upload vulnerability in Palo Alto Networks Panorama software enables an authenticated read-write admin...
CVE-2024-5492MEDIUM6.1Open redirect vulnerability allows a remote unauthenticated attacker to redirect users to arbitrary websites in NetScale...
CVE-2024-37147MEDIUM4.3GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track...
CVE-2024-27095MEDIUM4.8Decidim is a participatory democracy framework. The admin panel is subject to potential XSS attach in case the attacker ...
CVE-2024-27090MEDIUM5.3Decidim is a participatory democracy framework, written in Ruby on Rails, originally developed for the Barcelona City go...
CVE-2024-6647MEDIUM5.1** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical has been found in Croogo up to 4.0.7. This affect...
CVE-2024-6646MEDIUM6.9A vulnerability was found in Netgear WN604 up to 20240710. It has been rated as problematic. Affected by this issue is s...
CVE-2024-37504MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Ninja Team FileBird Document Library.This is...
CVE-2024-37498MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pauple Table & Contact Form 7 Database – Tab...
CVE-2024-37270MEDIUM5.3Insertion of Sensitive Information into Log File vulnerability in TrustedLogin TrustedLogin Vendor.This issue affects Tr...
CVE-2024-37205MEDIUM5.3Insertion of Sensitive Information into Log File vulnerability in SERVIT Software Solutions.This issue affects affiliate...
CVE-2024-6645MEDIUM6.3A vulnerability was found in WuKongOpenSource Wukong_nocode up to 20230807. It has been declared as critical. Affected b...
CVE-2024-6644MEDIUM6.3A vulnerability was found in zmops ArgusDBM up to 0.1.0. It has been classified as critical. Affected is the function ge...
CVE-2024-5178MEDIUM6.9ServiceNow has addressed a sensitive file read vulnerability that was identified in the Washington DC, Vancouver, and Ut...
CVE-2024-40417MEDIUM6.5A vulnerability was found in Tenda AX1806 1.0.0.1. Affected by this issue is the function formSetRebootTimer of the file...
CVE-2024-40412MEDIUM6.8Tenda AX12 v1.0 v22.03.01.46 contains a stack overflow in the deviceList parameter of the sub_42E410 function.
CVE-2024-20456MEDIUM6.7A vulnerability in the boot process of Cisco IOS XR Software could allow an authenticated, local attacker with high priv...
CVE-2024-40336MEDIUM6.1idccms v1.35 is vulnerable to Cross Site Scripting (XSS) within the 'Image Advertising Management.'
CVE-2024-40328MEDIUM6.3idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/memberOnline_deal.ph...
CVE-2024-6556MEDIUM5.3The SmartCrawl WordPress SEO checker, SEO analyzer, SEO optimizer plugin for WordPress is vulnerable to Full Path Disclo...
CVE-2024-5664MEDIUM5.4The MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar plugin for WordPress is vulnerable to Stored Cross...
CVE-2024-39493MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: qat - Fix ADF_DEV_RESET_SYNC memory leak U...
CVE-2024-39491MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: cs35l56: Fix lifetime of cs_dsp instance...
CVE-2024-39490MEDIUM6.2In the Linux kernel, the following vulnerability has been resolved: ipv6: sr: fix missing sk_buff release in seg6_input...
CVE-2024-39489MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ipv6: sr: fix memleak in seg6_hmac_init_algo seg6_...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now