2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3706 | HIGH | 7.5 | 0.5% | Apr 12, 2024 | Information exposure vulnerability in OpenGnsys affecting version 1.1.1d (Espeto). This vulnerability allows an attacker... |
| CVE-2024-3705 | HIGH | 8.8 | 0.8% | Apr 12, 2024 | Unrestricted file upload vulnerability in OpenGnsys affecting version 1.1.1d (Espeto). This vulnerability allows an atta... |
| CVE-2024-3686 | HIGH | 7.5 | 0.9% | Apr 12, 2024 | A vulnerability has been found in DedeCMS 5.7.112-UTF8 and classified as problematic. Affected by this vulnerability is ... |
| CVE-2024-31363 | HIGH | 8.8 | 0.3% | Apr 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in LifterLMS.This issue affects LifterLMS: from n/a through 7.5.0. |
| CVE-2024-31362 | HIGH | 8.8 | 0.2% | Apr 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Metagauss ProfileGrid.This issue affects ProfileGrid : from n/a throu... |
| CVE-2024-31301 | HIGH | 8.8 | 0.2% | Apr 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Themeisle Multiple Page Generator Plugin – MPG.This issue affects Mul... |
| CVE-2024-31293 | HIGH | 8.8 | 0.2% | Apr 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Easy Digital Downloads.This issue affects Easy Digital Downloads: fro... |
| CVE-2024-31269 | HIGH | 8.8 | 0.2% | Apr 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Supsystic Easy Google Maps.This issue affects Easy Google Maps: from ... |
| CVE-2024-31268 | HIGH | 8.8 | 0.3% | Apr 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in AppPresser Team AppPresser.This issue affects AppPresser: from n/a th... |
| CVE-2024-31238 | HIGH | 8.8 | 0.2% | Apr 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Zaytech Smart Online Order for Clover.This issue affects Smart Online... |
| CVE-2024-25545 | HIGH | 7.8 | 0.2% | Apr 12, 2024 | An issue in Weave Weave Desktop v.7.78.10 allows a local attacker to execute arbitrary code via a crafted script to the ... |
| CVE-2024-3211 | HIGH | 8.8 | 0.6% | Apr 12, 2024 | The Shopping Cart & eCommerce Store plugin for WordPress is vulnerable to SQL Injection via the 'productid' attribute of... |
| CVE-2024-3054 | HIGH | 7.2 | 41.5% | Apr 12, 2024 | WPvivid Backup & Migration Plugin for WordPress is vulnerable to PHAR Deserialization in all versions up to, and includi... |
| CVE-2024-29400 | HIGH | 7.5 | 0.6% | Apr 12, 2024 | An issue was discovered in RuoYi v4.5.1, allows attackers to obtain sensitive information via the status parameter. |
| CVE-2024-27309 | HIGH | 7.4 | 1.1% | Apr 12, 2024 | While an Apache Kafka cluster is being migrated from ZooKeeper mode to KRaft mode, in some cases ACLs will not be correc... |
| CVE-2024-28458 | HIGH | 7.5 | 0.7% | Apr 11, 2024 | Null Pointer Dereference vulnerability in swfdump in swftools 0.9.2 allows attackers to crash the appliation via the fun... |
| CVE-2024-25852 | HIGH | 8.8 | 16.5% | Apr 11, 2024 | Linksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution vulnerability in the "AccessControlList" parameter ... |
| CVE-2024-25376 | HIGH | 7.8 | 0.4% | Apr 11, 2024 | An issue discovered in Thesycon Software Solutions Gmbh & Co. KG TUSBAudio MSI-based installers before 5.68.0 allows a l... |
| CVE-2024-22722 | HIGH | 7.2 | 0.9% | Apr 11, 2024 | Server Side Template Injection (SSTI) vulnerability in Form Tools 3.1.1 allows attackers to run arbitrary commands via t... |
| CVE-2024-22719 | HIGH | 8.1 | 0.5% | Apr 11, 2024 | SQL Injection vulnerability in Form Tools 3.1.1 allows attackers to run arbitrary SQL commands via the 'keyword' when se... |
| CVE-2024-30273 | HIGH | 7.8 | 0.4% | Apr 11, 2024 | Illustrator versions 28.3, 27.9.2 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could res... |
| CVE-2024-30272 | HIGH | 7.8 | 0.3% | Apr 11, 2024 | Illustrator versions 28.3, 27.9.2 and earlier are affected by an out-of-bounds write vulnerability that could result in ... |
| CVE-2024-30271 | HIGH | 7.8 | 0.3% | Apr 11, 2024 | Illustrator versions 28.3, 27.9.2 and earlier are affected by an out-of-bounds write vulnerability that could result in ... |
| CVE-2024-32106 | HIGH | 8.8 | 0.2% | Apr 11, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WP Compress WP Compress – Image Optimizer [All-In-One].This issue aff... |
| CVE-2024-31932 | HIGH | 8.8 | 0.2% | Apr 11, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in CreativeThemes Blocksy Companion.This issue affects Blocksy Companion... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now