2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-5691 | MEDIUM | 4.7 | 0.7% | Jun 11, 2024 | By tricking the browser with a `X-Frame-Options` header, a sandboxed iframe could have presented a button that, if click... |
| CVE-2024-5690 | MEDIUM | 4.3 | 0.7% | Jun 11, 2024 | By monitoring the time certain operations take, an attacker could have guessed which external protocol handlers were fun... |
| CVE-2024-5689 | MEDIUM | 4.3 | 0.4% | Jun 11, 2024 | In addition to detecting when a user was taking a screenshot (XXX), a website was able to overlay the 'My Shots' button ... |
| CVE-2024-5687 | MEDIUM | 5.3 | 0.4% | Jun 11, 2024 | If a specific sequence of actions is performed when opening a new tab, the triggering principal associated with the new ... |
| CVE-2024-2462 | MEDIUM | 6.8 | 0.2% | Jun 11, 2024 | Allow attackers to intercept or falsify data exchanges between the client and the server |
| CVE-2024-2461 | MEDIUM | 6.9 | 0.5% | Jun 11, 2024 | If exploited an attacker could traverse the file system to access files or directories that would otherwise be inaccess... |
| CVE-2024-35212 | MEDIUM | 6.9 | 0.3% | Jun 11, 2024 | A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected a... |
| CVE-2024-35211 | MEDIUM | 6.8 | 0.2% | Jun 11, 2024 | A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected w... |
| CVE-2024-35210 | MEDIUM | 5.1 | 0.1% | Jun 11, 2024 | A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected w... |
| CVE-2024-35209 | MEDIUM | 6.9 | 0.3% | Jun 11, 2024 | A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected w... |
| CVE-2024-35208 | MEDIUM | 5.5 | 0.1% | Jun 11, 2024 | A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected w... |
| CVE-2024-5829 | MEDIUM | 5.3 | 0.3% | Jun 11, 2024 | A vulnerability classified as problematic was found in smallweigit Avue up to 3.4.4. Affected by this vulnerability is a... |
| CVE-2024-35685 | MEDIUM | 5.3 | 0.3% | Jun 11, 2024 | Missing Authorization vulnerability in Anders Norén Radcliffe 2.This issue affects Radcliffe 2: from n/a through 2.0.17. |
| CVE-2024-34813 | MEDIUM | 5.3 | 0.3% | Jun 11, 2024 | Missing Authorization vulnerability in Moreconvert Team MC Woocommerce Wishlist smart-wishlist-for-more-convert.This iss... |
| CVE-2024-5584 | MEDIUM | 6.4 | 0.3% | Jun 11, 2024 | The WordPress Online Booking and Scheduling Plugin – Bookly plugin for WordPress is vulnerable to Stored Cross-Site Scri... |
| CVE-2024-34824 | MEDIUM | 6.3 | 0.2% | Jun 11, 2024 | Missing Authorization vulnerability in ThemeBoy SportsPress – Sports Club & League Manager.This issue affects SportsPres... |
| CVE-2024-24704 | MEDIUM | 6.3 | 0.3% | Jun 11, 2024 | Missing Authorization vulnerability in AddonMaster Load More Anything.This issue affects Load More Anything: from n/a th... |
| CVE-2024-5531 | MEDIUM | 6.4 | 0.3% | Jun 11, 2024 | The Ocean Extra plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Flickr widget in all versions ... |
| CVE-2024-4319 | MEDIUM | 5.3 | 0.5% | Jun 11, 2024 | The Advanced Contact form 7 DB plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabi... |
| CVE-2024-3723 | MEDIUM | 5.3 | 0.4% | Jun 11, 2024 | The Advanced Contact form 7 DB plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up t... |
| CVE-2024-31402 | MEDIUM | 4.3 | 0.3% | Jun 11, 2024 | Incorrect authorization vulnerability in Cybozu Garoon 5.0.0 to 5.15.2 allows a remote authenticated attacker to delete ... |
| CVE-2024-31399 | MEDIUM | 6.5 | 0.4% | Jun 11, 2024 | Excessive platform resource consumption within a loop issue exists in Cybozu Garoon 5.0.0 to 5.15.2. If this vulnerabili... |
| CVE-2024-31398 | MEDIUM | 4.3 | 0.3% | Jun 11, 2024 | Insertion of sensitive information into sent data issue exists in Cybozu Garoon 5.0.0 to 5.15.2. If this vulnerability i... |
| CVE-2024-31397 | MEDIUM | 4.9 | 0.5% | Jun 11, 2024 | Improper handling of extra values issue exists in Cybozu Garoon 5.0.0 to 5.15.2. If this vulnerability is exploited, a u... |
| CVE-2024-5530 | MEDIUM | 5.4 | 0.4% | Jun 11, 2024 | The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +12 Modules – All in One Solution (formerly WooLentor) pl... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now