2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-38320HIGH7.5IBM Storage Protect for Virtual Environments: Data Protection for VMware and Storage Protect Backup-Archive Client 8.1.0...
CVE-2024-13094HIGH7.1The WP Triggers Lite WordPress plugin through 2.5.3 does not sanitise and escape a parameter before outputting it back i...
CVE-2024-13057HIGH7.1The Dyn Business Panel WordPress plugin through 1.0.0 does not have CSRF check in some places, and is missing sanitisati...
CVE-2024-13056HIGH7.1The Dyn Business Panel WordPress plugin through 1.0.0 does not sanitise and escape a parameter before outputting it back...
CVE-2024-13055HIGH7.1The Dyn Business Panel WordPress plugin through 1.0.0 does not sanitise and escape a parameter before outputting it back...
CVE-2024-13052HIGH7.1The Dental Optimizer Patient Generator App WordPress plugin through 1.0 does not sanitise and escape a parameter before ...
CVE-2024-12773HIGH7.2The Altra Side Menu WordPress plugin through 2.0 does not sanitize and escape a parameter before using it in a SQL state...
CVE-2024-12321HIGH7.1The WC Affiliate WordPress plugin through 2.3.9 does not sanitise and escape a parameter before outputting it back in t...
CVE-2024-28766HIGH7.5IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 could disclose sensitive inf...
CVE-2024-11936HIGH8.8The Zox News theme for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalatio...
CVE-2024-11641HIGH8.8The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versio...
CVE-2024-46881HIGH7.1Develocity (formerly Gradle Enterprise) before 2024.1.8 has Incorrect Access Control. Project-level access control confi...
CVE-2024-11090HIGH7.5The Membership Plugin – Restrict Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all ver...
CVE-2024-10705HIGH8.1The Multiple Page Generator Plugin – MPG plugin for WordPress is vulnerable to Server-Side Request Forgery in all versio...
CVE-2024-10633HIGH7.3The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to arbitrary shortcode execution in a...
CVE-2024-10628HIGH7.5The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to SQL Injection via the ‘id’ paramet...
CVE-2024-10574HIGH7.2The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to unauthorized modification of data ...
CVE-2024-35148HIGH8.8IBM Maximo Application Suite 8.10.10, 8.11.7, and 9.0 - Monitor Component is vulnerable to SQL injection. A remote attac...
CVE-2024-39750HIGH8.8IBM Analytics Content Hub 2.0 is vulnerable to a buffer overflow due to improper return length checking. A remote authen...
CVE-2024-13562HIGH7.5The Import WP – Export and Import CSV and XML files to WordPress plugin for WordPress is vulnerable to Sensitive Informa...
CVE-2024-12600HIGH7.2The Custom Product Tabs Lite for WooCommerce plugin for WordPress is vulnerable to PHP Object Injection in all versions ...
CVE-2024-50697HIGH8.1In SunGrow WiNet-SV200.001.00.P027 and earlier versions, when decrypting MQTT messages, the code that parses specific TL...
CVE-2024-52807HIGH8.6The HL7 FHIR IG publisher is a tool to take a set of inputs and create a standard FHIR IG. Prior to version 1.7.4, XSLT ...
CVE-2024-40693HIGH8IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the content of the fil...
CVE-2024-25034HIGH8.8IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the type of file in th...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now