2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-20896MEDIUM5.5Use of implicit intent for sensitive communication in Configuration message prior to SMR Jul-2024 Release 1 allows local...
CVE-2024-20895MEDIUM5.5Improper access control in Dar service prior to SMR Jul-2024 Release 1 allows local attackers to bypass restriction for ...
CVE-2024-20894MEDIUM4.3Improper handling of exceptional conditions in Secure Folder prior to SMR Jul-2024 Release 1 allows physical attackers t...
CVE-2024-20889MEDIUM4.3Improper authentication in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to pair with devices.
CVE-2024-5260MEDIUM5.4The Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free Elementor Widgets & Elem...
CVE-2024-5545MEDIUM5.3The Motors – Car Dealer, Classifieds & Listing plugin for WordPress is vulnerable to unauthorized modification of data d...
CVE-2024-5544MEDIUM6.1The Media Library Assistant plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the order parameter...
CVE-2024-5504MEDIUM5.4The Rife Elementor Extensions & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'tag...
CVE-2024-3513MEDIUM5.4The Ultimate Blocks – WordPress Blocks Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
CVE-2024-38857MEDIUM6.1Improper neutralization of input in Checkmk before versions 2.3.0p8, 2.2.0p28, 2.1.0p45, and 2.0.0 (EOL) allows attacker...
CVE-2024-37134MEDIUM6.7Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local h...
CVE-2024-37133MEDIUM6.7Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local h...
CVE-2024-37132MEDIUM6.7Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an incorrect privilege assignment vulnerability. A high p...
CVE-2024-37126MEDIUM6.7Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local h...
CVE-2024-5219MEDIUM5.4The Easy Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's file upload feat...
CVE-2024-32854MEDIUM6.7Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local h...
CVE-2024-0158MEDIUM6.7Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privilege...
CVE-2024-4627MEDIUM5.4The Rank Math SEO WordPress plugin before 1.0.219 does not sanitise and escape some of its settings, which could allow ...
CVE-2024-3999MEDIUM4.8The EazyDocs WordPress plugin before 2.5.0 does not sanitise and escape some of its settings, which could allow high pr...
CVE-2024-1427MEDIUM5.4The The Post Grid – Shortcode, Gutenberg Blocks and Elementor Addon for Post Grid plugin for WordPress is vulnerable to ...
CVE-2024-5419MEDIUM5.4The Void Contact Form 7 Widget For Elementor Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Script...
CVE-2024-5938MEDIUM5.4The Boot Store theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘link’ parameter within the them...
CVE-2024-2819MEDIUM6.5Incorrect Default Permissions, Improper Preservation of Permissions vulnerability in Hitachi Ops Center Common Services ...
CVE-2024-39314MEDIUM4.7toy-blog is a headless content management system implementation. Starting in version 0.4.3 and prior to version 0.5.0, t...
CVE-2024-39313MEDIUM5.3toy-blog is a headless content management system implementation. Starting in version 0.5.4 and prior to version 0.6.1, a...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now