2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-32717MEDIUM6.5Missing Authorization vulnerability in WPDeveloper SchedulePress.This issue affects SchedulePress: from n/a through 5.0....
CVE-2024-32712MEDIUM4.3Missing Authorization vulnerability in Podlove Podlove Podcast Publisher.This issue affects Podlove Podcast Publisher: f...
CVE-2024-32672MEDIUM5.3A Segmentation Fault issue discovered in Samsung Open Source Escargot JavaScript engine allows remote attackers to c...
CVE-2024-32669MEDIUM5.3 Improper Input Validation vulnerability in Samsung Open Source escargot JavaScript engine allows Overflow Buffers. Howe...
CVE-2024-32610MEDIUM5.7HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in a corrupted instruction pointer.
CVE-2024-32607MEDIUM5.7HDF5 Library through 1.14.3 has a SEGV in H5A__close in H5Aint.c, resulting in the corruption of the instruction pointer...
CVE-2024-32606MEDIUM5.7HDF5 Library through 1.14.3 may attempt to dereference uninitialized values in h5tools_str_sprint in tools/lib/h5tools_s...
CVE-2024-32476MEDIUM6.5Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. There is a Denial of Service (DoS) vulnerabili...
CVE-2024-31953MEDIUM6.7An issue was discovered in Samsung Magician 8.0.0 on macOS. Because it is possible to tamper with the directory and exec...
CVE-2024-31952MEDIUM6.7An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the installation process, a...
CVE-2024-31803MEDIUM6.2Buffer Overflow vulnerability in emp-ot v.0.2.4 allows a remote attacker to execute arbitrary code via the FerretCOT<T>:...
CVE-2024-31444MEDIUM5.4Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data store...
CVE-2024-31443MEDIUM5.4Cacti provides an operational monitoring and fault management framework. Prior to 1.2.27, some of the data stored in `fo...
CVE-2024-30801MEDIUM5.5SQL Injection vulnerability in Cloud based customer service management platform v.1.0.0 allows a local attacker to execu...
CVE-2024-30268MEDIUM6.1Cacti provides an operational monitoring and fault management framework. A reflected cross-site scripting vulnerability ...
CVE-2024-30171MEDIUM5.9An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in R...
CVE-2024-30055MEDIUM5.4Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2024-2923MEDIUM5.4The Magical Addons For Elementor ( Header Footer Builder, Free Elementor Widgets, Elementor Templates Library ) plugin f...
CVE-2024-2846MEDIUM4.4The Visual Footer Credit Remover plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'selector' pa...
CVE-2024-2785MEDIUM5.4The The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Age Gate wid...
CVE-2024-2749MEDIUM5.9The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8's access control mechanism fails to properly res...
CVE-2024-2651MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions before 16.9.7, all versions starting from 16.10 befo...
CVE-2024-2454MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.11 prior to 16.9.7, starting from 1...
CVE-2024-2299MEDIUM6.1A stored Cross-Site Scripting (XSS) vulnerability exists in the parisneo/lollms-webui application due to improper valida...
CVE-2024-29894MEDIUM4.7Cacti provides an operational monitoring and fault management framework. Versions of Cacti prior to 1.2.27 contain a res...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now