2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-20796 | MEDIUM | 5.5 | 0.3% | Apr 11, 2024 | Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to discl... |
| CVE-2024-20794 | MEDIUM | 5.5 | 0.3% | Apr 11, 2024 | Animate versions 23.0.4, 24.0.1 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to ... |
| CVE-2024-32080 | MEDIUM | 5.9 | 0.3% | Apr 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nick Pelton Search... |
| CVE-2024-20798 | MEDIUM | 5.5 | 0.2% | Apr 11, 2024 | Illustrator versions 28.3, 27.9.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to dis... |
| CVE-2024-20771 | MEDIUM | 5.5 | 0.3% | Apr 11, 2024 | Bridge versions 13.0.6, 14.0.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclo... |
| CVE-2024-3285 | MEDIUM | 5.4 | 0.3% | Apr 11, 2024 | The Slider, Gallery, and Carousel by MetaSlider – Responsive WordPress Slideshows plugin for WordPress is vulnerable to ... |
| CVE-2024-30917 | MEDIUM | 5.5 | 0.2% | Apr 11, 2024 | An issue was discovered in eProsima FastDDS v.2.14.0 and before, allows a local attacker to cause a denial of service (D... |
| CVE-2024-30915 | MEDIUM | 4.3 | 0.5% | Apr 11, 2024 | An issue was discovered in OpenDDS commit b1c534032bb62ad4ae32609778de6b8d6c823a66, allows a local attacker to cause a d... |
| CVE-2024-30885 | MEDIUM | 6.1 | 0.5% | Apr 11, 2024 | Reflected Cross-Site Scripting (XSS) vulnerability in HadSky v7.6.3, allows remote attackers to execute arbitrary code a... |
| CVE-2024-30883 | MEDIUM | 4.7 | 0.5% | Apr 11, 2024 | Reflected Cross Site Scripting (XSS) vulnerability in RageFrame2 v2.6.43, allows remote attackers to execute arbitrary w... |
| CVE-2024-30880 | MEDIUM | 5.4 | 0.4% | Apr 11, 2024 | Reflected Cross Site Scripting (XSS) vulnerability in RageFrame2 v2.6.43, allows remote attackers to execute arbitrary w... |
| CVE-2024-30879 | MEDIUM | 6.1 | 0.4% | Apr 11, 2024 | Reflected Cross Site Scripting (XSS) vulnerability in RageFrame2 v2.6.43, allows remote attackers to execute arbitrary w... |
| CVE-2024-30878 | MEDIUM | 6.1 | 0.4% | Apr 11, 2024 | A cross-site scripting (XSS) vulnerability in RageFrame2 v2.6.43, allows remote attackers to execute arbitrary web scrip... |
| CVE-2024-29220 | MEDIUM | 6.1 | 0.5% | Apr 11, 2024 | Ninja Forms prior to 3.8.1 contains a cross-site scripting vulnerability in custom fields for labels. If this vulnerabil... |
| CVE-2024-26019 | MEDIUM | 5.4 | 0.5% | Apr 11, 2024 | Ninja Forms prior to 3.8.1 contains a cross-site scripting vulnerability in submit processing. If this vulnerability is ... |
| CVE-2024-3652 | MEDIUM | 6.5 | 0.8% | Apr 11, 2024 | The Libreswan Project was notified of an issue causing libreswan to restart when using IKEv1 without specifying an esp= ... |
| CVE-2024-3616 | MEDIUM | 5.4 | 0.6% | Apr 11, 2024 | A vulnerability classified as problematic was found in SourceCodester Warehouse Management System 1.0. This vulnerabilit... |
| CVE-2024-3614 | MEDIUM | 5.4 | 0.6% | Apr 11, 2024 | A vulnerability classified as problematic has been found in SourceCodester Warehouse Management System 1.0. This affects... |
| CVE-2024-2742 | MEDIUM | 6.4 | 0.5% | Apr 11, 2024 | Operating system command injection vulnerability in Planet IGS-4215-16T2S, affecting firmware version 1.305b210528. An a... |
| CVE-2024-28402 | MEDIUM | 5.9 | 0.4% | Apr 11, 2024 | TOTOLINK X2000R before V1.0.0-B20231213.1013 contains a Stored Cross-site scripting (XSS) vulnerability in IP/Port Filte... |
| CVE-2024-27991 | MEDIUM | 6.5 | 0.3% | Apr 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SupportCandy allow... |
| CVE-2024-27990 | MEDIUM | 6.5 | 0.3% | Apr 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in The Moneytizer all... |
| CVE-2024-27989 | MEDIUM | 6.5 | 0.3% | Apr 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in I Thirteen Web Sol... |
| CVE-2024-27988 | MEDIUM | 6.5 | 0.3% | Apr 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WEN Themes WEN Res... |
| CVE-2024-27970 | MEDIUM | 5.4 | 0.3% | Apr 11, 2024 | Missing Authorization vulnerability in BogdanFix WP SendFox.This issue affects WP SendFox: from n/a through 1.3.0. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now