2024 CVE Vulnerabilities

39,233 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-10468MEDIUM5.3Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash. ...
CVE-2024-10467HIGH8.8Memory safety bugs present in Firefox 131, Firefox ESR 128.3, and Thunderbird 128.3. Some of these bugs showed evidence ...
CVE-2024-10466HIGH7.5By sending a specially crafted push message, a remote server could have hung the parent process, causing the browser to ...
CVE-2024-10465MEDIUM6.5A clipboard "paste" button could persist across tabs which allowed a spoofing attack. This vulnerability affects Firefox...
CVE-2024-10464MEDIUM6.5Repeated writes to history interface attributes could have been used to cause a Denial of Service condition in the brows...
CVE-2024-10463MEDIUM6.5Video frames could have been leaked between origins in some situations. This vulnerability affects Firefox < 132, Firefo...
CVE-2024-10462MEDIUM6.5Truncation of a long URL could have allowed origin spoofing in a permission prompt. This vulnerability affects Firefox <...
CVE-2024-10461MEDIUM6.1In multipart/x-mixed-replace responses, `Content-Disposition: attachment` in the response header was not respected and d...
CVE-2024-10460MEDIUM5.3The origin of an external protocol handler prompt could have been obscured using a data: URL within an `iframe`. This vu...
CVE-2024-10459HIGH7.5An attacker could have caused a use-after-free when accessibility was enabled, leading to a potentially exploitable cras...
CVE-2024-10458HIGH7.5A permission leak could have occurred from a trusted site to an untrusted site via `embed` or `object` elements. This vu...
CVE-2024-49667MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Asaduzzaman Abir L...
CVE-2024-49665MEDIUM5.4Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Web Bricks ...
CVE-2024-49664MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in chatplusjp chatplu...
CVE-2024-49663MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in elenkadark uCAT – ...
CVE-2024-49662MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Webgensis Simple L...
CVE-2024-49661MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Lew Ayotte leenk.m...
CVE-2024-49660MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CampusExplorer Cam...
CVE-2024-49659MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Coub Coub coub all...
CVE-2024-49656MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in fifthsegment Docum...
CVE-2024-49654MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Marian Heddesheime...
CVE-2024-49651MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Matt Royal WooComm...
CVE-2024-49650HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Xarbo BuddyPress G...
CVE-2024-49648HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in rafasashi SVG Capt...
CVE-2024-49647HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Carl Alberto Simpl...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now