2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-6374MEDIUM5.3A vulnerability was found in lahirudanushka School Management System 1.0.0/1.0.1 and classified as problematic. This iss...
CVE-2024-39155MEDIUM6.8idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/ipRecord_deal.php?mu...
CVE-2024-39153MEDIUM4.7idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/info_deal.php?mudi=d...
CVE-2024-1153MEDIUM4.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Talya Informatics ...
CVE-2024-6370MEDIUM5.4A vulnerability classified as problematic was found in LabVantage LIMS 2017. Affected by this vulnerability is an unknow...
CVE-2024-6369MEDIUM5.4A vulnerability classified as problematic has been found in LabVantage LIMS 2017. Affected is an unknown function of the...
CVE-2024-6368MEDIUM5.4A vulnerability was found in LabVantage LIMS 2017. It has been rated as problematic. This issue affects some unknown pro...
CVE-2024-6367MEDIUM5.4A vulnerability was found in LabVantage LIMS 2017. It has been declared as problematic. This vulnerability affects unkno...
CVE-2024-6262MEDIUM6.4The Portfolio Gallery – Image Gallery Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the p...
CVE-2024-4983MEDIUM5.4The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin for WordPre...
CVE-2024-5601MEDIUM5.4The Create by Mediavine plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Schema Meta s...
CVE-2024-22231MEDIUM5Syndic cache directory creation is vulnerable to a directory traversal attack in salt project which can lead a malicious...
CVE-2024-4704MEDIUM6.1The Contact Form 7 WordPress plugin before 5.9.5 has an open redirect that allows an attacker to utilize a false URL and...
CVE-2024-4664MEDIUM4.8The WP Chat App WordPress plugin before 3.6.5 does not sanitise and escape some of its settings, which could allow high ...
CVE-2024-3111MEDIUM5.4The Interactive Content WordPress plugin before 1.15.8 does not validate uploads which could allow a Contributors and a...
CVE-2024-1330MEDIUM4.3The kadence-blocks-pro WordPress plugin before 2.3.8 does not prevent users with at least the contributor role using som...
CVE-2024-6283MEDIUM5.4The DethemeKit For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL parameter of ...
CVE-2024-4570MEDIUM5.4The Elementor Addon Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter i...
CVE-2024-4569MEDIUM5.4The Elementor Addon Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter i...
CVE-2024-5289MEDIUM5.4The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Si...
CVE-2024-5430MEDIUM4.9An issue was discovered in GitLab CE/EE affecting all versions starting from 16.10 prior to 16.11.5, starting from 17.0 ...
CVE-2024-4901MEDIUM5.4An issue was discovered in GitLab CE/EE affecting all versions starting from 16.9 prior to 16.11.5, starting from 17.0 p...
CVE-2024-4557MEDIUM6.5Multiple Denial of Service (DoS) conditions has been discovered in GitLab CE/EE affecting all versions starting from 1.0...
CVE-2024-4011MEDIUM4.3An issue was discovered in GitLab CE/EE affecting all versions starting from 16.1 prior to 16.11.5, starting from 17.0 p...
CVE-2024-3959MEDIUM6.5An issue was discovered in GitLab CE/EE affecting all versions starting from 16.7 prior to 16.11.5, starting from 17.0 p...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now