2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-54146HIGH8.8Cacti is an open source performance and fault management framework. Cacti has a SQL injection vulnerability in the templ...
CVE-2024-54145HIGH8.8Cacti is an open source performance and fault management framework. Cacti has a SQL injection vulnerability in the get_d...
CVE-2024-48420HIGH8.8Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to Buffer Overflow via /goform/getWifiBasic.
CVE-2024-48419HIGH8.8Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 suffers from Command Injection issues in /bin/goahead. Specificall...
CVE-2024-48418HIGH8.8In Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06, the request /goform/fromSetDDNS does not properly handle speci...
CVE-2024-48416HIGH8.8Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to Buffer Overflow via /goform/fromSetLanDhcpsClient...
CVE-2024-27256HIGH7.5IBM MQ Container 3.0.0, 3.0.1, 3.1.0 through 3.1.3 CD, 2.0.0 LTS through 2.0.22 LTS and 2.4.0 through 2.4.8, 2.3.0 throu...
CVE-2024-38325HIGH7.5IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI could allow a remote attacker to obtain sensi...
CVE-2024-38320HIGH7.5IBM Storage Protect for Virtual Environments: Data Protection for VMware and Storage Protect Backup-Archive Client 8.1.0...
CVE-2024-13094HIGH7.1The WP Triggers Lite WordPress plugin through 2.5.3 does not sanitise and escape a parameter before outputting it back i...
CVE-2024-13057HIGH7.1The Dyn Business Panel WordPress plugin through 1.0.0 does not have CSRF check in some places, and is missing sanitisati...
CVE-2024-13056HIGH7.1The Dyn Business Panel WordPress plugin through 1.0.0 does not sanitise and escape a parameter before outputting it back...
CVE-2024-13055HIGH7.1The Dyn Business Panel WordPress plugin through 1.0.0 does not sanitise and escape a parameter before outputting it back...
CVE-2024-13052HIGH7.1The Dental Optimizer Patient Generator App WordPress plugin through 1.0 does not sanitise and escape a parameter before ...
CVE-2024-12773HIGH7.2The Altra Side Menu WordPress plugin through 2.0 does not sanitize and escape a parameter before using it in a SQL state...
CVE-2024-12321HIGH7.1The WC Affiliate WordPress plugin through 2.3.9 does not sanitise and escape a parameter before outputting it back in t...
CVE-2024-28766HIGH7.5IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 could disclose sensitive inf...
CVE-2024-11936HIGH8.8The Zox News theme for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalatio...
CVE-2024-11641HIGH8.8The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versio...
CVE-2024-46881HIGH7.1Develocity (formerly Gradle Enterprise) before 2024.1.8 has Incorrect Access Control. Project-level access control confi...
CVE-2024-11090HIGH7.5The Membership Plugin – Restrict Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all ver...
CVE-2024-10705HIGH8.1The Multiple Page Generator Plugin – MPG plugin for WordPress is vulnerable to Server-Side Request Forgery in all versio...
CVE-2024-10633HIGH7.3The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to arbitrary shortcode execution in a...
CVE-2024-10628HIGH7.5The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to SQL Injection via the ‘id’ paramet...
CVE-2024-10574HIGH7.2The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to unauthorized modification of data ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now