2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-32717 | MEDIUM | 6.5 | 0.6% | May 14, 2024 | Missing Authorization vulnerability in WPDeveloper SchedulePress.This issue affects SchedulePress: from n/a through 5.0.... |
| CVE-2024-32712 | MEDIUM | 4.3 | 0.4% | May 14, 2024 | Missing Authorization vulnerability in Podlove Podlove Podcast Publisher.This issue affects Podlove Podcast Publisher: f... |
| CVE-2024-32672 | MEDIUM | 5.3 | 0.8% | May 14, 2024 | A Segmentation Fault issue discovered in Samsung Open Source Escargot JavaScript engine allows remote attackers to c... |
| CVE-2024-32669 | MEDIUM | 5.3 | 0.6% | May 14, 2024 | Improper Input Validation vulnerability in Samsung Open Source escargot JavaScript engine allows Overflow Buffers. Howe... |
| CVE-2024-32610 | MEDIUM | 5.7 | 0.2% | May 14, 2024 | HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in a corrupted instruction pointer. |
| CVE-2024-32607 | MEDIUM | 5.7 | 0.2% | May 14, 2024 | HDF5 Library through 1.14.3 has a SEGV in H5A__close in H5Aint.c, resulting in the corruption of the instruction pointer... |
| CVE-2024-32606 | MEDIUM | 5.7 | 0.2% | May 14, 2024 | HDF5 Library through 1.14.3 may attempt to dereference uninitialized values in h5tools_str_sprint in tools/lib/h5tools_s... |
| CVE-2024-32476 | MEDIUM | 6.5 | 1.0% | May 14, 2024 | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. There is a Denial of Service (DoS) vulnerabili... |
| CVE-2024-31953 | MEDIUM | 6.7 | 0.1% | May 14, 2024 | An issue was discovered in Samsung Magician 8.0.0 on macOS. Because it is possible to tamper with the directory and exec... |
| CVE-2024-31952 | MEDIUM | 6.7 | 0.2% | May 14, 2024 | An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the installation process, a... |
| CVE-2024-31803 | MEDIUM | 6.2 | 0.3% | May 14, 2024 | Buffer Overflow vulnerability in emp-ot v.0.2.4 allows a remote attacker to execute arbitrary code via the FerretCOT<T>:... |
| CVE-2024-31444 | MEDIUM | 5.4 | 14.7% | May 14, 2024 | Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data store... |
| CVE-2024-31443 | MEDIUM | 5.4 | 0.8% | May 14, 2024 | Cacti provides an operational monitoring and fault management framework. Prior to 1.2.27, some of the data stored in `fo... |
| CVE-2024-30801 | MEDIUM | 5.5 | 1.6% | May 14, 2024 | SQL Injection vulnerability in Cloud based customer service management platform v.1.0.0 allows a local attacker to execu... |
| CVE-2024-30268 | MEDIUM | 6.1 | 0.6% | May 14, 2024 | Cacti provides an operational monitoring and fault management framework. A reflected cross-site scripting vulnerability ... |
| CVE-2024-30171 | MEDIUM | 5.9 | 0.9% | May 14, 2024 | An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in R... |
| CVE-2024-30055 | MEDIUM | 5.4 | 0.6% | May 14, 2024 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2024-2923 | MEDIUM | 5.4 | 0.3% | May 14, 2024 | The Magical Addons For Elementor ( Header Footer Builder, Free Elementor Widgets, Elementor Templates Library ) plugin f... |
| CVE-2024-2846 | MEDIUM | 4.4 | 0.3% | May 14, 2024 | The Visual Footer Credit Remover plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'selector' pa... |
| CVE-2024-2785 | MEDIUM | 5.4 | 0.3% | May 14, 2024 | The The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Age Gate wid... |
| CVE-2024-2749 | MEDIUM | 5.9 | 0.3% | May 14, 2024 | The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8's access control mechanism fails to properly res... |
| CVE-2024-2651 | MEDIUM | 6.5 | 33.3% | May 14, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions before 16.9.7, all versions starting from 16.10 befo... |
| CVE-2024-2454 | MEDIUM | 6.5 | 33.3% | May 14, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.11 prior to 16.9.7, starting from 1... |
| CVE-2024-2299 | MEDIUM | 6.1 | 0.4% | May 14, 2024 | A stored Cross-Site Scripting (XSS) vulnerability exists in the parisneo/lollms-webui application due to improper valida... |
| CVE-2024-29894 | MEDIUM | 4.7 | 0.9% | May 14, 2024 | Cacti provides an operational monitoring and fault management framework. Versions of Cacti prior to 1.2.27 contain a res... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now