2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-26039MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier Answer: are affected by a DOM-based Cross-Site Scripting (XSS) vuln...
CVE-2024-26037MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier Answer: are affected by a DOM-based Cross-Site Scripting (XSS) vuln...
CVE-2024-26036MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-20784MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-20769MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-5265MEDIUM5.4The WPBakery Visual Composer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the link attribute wi...
CVE-2024-4576MEDIUM5.3The component listed above contains a vulnerability that allows an attacker to traverse directories and access sensitive...
CVE-2024-5787MEDIUM5.4The PowerPack Addons for Elementor (Free Widgets, Extensions and Templates) plugin for WordPress is vulnerable to Stored...
CVE-2024-5757MEDIUM5.4The Elementor Header & Footer Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the url att...
CVE-2024-5661MEDIUM6An issue has been identified in both XenServer 8 and Citrix Hypervisor 8.2 CU1 LTSR which may allow a malicious administ...
CVE-2024-4149MEDIUM4.8The Floating Chat Widget: Contact Chat Icons, WhatsApp, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button ...
CVE-2024-3032MEDIUM6.1Themify Builder WordPress plugin before 7.5.8 does not validate a parameter before redirecting the user to its value, le...
CVE-2024-2762MEDIUM5.4The FooGallery WordPress plugin before 2.4.15, foogallery-premium WordPress plugin before 2.4.15 does not validate and ...
CVE-2024-4201MEDIUM4.4A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 before 16.10.7, all ...
CVE-2024-1963MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 8.4 prior to 16.10.7, starting from 16...
CVE-2024-1736MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions prior to 16.10.7, starting from 16.11 prior to 16.11...
CVE-2024-1495MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.1 prior to 16.10.7, starting from 1...
CVE-2024-36523MEDIUM6.5An access control issue in Wvp GB28181 Pro 2.0 allows users to continue to access information in the application after d...
CVE-2024-31881MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to a denial of serv...
CVE-2024-5559MEDIUM6.8CWE-327: Use of a Broken or Risky Cryptographic Algorithm vulnerability exists that could cause denial of service, devic...
CVE-2024-37629MEDIUM6.1SummerNote v0.9.1 is vulnerable to Cross Site Scripting (XSS) via the Code View Function.
CVE-2024-28762MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of servic...
CVE-2024-24051MEDIUM5.5Improper input validation of printing files in Monoprice Select Mini V2 V37.115.32 allows attackers to instruct the devi...
CVE-2024-5909MEDIUM5.5A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a low privile...
CVE-2024-5906MEDIUM4.8A cross-site scripting (XSS) vulnerability in Palo Alto Networks Prisma Cloud Compute software enables a malicious admin...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now