2024 CVE Vulnerabilities
39,228 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37254 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in mndpsingh287 File Manager allows Exploiting Incorrectly Configured Access Control... |
| CVE-2024-37250 | MEDIUM | 5.4 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in WPEngine Inc. Advanced Custom Fields PRO allows Exploiting Incorrectly Configured... |
| CVE-2024-37249 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in WPEngine Inc. Advanced Custom Fields PRO allows Exploiting Incorrectly Configured... |
| CVE-2024-37232 | HIGH | 8.8 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in Hercules Design Hercules Core allows Exploiting Incorrectly Configured Access Con... |
| CVE-2024-37226 | MEDIUM | 5.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in Kanban for WordPress Kanban Boards for WordPress allows Exploiting Incorrectly Co... |
| CVE-2024-37220 | MEDIUM | 5.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in OptinlyHQ Optinly allows Exploiting Incorrectly Configured Access Control Securit... |
| CVE-2024-37218 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in WordPress Page Builder Sandwich Team Page Builder Sandwich – Front-End Page Build... |
| CVE-2024-37214 | MEDIUM | 6.5 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in Dropshipping Guru Ali2Woo Lite Exploiting Incorrectly Configured Access Control S... |
| CVE-2024-37209 | MEDIUM | 6.5 | 0.5% | Nov 1, 2024 | Access Control vulnerability in Prism IT Systems User Rights Access Manager allows . This issue affects User Rights Acc... |
| CVE-2024-37207 | MEDIUM | 5.4 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in Theme4Press Demo Awesome allows Exploiting Incorrectly Configured Access Control ... |
| CVE-2024-37204 | MEDIUM | 4.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in PropertyHive PropertyHive allows Exploiting Incorrectly Configured Access Control... |
| CVE-2024-37203 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in Laybuy Laybuy Payment Extension for WooCommerce allows Exploiting Incorrectly Con... |
| CVE-2024-37201 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in javmah Woocommerce Customers Order History allows Exploiting Incorrectly Configur... |
| CVE-2024-37123 | MEDIUM | 5.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in VowelWeb Ibtana allows Exploiting Incorrectly Configured Access Control Security ... |
| CVE-2024-37119 | CRITICAL | 9.8 | 0.5% | Nov 1, 2024 | Missing Authorization vulnerability in Uncanny Owl Uncanny Automator Pro allows Exploiting Incorrectly Configured Access... |
| CVE-2024-37108 | HIGH | 7.7 | 0.6% | Nov 1, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WishList Products WishLi... |
| CVE-2024-37106 | HIGH | 8.2 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in WishList Products WishList Member X allows Exploiting Incorrectly Configured Acce... |
| CVE-2024-37096 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in Popup Box Team Popup allows Exploiting Incorrectly Configured Access Control Secu... |
| CVE-2024-37095 | MEDIUM | 4.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in Envira Gallery Team Envira Photo Gallery allows Exploiting Incorrectly Configured... |
| CVE-2024-27525 | MEDIUM | 4.6 | 0.4% | Nov 1, 2024 | Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 allows a remote attacker to escalate privileges via a crafte... |
| CVE-2024-27524 | HIGH | 7.1 | 0.7% | Nov 1, 2024 | Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 allows a remote attacker to escalate privileges via a crafte... |
| CVE-2024-10658 | CRITICAL | 9.8 | 0.7% | Nov 1, 2024 | A vulnerability classified as critical was found in Tongda OA up to 11.10. Affected by this vulnerability is an unknown ... |
| CVE-2024-10657 | CRITICAL | 9.8 | 0.7% | Nov 1, 2024 | A vulnerability classified as critical has been found in Tongda OA up to 11.10. Affected is an unknown function of the f... |
| CVE-2024-10656 | CRITICAL | 9.8 | 0.7% | Nov 1, 2024 | A vulnerability was found in Tongda OA 2017 up to 11.9. It has been rated as critical. This issue affects some unknown p... |
| CVE-2024-51407 | MEDIUM | 6.2 | 0.2% | Nov 1, 2024 | Floodlight SDN OpenFlow Controller v.1.2 has an issue that allows local hosts to construct false broadcast ports causing... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now