2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-31285HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Tooltip WordPress Tooltips allows Stored XSS.This issue affects WordP...
CVE-2024-20797HIGH7.8Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted f...
CVE-2024-20795HIGH7.8Animate versions 23.0.4, 24.0.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could r...
CVE-2024-2966HIGH7.5The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for W...
CVE-2024-30916HIGH7.1An issue was discovered in eProsima FastDDS v.2.14.0 and before, allows a local attacker to cause a denial of service (D...
CVE-2024-29399HIGH7.6An issue was discovered in GNU Savane v.3.13 and before, allows a remote attacker to execute arbitrary code and escalate...
CVE-2024-30884HIGH7.1Reflected Cross-Site Scripting (XSS) vulnerability in Discuz! version X3.4 20220811, allows remote attackers to execute ...
CVE-2024-3621HIGH7.2A vulnerability was found in SourceCodester Kortex Lite Advocate Office Management System 1.0. It has been classified as...
CVE-2024-3620HIGH7.2A vulnerability was found in SourceCodester Kortex Lite Advocate Office Management System 1.0 and classified as critical...
CVE-2024-3619HIGH7.2A vulnerability has been found in SourceCodester Kortex Lite Advocate Office Management System 1.0 and classified as cri...
CVE-2024-3618HIGH7.2A vulnerability, which was classified as critical, was found in SourceCodester Kortex Lite Advocate Office Management Sy...
CVE-2024-25572HIGH8.8Cross-site request forgery (CSRF) vulnerability exists in Ninja Forms prior to 3.4.31. If a website administrator views ...
CVE-2024-3617HIGH7.2A vulnerability, which was classified as critical, has been found in SourceCodester Kortex Lite Advocate Office Manageme...
CVE-2024-2741HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Planet IGS-4215-16T2S, affecting firmware version 1.305b210528. This ...
CVE-2024-2740HIGH7.7Information exposure vulnerability in Planet IGS-4215-16T2S, affecting firmware version 1.305b210528. This vulnerability...
CVE-2024-29019HIGH8.1ESPHome is a system to control microcontrollers remotely through Home Automation systems. API endpoints in dashboard com...
CVE-2024-27992HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Link Whisper Link ...
CVE-2024-27985HIGH8.8Deserialization of Untrusted Data vulnerability in PropertyHive.This issue affects PropertyHive: from n/a through 2.0.9.
CVE-2024-27967HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Michael Leithold DSGVO All in one for WP.This issue affects DSGVO All...
CVE-2024-29903HIGH7.5Cosign provides code signing and transparency for containers and binaries. Prior to version 2.2.4, maliciously-crafted s...
CVE-2024-31999HIGH7.4@festify/secure-session creates a secure stateless cookie session for Fastify. At the end of the request handling, it wi...
CVE-2024-31997HIGH8.8XWiki Platform is a generic wiki platform. Prior to versions 4.10.19, 15.5.4, and 15.10-rc-1, parameters of UI extension...
CVE-2024-29504HIGH7.6Cross Site Scripting vulnerability in Summernote v.0.8.18 and before allows a remote attacker to execute arbtirary code ...
CVE-2024-31988HIGH8.8XWiki Platform is a generic wiki platform. Starting in version 13.9-rc-1 and prior to versions 4.10.19, 15.5.4, and 15.1...
CVE-2024-31987HIGH8.8XWiki Platform is a generic wiki platform. Starting in version 6.4-milestone-1 and prior to versions 4.10.19, 15.5.4, an...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now