2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-29119 | HIGH | 8.5 | 0.1% | Nov 12, 2024 | A vulnerability has been identified in Spectrum Power 7 (All versions < V24Q3). The affected product contains several ro... |
| CVE-2024-11123 | HIGH | 7.5 | 1.0% | Nov 12, 2024 | A vulnerability, which was classified as problematic, was found in 上海灵当信息科技有限公司 Lingdang CRM up to 8.6.4.3. This affects... |
| CVE-2024-11122 | CRITICAL | 9.8 | 0.6% | Nov 12, 2024 | A vulnerability, which was classified as critical, has been found in 上海灵当信息科技有限公司 Lingdang CRM up to 8.6.4.3. Affected b... |
| CVE-2024-11121 | CRITICAL | 9.8 | 0.6% | Nov 12, 2024 | A vulnerability classified as critical was found in 上海灵当信息科技有限公司 Lingdang CRM up to 8.6.4.3. Affected by this vulnerabil... |
| CVE-2024-9998 | — | — | — | Nov 12, 2024 | Rejected reason: The vulnerability has no impact, so it has been deprecated. |
| CVE-2024-10245 | CRITICAL | 9.8 | 1.2% | Nov 12, 2024 | The Relais 2FA plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.0. This i... |
| CVE-2024-10323 | MEDIUM | 5.4 | 0.3% | Nov 12, 2024 | The JetWidgets For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File upl... |
| CVE-2024-10179 | MEDIUM | 6.4 | 0.3% | Nov 12, 2024 | The Slickstream: Engagement and Conversions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl... |
| CVE-2024-9836 | MEDIUM | 5.9 | 0.3% | Nov 12, 2024 | The RSS Feed Widget WordPress plugin before 3.0.0 does not validate and escape some of its shortcode attributes before o... |
| CVE-2024-9835 | MEDIUM | 4.8 | 0.3% | Nov 12, 2024 | The RSS Feed Widget WordPress plugin before 3.0.1 does not escape the $_SERVER['REQUEST_URI'] parameter before outputtin... |
| CVE-2024-9357 | MEDIUM | 6.1 | 0.4% | Nov 12, 2024 | The xili-tidy-tags plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'action' parameter in al... |
| CVE-2024-47799 | LOW | 3.5 | 0.2% | Nov 12, 2024 | Exposure of sensitive system information to an unauthorized control sphere issue exists in Mesh Wi-Fi router RP562B firm... |
| CVE-2024-45827 | HIGH | 8 | 1.6% | Nov 12, 2024 | Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in Mesh Wi-Fi ro... |
| CVE-2024-29075 | MEDIUM | 4.6 | 0.2% | Nov 12, 2024 | Active debug code vulnerability exists in Mesh Wi-Fi router RP562B firmware version v1.0.2 and earlier. If this vulnerab... |
| CVE-2024-10790 | MEDIUM | 5.4 | 0.3% | Nov 12, 2024 | The Admin and Site Enhancements (ASE) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File upl... |
| CVE-2024-49560 | HIGH | 7.8 | 0.8% | Nov 12, 2024 | Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a command injection vulner... |
| CVE-2024-49558 | HIGH | 7.8 | 0.1% | Nov 12, 2024 | Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Improper Privilege Mana... |
| CVE-2024-49557 | HIGH | 7.8 | 0.7% | Nov 12, 2024 | Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Improper Neutralization... |
| CVE-2024-48838 | LOW | 3.3 | 0.2% | Nov 12, 2024 | Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a Files or Directories Acc... |
| CVE-2024-48837 | HIGH | 7.8 | 0.2% | Nov 12, 2024 | Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Execution with Unnecess... |
| CVE-2024-11102 | MEDIUM | 4.8 | 0.4% | Nov 12, 2024 | A vulnerability was found in SourceCodester Hospital Management System 1.0. It has been rated as problematic. Affected b... |
| CVE-2024-11101 | CRITICAL | 9.8 | 0.5% | Nov 12, 2024 | A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0. It has been classified as critical. Aff... |
| CVE-2024-11100 | CRITICAL | 9.8 | 0.6% | Nov 12, 2024 | A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0. It has been declared as critical. Affec... |
| CVE-2024-10695 | MEDIUM | 4.3 | 0.3% | Nov 12, 2024 | The Futurio Extra plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.0.1... |
| CVE-2024-10685 | MEDIUM | 6.1 | 0.3% | Nov 12, 2024 | The Contact Form 7 Redirect & Thank You Page plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via th... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now