2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-33951 | MEDIUM | 6.5 | 0.4% | May 14, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Adam DeHaven Perfe... |
| CVE-2024-33950 | MEDIUM | 5.9 | 0.4% | May 14, 2024 | Administrator Cross Site Scripting (XSS) in Archives Calendar Widget <= 1.0.15 versions. |
| CVE-2024-33942 | MEDIUM | 4.3 | 0.4% | May 14, 2024 | Missing Authorization vulnerability in Eric Alli Google Typography.This issue affects Google Typography: from n/a throug... |
| CVE-2024-33938 | MEDIUM | 6.5 | 0.4% | May 14, 2024 | Missing Authorization vulnerability in codename065 Sliding Widgets allows Cross-Site Scripting (XSS).This issue affects ... |
| CVE-2024-33876 | MEDIUM | 5.7 | 0.2% | May 14, 2024 | HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize in H5Spoint.c. |
| CVE-2024-33875 | MEDIUM | 5.7 | 0.2% | May 14, 2024 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5O__layout_encode in H5Olayout.c, resulting in the corr... |
| CVE-2024-33819 | MEDIUM | 4.6 | 0.4% | May 14, 2024 | Globitel KSA SpeechLog v8.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the Save Quer... |
| CVE-2024-33774 | MEDIUM | 6.5 | 1.0% | May 14, 2024 | A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via formWlanSetup_Wizard allows remote authe... |
| CVE-2024-33773 | MEDIUM | 6.5 | 1.0% | May 14, 2024 | A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via formWlanGuestSetup allows remote authent... |
| CVE-2024-33772 | MEDIUM | 5.7 | 0.7% | May 14, 2024 | A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via formTcpipSetup allows remote authenticat... |
| CVE-2024-33771 | MEDIUM | 6.5 | 1.0% | May 14, 2024 | A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via goform/formWPS, allows remote authentica... |
| CVE-2024-33454 | MEDIUM | 6.5 | 1.1% | May 14, 2024 | Buffer Overflow vulnerability in esp-idf v.5.1 allows a remote attacker to execute arbitrary code via a crafted script t... |
| CVE-2024-33433 | MEDIUM | 4.8 | 0.6% | May 14, 2024 | Cross Site Scripting vulnerability in TOTOLINK X2000R before v1.0.0-B20231213.1013 allows a remote attacker to execute a... |
| CVE-2024-33263 | MEDIUM | 4 | 0.3% | May 14, 2024 | QuickJS commit 3b45d15 was discovered to contain an Assertion Failure via JS_FreeRuntime(JSRuntime *) at quickjs.c. |
| CVE-2024-32999 | MEDIUM | 5.5 | 0.2% | May 14, 2024 | Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect avail... |
| CVE-2024-32998 | MEDIUM | 5.5 | 0.2% | May 14, 2024 | NULL pointer access vulnerability in the clock module Impact: Successful exploitation of this vulnerability will affect ... |
| CVE-2024-32997 | MEDIUM | 4.7 | 0.1% | May 14, 2024 | Race condition vulnerability in the binder driver module Impact: Successful exploitation of this vulnerability will affe... |
| CVE-2024-32996 | MEDIUM | 5.5 | 0.2% | May 14, 2024 | Privilege escalation vulnerability in the account module Impact: Successful exploitation of this vulnerability will affe... |
| CVE-2024-32995 | MEDIUM | 5.5 | 0.2% | May 14, 2024 | Denial of service (DoS) vulnerability in the AMS module Impact: Successful exploitation of this vulnerability will affec... |
| CVE-2024-32993 | MEDIUM | 5.5 | 0.1% | May 14, 2024 | Out-of-bounds access vulnerability in the memory module Impact: Successful exploitation of this vulnerability will affec... |
| CVE-2024-32985 | MEDIUM | 5.9 | 0.4% | May 14, 2024 | Stellar-core is a reference implementation for the peer-to-peer agent that manages the Stellar network. Prior to 20.4.0,... |
| CVE-2024-32874 | MEDIUM | 6.8 | 0.8% | May 14, 2024 | Frigate is a network video recorder (NVR) with realtime local object detection for IP cameras. Below 0.13.2 Release, whe... |
| CVE-2024-32776 | MEDIUM | 6.5 | 0.5% | May 14, 2024 | Missing Authorization vulnerability in AppPresser Team AppPresser.This issue affects AppPresser: from n/a through 4.3.0. |
| CVE-2024-32730 | MEDIUM | 6.5 | 0.6% | May 14, 2024 | SAP Enable Now Manager does not perform necessary authorization checks for an authenticated user, resulting in escalatio... |
| CVE-2024-32719 | MEDIUM | 5.3 | 0.5% | May 14, 2024 | Missing Authorization vulnerability in WP Club Manager WP Club Manager wp-club-manager.This issue affects WP Club Manage... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now