2024 CVE Vulnerabilities
39,228 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1426 | MEDIUM | 5.4 | 0.3% | Apr 18, 2024 | The Element Pack Elementor Addons (Header Footer, Free Template Library, Grid, Carousel, Table, Parallax Animation, Regi... |
| CVE-2024-29956 | MEDIUM | 6.5 | 0.3% | Apr 18, 2024 | A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a prints the Brocade SANnav password in clear text in supports... |
| CVE-2024-3931 | MEDIUM | 5.4 | 0.4% | Apr 18, 2024 | A vulnerability was found in Totara LMS up to 18.7. It has been rated as problematic. Affected by this issue is some unk... |
| CVE-2024-3928 | MEDIUM | 4.3 | 0.5% | Apr 18, 2024 | A vulnerability was found in Dromara open-capacity-platform 2.0.1. It has been declared as problematic. Affected by this... |
| CVE-2024-32472 | MEDIUM | 6.1 | 0.6% | Apr 17, 2024 | excalidraw is an open source virtual hand-drawn style whiteboard. A stored XSS vulnerability in Excalidraw's web embedda... |
| CVE-2024-29955 | MEDIUM | 5.5 | 0.1% | Apr 17, 2024 | A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow a privileged user to print the SANnav encrypted ... |
| CVE-2024-29952 | MEDIUM | 5.5 | 0.1% | Apr 17, 2024 | A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow an authenticated user to print the Auth, Priv, a... |
| CVE-2024-32746 | MEDIUM | 4.6 | 0.5% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-32745 | MEDIUM | 5.9 | 0.3% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-32744 | MEDIUM | 4.6 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-32743 | MEDIUM | 5.5 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-32344 | MEDIUM | 6.8 | 0.5% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings menu of CMSimple v5.15 allows attackers to execute arbitrary ... |
| CVE-2024-32343 | MEDIUM | 6.1 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Create Page of Boid CMS v2.1.0 allows attackers to execute arbitrary w... |
| CVE-2024-32342 | MEDIUM | 6.1 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Create Page of Boid CMS v2.1.0 allows attackers to execute arbitrary w... |
| CVE-2024-32341 | MEDIUM | 5.4 | 0.4% | Apr 17, 2024 | Multiple cross-site scripting (XSS) vulnerabilities in the Home page of WonderCMS v3.4.3 allows attackers to execute arb... |
| CVE-2024-32339 | MEDIUM | 6.1 | 0.4% | Apr 17, 2024 | Multiple cross-site scripting (XSS) vulnerabilities in the HOW TO page of WonderCMS v3.4.3 allows attackers to execute a... |
| CVE-2024-32338 | MEDIUM | 5.4 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-32337 | MEDIUM | 6.1 | 0.4% | Apr 17, 2024 | A cross-site scripting (XSS) vulnerability in the Settings section of WonderCMS v3.4.3 allows attackers to execute arbit... |
| CVE-2024-29951 | MEDIUM | 5.7 | 0.2% | Apr 17, 2024 | Brocade SANnav before v2.3.1 and v2.3.0a uses the SHA-1 hash in internal SSH ports that are not open to remote connectio... |
| CVE-2024-3900 | MEDIUM | 5.5 | 0.2% | Apr 17, 2024 | Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by long Unicode sequence in ActualText. |
| CVE-2024-32163 | MEDIUM | 6.4 | 0.3% | Apr 17, 2024 | CMSeasy 7.7.7.9 is vulnerable to code execution. |
| CVE-2024-32162 | MEDIUM | 4.3 | 0.4% | Apr 17, 2024 | CMSeasy 7.7.7.9 is vulnerable to Arbitrary file deletion. |
| CVE-2024-31585 | MEDIUM | 5.3 | 0.3% | Apr 17, 2024 | FFmpeg version n5.1 to n6.1 was discovered to contain an Off-by-one Error vulnerability in libavfilter/avf_showspectrum.... |
| CVE-2024-31580 | MEDIUM | 4 | 0.2% | Apr 17, 2024 | PyTorch before v2.2.0 was discovered to contain a heap buffer overflow vulnerability in the component /runtime/vararg_fu... |
| CVE-2024-30989 | MEDIUM | 5.4 | 0.4% | Apr 17, 2024 | Cross Site Scripting vulnerability in /edit-client-details.php of phpgurukul Client Management System using PHP & MySQL ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now