2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-35782 | MEDIUM | 5.4 | 0.2% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Codeless Co... |
| CVE-2024-35668 | MEDIUM | 6.1 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Brevo Newsl... |
| CVE-2024-35666 | MEDIUM | 5.4 | 0.2% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Themesflat ... |
| CVE-2024-35664 | MEDIUM | 6.1 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpvividplugins WPv... |
| CVE-2024-35655 | MEDIUM | 4.8 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brave Brave brave-... |
| CVE-2024-35654 | MEDIUM | 5.4 | 0.3% | Jun 4, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CyberChimps... |
| CVE-2024-35634 | MEDIUM | 4.9 | 0.5% | Jun 4, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Wow-Company Woocommerce ... |
| CVE-2024-33568 | MEDIUM | 6.5 | 0.5% | Jun 4, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Deserialization of Untrusted Data vulner... |
| CVE-2024-36801 | MEDIUM | 5.9 | 0.4% | Jun 4, 2024 | A SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via the lgid par... |
| CVE-2024-33541 | MEDIUM | 6.5 | 0.5% | Jun 4, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in BetterAddons Better Elem... |
| CVE-2024-5463 | MEDIUM | 6.5 | 0.4% | Jun 4, 2024 | A vulnerability regarding buffer copy without checking the size of input ('Classic Buffer Overflow') has been found in t... |
| CVE-2024-4637 | MEDIUM | 5.4 | 0.3% | Jun 4, 2024 | The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and inclu... |
| CVE-2024-4581 | MEDIUM | 5.4 | 0.3% | Jun 4, 2024 | The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Add Layer widge... |
| CVE-2024-5485 | MEDIUM | 6.4 | 0.4% | Jun 4, 2024 | The SureTriggers – Connect All Your Plugins, Apps, Tools & Automate Everything! plugin for WordPress is vulnerable to St... |
| CVE-2024-20886 | MEDIUM | 6.2 | 0.2% | Jun 4, 2024 | Arbitrary directory creation in Samsung Live Wallpaper PC prior to version 3.3.8.0 allows attacker to create arbitrary d... |
| CVE-2024-20882 | MEDIUM | 4.6 | 0.2% | Jun 4, 2024 | Out-of-bounds read vulnerability in bootloader prior to SMR June-2024 Release 1 allows physical attackers to arbitrary d... |
| CVE-2024-20881 | MEDIUM | 6.7 | 0.2% | Jun 4, 2024 | Improper input validation vulnerability in chnactiv TA prior to SMR Jun-2024 Release 1 allows local privileged attackers... |
| CVE-2024-20880 | MEDIUM | 6.8 | 0.3% | Jun 4, 2024 | Stack-based buffer overflow vulnerability in bootloader prior to SMR Jun-2024 Release 1 allows physical attackers to ove... |
| CVE-2024-20875 | MEDIUM | 5.5 | 0.1% | Jun 4, 2024 | Improper caller verification vulnerability in SemClipboard prior to SMR June-2024 Release 1 allows local attackers to ac... |
| CVE-2024-20873 | MEDIUM | 6 | 0.1% | Jun 4, 2024 | Improper input validation vulnerability in caminfo driver prior to SMR Jun-2024 Release 1 allows local privileged attack... |
| CVE-2024-4997 | MEDIUM | 5.3 | 0.4% | Jun 4, 2024 | The WPUpper Share Buttons plugin for WordPress is vulnerable to unauthorized access of data when preparing sharing links... |
| CVE-2024-4857 | MEDIUM | 6.1 | 0.4% | Jun 4, 2024 | The FS Product Inquiry WordPress plugin through 1.1.1 does not sanitise and escape some form submissions, which could al... |
| CVE-2024-4750 | MEDIUM | 5.3 | 0.4% | Jun 4, 2024 | The buddyboss-platform WordPress plugin before 2.6.0 contains an IDOR vulnerability that allows a user to like a private... |
| CVE-2024-4697 | MEDIUM | 5.4 | 0.3% | Jun 4, 2024 | The Cowidgets – Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘heading_tag’... |
| CVE-2024-4462 | MEDIUM | 4.4 | 0.3% | Jun 4, 2024 | The Nafeza Prayer Time plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now