2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-26039 | MEDIUM | 5.4 | 0.6% | Jun 13, 2024 | Adobe Experience Manager versions 6.5.20 and earlier Answer: are affected by a DOM-based Cross-Site Scripting (XSS) vuln... |
| CVE-2024-26037 | MEDIUM | 5.4 | 0.5% | Jun 13, 2024 | Adobe Experience Manager versions 6.5.20 and earlier Answer: are affected by a DOM-based Cross-Site Scripting (XSS) vuln... |
| CVE-2024-26036 | MEDIUM | 5.4 | 0.5% | Jun 13, 2024 | Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-20784 | MEDIUM | 5.4 | 0.7% | Jun 13, 2024 | Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-20769 | MEDIUM | 5.4 | 0.7% | Jun 13, 2024 | Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-5265 | MEDIUM | 5.4 | 0.3% | Jun 13, 2024 | The WPBakery Visual Composer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the link attribute wi... |
| CVE-2024-4576 | MEDIUM | 5.3 | 0.5% | Jun 13, 2024 | The component listed above contains a vulnerability that allows an attacker to traverse directories and access sensitive... |
| CVE-2024-5787 | MEDIUM | 5.4 | 0.4% | Jun 13, 2024 | The PowerPack Addons for Elementor (Free Widgets, Extensions and Templates) plugin for WordPress is vulnerable to Stored... |
| CVE-2024-5757 | MEDIUM | 5.4 | 0.4% | Jun 13, 2024 | The Elementor Header & Footer Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the url att... |
| CVE-2024-5661 | MEDIUM | 6 | 0.2% | Jun 13, 2024 | An issue has been identified in both XenServer 8 and Citrix Hypervisor 8.2 CU1 LTSR which may allow a malicious administ... |
| CVE-2024-4149 | MEDIUM | 4.8 | 0.4% | Jun 13, 2024 | The Floating Chat Widget: Contact Chat Icons, WhatsApp, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button ... |
| CVE-2024-3032 | MEDIUM | 6.1 | 0.8% | Jun 13, 2024 | Themify Builder WordPress plugin before 7.5.8 does not validate a parameter before redirecting the user to its value, le... |
| CVE-2024-2762 | MEDIUM | 5.4 | 0.4% | Jun 13, 2024 | The FooGallery WordPress plugin before 2.4.15, foogallery-premium WordPress plugin before 2.4.15 does not validate and ... |
| CVE-2024-4201 | MEDIUM | 4.4 | 0.5% | Jun 12, 2024 | A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 before 16.10.7, all ... |
| CVE-2024-1963 | MEDIUM | 6.5 | 0.6% | Jun 12, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 8.4 prior to 16.10.7, starting from 16... |
| CVE-2024-1736 | MEDIUM | 6.5 | 0.6% | Jun 12, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions prior to 16.10.7, starting from 16.11 prior to 16.11... |
| CVE-2024-1495 | MEDIUM | 6.5 | 0.6% | Jun 12, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.1 prior to 16.10.7, starting from 1... |
| CVE-2024-36523 | MEDIUM | 6.5 | 0.3% | Jun 12, 2024 | An access control issue in Wvp GB28181 Pro 2.0 allows users to continue to access information in the application after d... |
| CVE-2024-31881 | MEDIUM | 6.5 | 0.6% | Jun 12, 2024 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to a denial of serv... |
| CVE-2024-5559 | MEDIUM | 6.8 | 0.2% | Jun 12, 2024 | CWE-327: Use of a Broken or Risky Cryptographic Algorithm vulnerability exists that could cause denial of service, devic... |
| CVE-2024-37629 | MEDIUM | 6.1 | 0.5% | Jun 12, 2024 | SummerNote v0.9.1 is vulnerable to Cross Site Scripting (XSS) via the Code View Function. |
| CVE-2024-28762 | MEDIUM | 6.5 | 0.6% | Jun 12, 2024 | IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of servic... |
| CVE-2024-24051 | MEDIUM | 5.5 | 0.2% | Jun 12, 2024 | Improper input validation of printing files in Monoprice Select Mini V2 V37.115.32 allows attackers to instruct the devi... |
| CVE-2024-5909 | MEDIUM | 5.5 | 0.4% | Jun 12, 2024 | A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a low privile... |
| CVE-2024-5906 | MEDIUM | 4.8 | 0.2% | Jun 12, 2024 | A cross-site scripting (XSS) vulnerability in Palo Alto Networks Prisma Cloud Compute software enables a malicious admin... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now