2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-49708 | MEDIUM | 5.4 | 0.2% | Apr 14, 2025 | Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Stored XSS (Cross-site Scripting) attacks. An ... |
| CVE-2024-49707 | MEDIUM | 6.1 | 0.2% | Apr 14, 2025 | Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks. ... |
| CVE-2024-49706 | MEDIUM | 6.1 | 0.3% | Apr 14, 2025 | Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Open Redirect attacks by including base64 enco... |
| CVE-2024-49705 | MEDIUM | 6.5 | 0.3% | Apr 14, 2025 | Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to client-side Denial of Servise (DoS) attacks. A... |
| CVE-2024-13598 | MEDIUM | 6.1 | 0.2% | Apr 14, 2025 | Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks.... |
| CVE-2024-13597 | MEDIUM | 5.1 | 0.3% | Apr 14, 2025 | Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks. ... |
| CVE-2024-10090 | MEDIUM | 6.1 | 0.2% | Apr 14, 2025 | Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks. ... |
| CVE-2024-10089 | MEDIUM | 5.4 | 0.2% | Apr 14, 2025 | Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Stored XSS (Cross-site Scripting) attacks. An ... |
| CVE-2024-10088 | MEDIUM | 6.1 | 0.2% | Apr 14, 2025 | Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks. ... |
| CVE-2024-10087 | MEDIUM | 5.4 | 0.2% | Apr 14, 2025 | Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks. ... |
| CVE-2024-9230 | MEDIUM | 5.9 | 0.2% | Apr 14, 2025 | The PowerPress Podcasting plugin by Blubrry WordPress plugin before 11.9.18 does not sanitise and escape some of its set... |
| CVE-2024-56406 | HIGH | 8.4 | 0.5% | Apr 13, 2025 | A heap buffer overflow vulnerability was discovered in Perl. Release branches 5.34, 5.36, 5.38 and 5.40 are affected, ... |
| CVE-2024-13338 | MEDIUM | 4.3 | 0.1% | Apr 12, 2025 | The Clearfy Cache – WordPress optimization plugin, Minify HTML, CSS & JS, Defer plugin for WordPress is vulnerable to Cr... |
| CVE-2024-13337 | MEDIUM | 4.3 | 0.2% | Apr 12, 2025 | The Clearfy Cache – WordPress optimization plugin, Minify HTML, CSS & JS, Defer plugin for WordPress is vulnerable to Cr... |
| CVE-2024-11679 | MEDIUM | 6.7 | 0.1% | Apr 11, 2025 | An input validation weakness was reported in the TpmSetup module for some legacy System x server products that could all... |
| CVE-2024-13861 | HIGH | 7.8 | 0.2% | Apr 11, 2025 | A code injection vulnerability in the Debian package component of Taegis Endpoint Agent (Linux) versions older than 1.3.... |
| CVE-2024-52280 | HIGH | 7.7 | 0.4% | Apr 11, 2025 | A Exposure of Sensitive Information to an Unauthorized Actor vulnerability in SUSE rancher which allows users to watch ... |
| CVE-2024-52282 | MEDIUM | 6.2 | 0.4% | Apr 11, 2025 | A Exposure of Sensitive Information to an Unauthorized Actor vulnerability in SUSE rancher allowing any users with GET ... |
| CVE-2024-51461 | MEDIUM | 6.5 | 0.3% | Apr 11, 2025 | IBM QRadar WinCollect Agent 10.0 through 10.1.13 could allow a remote attacker to cause a denial of service by interrupt... |
| CVE-2024-11129 | HIGH | 7.5 | 0.3% | Apr 10, 2025 | An issue has been discovered in GitLab EE affecting all versions from 17.1 before 17.8.7, 17.9 before 17.9.6, and 17.10... |
| CVE-2024-38865 | HIGH | 8.8 | 0.6% | Apr 10, 2025 | Improper neutralization of livestatus command delimiters in a specific endpoint within RestAPI of Checkmk prior to 2.2.0... |
| CVE-2024-13909 | MEDIUM | 4.9 | 0.2% | Apr 10, 2025 | The Accredible Certificates & Open Badges plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderb... |
| CVE-2024-13896 | MEDIUM | 6.5 | 0.4% | Apr 10, 2025 | The WP-GeSHi-Highlight — rock-solid syntax highlighting for 259 languages WordPress plugin through 1.4.3 processes user-... |
| CVE-2024-13874 | HIGH | 7.1 | 0.2% | Apr 10, 2025 | The Feedify WordPress plugin before 2.4.6 does not sanitise and escape a parameter before outputting it back in the pag... |
| CVE-2024-10894 | MEDIUM | 6.4 | 0.3% | Apr 10, 2025 | The Payment Forms for Paystack plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortc... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now