2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-22379MEDIUM6.7Uncontrolled search path in some Intel(R) Inspector software before version 2024.0 may allow an authenticated user to po...
CVE-2024-22015MEDIUM6.5Improper input validation for some Intel(R) DLB driver software before version 8.5.0 may allow an authenticated user to ...
CVE-2024-21843MEDIUM6.7Uncontrolled search path for some Intel(R) Computing Improvement Program software before version 2.4.0.10654 may allow a...
CVE-2024-21841MEDIUM6.7Uncontrolled search path for some Intel(R) Distribution for GDB software before version 2024.0 may allow an authenticate...
CVE-2024-21828MEDIUM6.7Improper access control in some Intel(R) Ethernet Controller Administrative Tools software before version 28.3 may allow...
CVE-2024-21818MEDIUM6.7Uncontrolled search path in some Intel(R) PCM software before version 202311 may allow an authenticated user to potentia...
CVE-2024-21792MEDIUM4.7Time-of-check Time-of-use race condition in Intel(R) Neural Compressor software before version 2.5.0 may allow an authen...
CVE-2024-21774MEDIUM6.7Uncontrolled search path in some Intel(R) Processor Identification Utility software before versions 6.10.34.1129, 7.1.6 ...
CVE-2024-4603MEDIUM5.3Issue summary: Checking excessively long DSA keys or parameters may be very slow. Impact summary: Applications that use...
CVE-2024-35185MEDIUM5.3Minder is a software supply chain security platform. Prior to version 0.0.49, the Minder REST ingester is vulnerable to ...
CVE-2024-35176MEDIUM5.3 REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XM...
CVE-2024-34808MEDIUM4.3Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samuel Marshall JCH Opti...
CVE-2024-34805MEDIUM6.5Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Webvitaly i...
CVE-2024-34760MEDIUM6.5Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPBlockart ...
CVE-2024-34751MEDIUM4.4Deserialization of Untrusted Data vulnerability in WebToffee Order Export & Order Import for WooCommerce.This issue affe...
CVE-2024-34273MEDIUM5.9njwt up to v0.4.0 was discovered to contain a prototype pollution in the Parser.prototype.parse method.
CVE-2024-34958MEDIUM6.5idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/banner_deal.php?mudi=...
CVE-2024-34957MEDIUM5.4idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/sysImages_deal.php?mu...
CVE-2024-34582MEDIUM6.1Sunhillo SureLine through 8.10.0 on RICI 5000 devices allows cgi/usrPasswd.cgi userid_change XSS within the Forgot Passw...
CVE-2024-4760MEDIUM6.3A voltage glitch during the startup of EEFC NVM controllers on Microchip SAM E70/S70/V70/V71, SAM G55, SAM 4C/4S/4N/4E, ...
CVE-2024-4993MEDIUM5.4Vulnerability in SiAdmin 1.1 that allows XSS via the /show.php query parameter. This vulnerability could allow a remote ...
CVE-2024-4580MEDIUM5.4The Master Addons – Free Widgets, Hover Effects, Toggle, Conditions, Animations for Elementor plugin for WordPress is vu...
CVE-2024-30287MEDIUM5.5Adobe Framemaker versions 2020.5, 2022.3 and earlier Answer: are affected by an out-of-bounds read vulnerability that co...
CVE-2024-30286MEDIUM5.5Adobe Framemaker versions 2020.5, 2022.3 and earlier Answer: are affected by an out-of-bounds read vulnerability that co...
CVE-2024-30283MEDIUM5.5Adobe Framemaker versions 2020.5, 2022.3 and earlier Answer: are affected by an out-of-bounds read vulnerability that co...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now