2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-34933 | MEDIUM | 6.3 | 0.3% | May 23, 2024 | A SQL injection vulnerability in /model/update_grade.php in Campcodes Complete Web-Based School Management System 1.0 al... |
| CVE-2024-34930 | MEDIUM | 5.3 | 0.2% | May 23, 2024 | A SQL injection vulnerability in /model/all_events1.php in Campcodes Complete Web-Based School Management System 1.0 all... |
| CVE-2024-35222 | MEDIUM | 5.9 | 0.3% | May 23, 2024 | Tauri is a framework for building binaries for all major desktop platforms. Remote origin iFrames in Tauri applications ... |
| CVE-2024-35224 | MEDIUM | 5.4 | 0.3% | May 23, 2024 | OpenProject is the leading open source project management software. OpenProject utilizes `tablesorter` inside of the Cos... |
| CVE-2024-35197 | MEDIUM | 5.4 | 0.4% | May 23, 2024 | gitoxide is a pure Rust implementation of Git. On Windows, fetching refs that clash with legacy device names reads from ... |
| CVE-2024-1803 | MEDIUM | 4.3 | 0.3% | May 23, 2024 | The EmbedPress – Embed PDF, Google Docs, Vimeo, Wistia, Embed YouTube Videos, Audios, Maps & Embed Any Documents in Gute... |
| CVE-2024-28188 | MEDIUM | 5.3 | 0.3% | May 23, 2024 | Jupyter Scheduler is collection of extensions for programming jobs to run now or run on a schedule. The list of conda en... |
| CVE-2024-5258 | MEDIUM | 4.3 | 0.3% | May 23, 2024 | An authorization vulnerability exists within GitLab from versions 16.10 before 16.10.6, 16.11 before 16.11.3, and 17.0 b... |
| CVE-2024-4575 | MEDIUM | 6.4 | 0.3% | May 23, 2024 | The LayerSlider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ls_search_form shortc... |
| CVE-2024-4378 | MEDIUM | 5.4 | 0.3% | May 23, 2024 | The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's menu... |
| CVE-2024-3997 | MEDIUM | 5.4 | 0.3% | May 23, 2024 | The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) plugin for WordPress is ... |
| CVE-2024-1947 | MEDIUM | 6.5 | 0.5% | May 23, 2024 | A denial of service (DoS) condition was discovered in GitLab CE/EE affecting all versions from 13.2.4 before 16.10.6, 16... |
| CVE-2024-1815 | MEDIUM | 5.4 | 0.3% | May 23, 2024 | The Spectra – WordPress Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi... |
| CVE-2024-1814 | MEDIUM | 5.4 | 0.3% | May 23, 2024 | The Spectra – WordPress Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi... |
| CVE-2024-5165 | MEDIUM | 5.4 | 0.5% | May 23, 2024 | In Eclipse Ditto versions 3.0.0 to 3.5.5, the user input of several input fields of the Eclipse Ditto Explorer User Int... |
| CVE-2024-2861 | MEDIUM | 5.4 | 0.3% | May 23, 2024 | The ProfilePress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ProfilePress User Panel widge... |
| CVE-2024-5264 | MEDIUM | 6.5 | 0.4% | May 23, 2024 | Network Transfer with AES KHT in Thales Luna EFT 2.1 and above allows a user with administrative console access to acces... |
| CVE-2024-35223 | MEDIUM | 5.3 | 0.4% | May 23, 2024 | Dapr is a portable, event-driven, runtime for building distributed applications across cloud and edge. Dapr sends the ap... |
| CVE-2024-4706 | MEDIUM | 6.4 | 0.3% | May 23, 2024 | The WordPress + Microsoft Office 365 / Azure AD | LOGIN plugin for WordPress is vulnerable to Stored Cross-Site Scriptin... |
| CVE-2024-5241 | MEDIUM | 5.1 | 1.9% | May 23, 2024 | A vulnerability was found in Huashi Private Cloud CDN Live Streaming Acceleration Server up to 20240520. It has been cla... |
| CVE-2024-5240 | MEDIUM | 6.5 | 0.4% | May 23, 2024 | A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0 and classified as critical. This ... |
| CVE-2024-4043 | MEDIUM | 6.4 | 0.3% | May 23, 2024 | The WP Ultimate Post Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpupg-text... |
| CVE-2024-3648 | MEDIUM | 5.4 | 0.3% | May 23, 2024 | The ShareThis Share Buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'sharethi... |
| CVE-2024-36011 | MEDIUM | 5.5 | 0.2% | May 23, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HCI: Fix potential null-ptr-deref Fix p... |
| CVE-2024-2874 | MEDIUM | 6.5 | 0.6% | May 23, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions before 16.10.6, version 16.11 before 16.11.3, and 17... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now