2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-57969MEDIUM4.3app/Model/Attribute.php in MISP before 2.4.198 ignores an ACL during a GUI attribute search.
CVE-2024-7052MEDIUM4.8The Forminator Forms WordPress plugin before 1.38.3 does not sanitise and escape some of its settings, which could allo...
CVE-2024-13692MEDIUM5.4The Return Refund and Exchange For WooCommerce – Return Management System, RMA Exchange, Wallet And Cancel Order Feature...
CVE-2024-13493MEDIUM4.8The Sensly Online Presence WordPress plugin through 0.6 does not sanitise and escape some of its settings, which could a...
CVE-2024-10404MEDIUM4.4CalInvocationHandler in Brocade SANnav before 2.3.1b logs sensitive information in clear text. The vulnerability could...
CVE-2024-57782MEDIUM6.8An issue in Docker-proxy v18.09.0 allows attackers to cause a denial of service.
CVE-2024-56908MEDIUM6.8In Perfex Crm < 3.2.1, an authenticated attacker can send a crafted HTTP POST request to the affected upload_sales_file ...
CVE-2024-54951MEDIUM5.4Monica 4.1.2 is vulnerable to Cross Site Scripting (XSS). A malicious user can create a malformed contact and use that c...
CVE-2024-53311MEDIUM5.5A Stack buffer overflow in the arguments parameter in Immunity Inc. Immunity Debugger v1.85 allows attackers to execute ...
CVE-2024-53310MEDIUM5.5A Structured Exception Handler based buffer overflow vulnerability exists in Effectmatrix Total Video Converter Command ...
CVE-2024-53309MEDIUM5.5A stack-based buffer overflow vulnerability exists in Effectmatrix Total Video Converter Command Line (TVCC) 2.50 when a...
CVE-2024-37603MEDIUM4.6An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible type confusion exists in the user...
CVE-2024-37602MEDIUM4.6An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A possible NULL pointer derefer...
CVE-2024-37601MEDIUM4.6An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible heap buffer overflow exists in th...
CVE-2024-37600MEDIUM6.8An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A possible stack buffer overflo...
CVE-2024-12054MEDIUM5.9ZF Roll Stability Support Plus (RSSPlus) is vulnerable to an authentication bypass vulnerability targeting determinist...
CVE-2024-12012MEDIUM5.7A CWE-598 “Use of GET Request Method with Sensitive Query Strings” was discovered affecting the 130.8005 TCP/IP Gateway ...
CVE-2024-13867MEDIUM6.1The Listivo - Classified Ads WordPress Theme theme for WordPress is vulnerable to Reflected Cross-Site Scripting via the...
CVE-2024-3303MEDIUM5.7An issue was discovered in GitLab EE affecting all versions starting from 16.0 prior to 17.6.5, starting from 17.7 prior...
CVE-2024-13639MEDIUM4.3The Read More & Accordion plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a miss...
CVE-2024-47265MEDIUM6.5Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in encrypted share umount f...
CVE-2024-47264MEDIUM6.5Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in agent-related functional...
CVE-2024-13120MEDIUM4.8The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content WordPress pl...
CVE-2024-13119MEDIUM4.8The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content WordPress pl...
CVE-2024-12586MEDIUM6.1The Chalet-Montagne.com Tools WordPress plugin through 2.7.8 does not sanitise and escape a parameter before outputting ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now