2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-34933MEDIUM6.3A SQL injection vulnerability in /model/update_grade.php in Campcodes Complete Web-Based School Management System 1.0 al...
CVE-2024-34930MEDIUM5.3A SQL injection vulnerability in /model/all_events1.php in Campcodes Complete Web-Based School Management System 1.0 all...
CVE-2024-35222MEDIUM5.9Tauri is a framework for building binaries for all major desktop platforms. Remote origin iFrames in Tauri applications ...
CVE-2024-35224MEDIUM5.4OpenProject is the leading open source project management software. OpenProject utilizes `tablesorter` inside of the Cos...
CVE-2024-35197MEDIUM5.4gitoxide is a pure Rust implementation of Git. On Windows, fetching refs that clash with legacy device names reads from ...
CVE-2024-1803MEDIUM4.3The EmbedPress – Embed PDF, Google Docs, Vimeo, Wistia, Embed YouTube Videos, Audios, Maps & Embed Any Documents in Gute...
CVE-2024-28188MEDIUM5.3Jupyter Scheduler is collection of extensions for programming jobs to run now or run on a schedule. The list of conda en...
CVE-2024-5258MEDIUM4.3An authorization vulnerability exists within GitLab from versions 16.10 before 16.10.6, 16.11 before 16.11.3, and 17.0 b...
CVE-2024-4575MEDIUM6.4The LayerSlider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ls_search_form shortc...
CVE-2024-4378MEDIUM5.4The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's menu...
CVE-2024-3997MEDIUM5.4The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) plugin for WordPress is ...
CVE-2024-1947MEDIUM6.5A denial of service (DoS) condition was discovered in GitLab CE/EE affecting all versions from 13.2.4 before 16.10.6, 16...
CVE-2024-1815MEDIUM5.4The Spectra – WordPress Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi...
CVE-2024-1814MEDIUM5.4The Spectra – WordPress Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi...
CVE-2024-5165MEDIUM5.4In Eclipse Ditto versions 3.0.0 to 3.5.5, the user input of several input fields of the Eclipse Ditto Explorer User Int...
CVE-2024-2861MEDIUM5.4The ProfilePress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ProfilePress User Panel widge...
CVE-2024-5264MEDIUM6.5Network Transfer with AES KHT in Thales Luna EFT 2.1 and above allows a user with administrative console access to acces...
CVE-2024-35223MEDIUM5.3Dapr is a portable, event-driven, runtime for building distributed applications across cloud and edge. Dapr sends the ap...
CVE-2024-4706MEDIUM6.4The WordPress + Microsoft Office 365 / Azure AD | LOGIN plugin for WordPress is vulnerable to Stored Cross-Site Scriptin...
CVE-2024-5241MEDIUM5.1A vulnerability was found in Huashi Private Cloud CDN Live Streaming Acceleration Server up to 20240520. It has been cla...
CVE-2024-5240MEDIUM6.5A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0 and classified as critical. This ...
CVE-2024-4043MEDIUM6.4The WP Ultimate Post Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpupg-text...
CVE-2024-3648MEDIUM5.4The ShareThis Share Buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'sharethi...
CVE-2024-36011MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HCI: Fix potential null-ptr-deref Fix p...
CVE-2024-2874MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions before 16.10.6, version 16.11 before 16.11.3, and 17...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now