2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-34707 | MEDIUM | 4.8 | 0.6% | May 14, 2024 | Nautobot is a Network Source of Truth and Network Automation Platform. A Nautobot user with admin privileges can modify ... |
| CVE-2024-34704 | MEDIUM | 5.9 | 0.5% | May 14, 2024 | era-compiler-solidity is the ZKsync compiler for Solidity. The problem occurred during instruction selection in the `DA... |
| CVE-2024-34701 | MEDIUM | 5.9 | 0.6% | May 14, 2024 | CreateWiki is Miraheze's MediaWiki extension for requesting & creating wikis. It is possible for users to be considered ... |
| CVE-2024-34699 | MEDIUM | 6.5 | 0.5% | May 14, 2024 | GZ::CTF is a capture the flag platform. Prior to 0.20.1, unprivileged user can perform cross-site scripting attacks on o... |
| CVE-2024-34698 | MEDIUM | 6.3 | 0.5% | May 14, 2024 | FreeScout is a free, self-hosted help desk and shared mailbox. Versions of FreeScout prior to 1.8.139 contain a Prototyp... |
| CVE-2024-34697 | MEDIUM | 6.1 | 0.6% | May 14, 2024 | FreeScout is a free, self-hosted help desk and shared mailbox. A stored HTML Injection vulnerability has been identified... |
| CVE-2024-34695 | MEDIUM | 6.3 | 0.8% | May 14, 2024 | WOWS Karma is a reputation system for Wargaming's World of Warships. A user is able to click multiple times on "create" ... |
| CVE-2024-34557 | MEDIUM | 4.3 | 0.3% | May 14, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Dmitry V. (CEO of "UKR Solution") Barcode Scanner with Inventory & Or... |
| CVE-2024-34556 | MEDIUM | 5.3 | 0.6% | May 14, 2024 | Insertion of Sensitive Information Into Sent Data vulnerability in Dmitry V. (CEO of "UKR Solution") Barcode Scanner wit... |
| CVE-2024-34550 | MEDIUM | 5.3 | 0.6% | May 14, 2024 | Insertion of Sensitive Information into Log File vulnerability in AlexaCRM Dynamics 365 Integration.This issue affects D... |
| CVE-2024-34549 | MEDIUM | 5.3 | 0.6% | May 14, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Automattic WP Job Manager.This issue affects... |
| CVE-2024-34445 | MEDIUM | 5.4 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SKT Themes SKT Add... |
| CVE-2024-34441 | MEDIUM | 6.5 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bootstrapped Ventu... |
| CVE-2024-34439 | MEDIUM | 4.3 | 0.2% | May 14, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in divSpot DS Site Message.This issue affects DS Site Message: from n/a ... |
| CVE-2024-34437 | MEDIUM | 4.8 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Form Builder... |
| CVE-2024-34436 | MEDIUM | 5.4 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SKT Themes SKT Add... |
| CVE-2024-34432 | MEDIUM | 5.4 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BetterAddons Bette... |
| CVE-2024-34430 | MEDIUM | 5.9 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rashed Latif TT Cu... |
| CVE-2024-34429 | MEDIUM | 5.9 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Orchestrated Coron... |
| CVE-2024-34428 | MEDIUM | 5.9 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Harknell AWSOM New... |
| CVE-2024-34427 | MEDIUM | 4.3 | 0.2% | May 14, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Huseyin Berberoglu WP Favorite Posts.This issue affects WP Favorite P... |
| CVE-2024-34426 | MEDIUM | 5.9 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Benoti Brozzme Scr... |
| CVE-2024-34425 | MEDIUM | 5.9 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Phil Baylog Quicki... |
| CVE-2024-34424 | MEDIUM | 5.9 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in iePlexus Featured ... |
| CVE-2024-34423 | MEDIUM | 5.9 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in phpbits Forty Four... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now