2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-29119HIGH8.5A vulnerability has been identified in Spectrum Power 7 (All versions < V24Q3). The affected product contains several ro...
CVE-2024-11123HIGH7.5A vulnerability, which was classified as problematic, was found in 上海灵当信息科技有限公司 Lingdang CRM up to 8.6.4.3. This affects...
CVE-2024-11122CRITICAL9.8A vulnerability, which was classified as critical, has been found in 上海灵当信息科技有限公司 Lingdang CRM up to 8.6.4.3. Affected b...
CVE-2024-11121CRITICAL9.8A vulnerability classified as critical was found in 上海灵当信息科技有限公司 Lingdang CRM up to 8.6.4.3. Affected by this vulnerabil...
CVE-2024-9998Rejected reason: The vulnerability has no impact, so it has been deprecated.
CVE-2024-10245CRITICAL9.8The Relais 2FA plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.0. This i...
CVE-2024-10323MEDIUM5.4The JetWidgets For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File upl...
CVE-2024-10179MEDIUM6.4The Slickstream: Engagement and Conversions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl...
CVE-2024-9836MEDIUM5.9The RSS Feed Widget WordPress plugin before 3.0.0 does not validate and escape some of its shortcode attributes before o...
CVE-2024-9835MEDIUM4.8The RSS Feed Widget WordPress plugin before 3.0.1 does not escape the $_SERVER['REQUEST_URI'] parameter before outputtin...
CVE-2024-9357MEDIUM6.1The xili-tidy-tags plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'action' parameter in al...
CVE-2024-47799LOW3.5Exposure of sensitive system information to an unauthorized control sphere issue exists in Mesh Wi-Fi router RP562B firm...
CVE-2024-45827HIGH8Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in Mesh Wi-Fi ro...
CVE-2024-29075MEDIUM4.6Active debug code vulnerability exists in Mesh Wi-Fi router RP562B firmware version v1.0.2 and earlier. If this vulnerab...
CVE-2024-10790MEDIUM5.4The Admin and Site Enhancements (ASE) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File upl...
CVE-2024-49560HIGH7.8Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a command injection vulner...
CVE-2024-49558HIGH7.8Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Improper Privilege Mana...
CVE-2024-49557HIGH7.8Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Improper Neutralization...
CVE-2024-48838LOW3.3Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a Files or Directories Acc...
CVE-2024-48837HIGH7.8Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Execution with Unnecess...
CVE-2024-11102MEDIUM4.8A vulnerability was found in SourceCodester Hospital Management System 1.0. It has been rated as problematic. Affected b...
CVE-2024-11101CRITICAL9.8A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0. It has been classified as critical. Aff...
CVE-2024-11100CRITICAL9.8A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0. It has been declared as critical. Affec...
CVE-2024-10695MEDIUM4.3The Futurio Extra plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.0.1...
CVE-2024-10685MEDIUM6.1The Contact Form 7 Redirect & Thank You Page plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via th...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now