2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-45231MEDIUM5.3An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, wh...
CVE-2024-45230HIGH7.5An issue was discovered in Django 5.1 before 5.1.1, 5.0 before 5.0.9, and 4.2 before 4.2.16. The urlize() and urlizetrun...
CVE-2024-45880HIGH8A command injection vulnerability exists in Motorola CX2L router v1.0.2 and below. The vulnerability is present in the S...
CVE-2024-45330HIGH7.2A use of externally-controlled format string in Fortinet FortiAnalyzer versions 7.4.0 through 7.4.3, 7.2.2 through 7.2.5...
CVE-2024-33506MEDIUM4.3An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiManager 7.4.2 and below, 7...
CVE-2024-8482MEDIUM6.4The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’...
CVE-2024-8431MEDIUM4.3The Photo Gallery, Images, Slider in Rbs Image Gallery plugin for WordPress is vulnerable to unauthorized access of data...
CVE-2024-9207MEDIUM6.1The BuddyPress Docs plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of remove_query_...
CVE-2024-9005HIGH7.3CWE-502: Deserialization of Untrusted Data vulnerability exists that could allow code to be remotely executed on the ser...
CVE-2024-8884CRITICAL9.8CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that could cause exposure of cr...
CVE-2024-8488MEDIUM4.8The Survey Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Survey fields in all versions up ...
CVE-2024-8629MEDIUM6.1The WooCommerce Multilingual & Multicurrency with WPML plugin for WordPress is vulnerable to Reflected Cross-Site Script...
CVE-2024-8518LOW3.3CWE-20: Improper Input Validation vulnerability exists that could cause a crash of the Zelio Soft 2 application when a s...
CVE-2024-8433MEDIUM6.4The Easy Mega Menu Plugin for WordPress – ThemeHunk plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi...
CVE-2024-8422HIGH7.8CWE-416: Use After Free vulnerability exists that could cause arbitrary code execution, denial of service and loss of co...
CVE-2024-3506HIGH7.3A possible buffer overflow in selected cameras' drivers from XProtect Device Pack can allow an attacker with access to i...
CVE-2024-8943CRITICAL9.8The LatePoint plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.0.12. Thi...
CVE-2024-8911CRITICAL9.8The LatePoint plugin for WordPress is vulnerable to Arbitrary User Password Change via SQL Injection in versions up to, ...
CVE-2024-47565MEDIUM4.3A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not...
CVE-2024-47563MEDIUM5.3A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not...
CVE-2024-47562HIGH8.8A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not...
CVE-2024-47553CRITICAL9.9A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not...
CVE-2024-47196HIGH7.3A vulnerability has been identified in ModelSim (All versions < V2025.2), Questa (All versions < V2025.2). vsimk.exe in ...
CVE-2024-47195HIGH7.3A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3). gdb.exe in af...
CVE-2024-47194HIGH7.3A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3). vish2.exe in ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now