2024 CVE Vulnerabilities

39,233 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-31497MEDIUM5.9In PuTTY 0.68 through 0.80 before 0.81, biased ECDSA nonce generation allows an attacker to recover a user's NIST P-521 ...
CVE-2024-30840MEDIUM6.5A Stack Overflow vulnerability in Tenda AC15 v15.03.05.18 allows attackers to cause a denial of service via the LISTEN p...
CVE-2024-23560MEDIUM4.9HCL DevOps Deploy / HCL Launch could be vulnerable to incomplete revocation of permissions when deleting a custom securi...
CVE-2024-3803MEDIUM6.3A vulnerability classified as critical was found in Vesystem Cloud Desktop up to 20240408. This vulnerability affects un...
CVE-2024-24487MEDIUM6.8An issue discovered in silex technology DS-600 Firmware v.1.4.1 allows a remote attacker to cause a denial of service vi...
CVE-2024-31219MEDIUM4.3Discourse-reactions is a plugin that allows user to add their reactions to the post. When whispers are enabled on a site...
CVE-2024-23594MEDIUM6.4 A buffer overflow vulnerability was reported in a system recovery bootloader that was part of the Lenovo preloaded Win...
CVE-2024-23593MEDIUM6.7 A vulnerability was reported in a system recovery bootloader that was part of the Lenovo preloaded Windows 7 and 8 ope...
CVE-2024-23559MEDIUM6.1HCL DevOps Deploy / Launch is generating an obsolete HTTP header.
CVE-2024-3786MEDIUM6.6Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through Devi...
CVE-2024-3785MEDIUM6.6Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through Devi...
CVE-2024-3784MEDIUM6.6Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through S3 A...
CVE-2024-3783MEDIUM6.5The Backup Agents section in WBSAirback 21.02.04 is affected by a Path Traversal vulnerability, allowing a user with low...
CVE-2024-24898MEDIUM6Exposure of Sensitive Information to an Unauthorized Actor vulnerability in openEuler kernel on Linux allows Resource Le...
CVE-2024-24891MEDIUM6Exposure of Sensitive Information to an Unauthorized Actor vulnerability in openEuler kernel on Linux allows Resource Le...
CVE-2024-32129MEDIUM4.7URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Freshworks Freshdesk (official).This issue affects ...
CVE-2024-31421MEDIUM4.3Missing Authorization vulnerability in supsystic Popup by Supsystic popup-by-supsystic.This issue affects Popup by Supsy...
CVE-2024-31389MEDIUM5.4Cross-Site Request Forgery (CSRF) vulnerability in Ertano MihanPanel.This issue affects MihanPanel: from n/a before 12.7...
CVE-2024-31388MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Pauple Table & Contact Form 7 Database – Tablesome.This issue affects...
CVE-2024-31385MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Reservation Diary ReDi Restaurant Reservation.This issue affects ReDi...
CVE-2024-31384MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Rara Theme Spa and Salon.This issue affects Spa and Salon: from n/a t...
CVE-2024-31383MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Pagelayer PopularFX.This issue affects PopularFX: from n/a through 1....
CVE-2024-31381MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in RebelCode Spotlight Social Media Feeds.This issue affects Spotlight S...
CVE-2024-31379MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Smash Balloon Smash Balloon Social Post Feed.This issue affects Smash...
CVE-2024-31376MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Andrew Dashboard To-Do List dashboard-to-do-list.This issue affects D...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now