2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-49708MEDIUM5.4Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Stored XSS (Cross-site Scripting) attacks. An ...
CVE-2024-49707MEDIUM6.1Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks. ...
CVE-2024-49706MEDIUM6.1Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Open Redirect attacks by including base64 enco...
CVE-2024-49705MEDIUM6.5Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to client-side Denial of Servise (DoS) attacks. A...
CVE-2024-13598MEDIUM6.1Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks....
CVE-2024-13597MEDIUM5.1Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks. ...
CVE-2024-10090MEDIUM6.1Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks. ...
CVE-2024-10089MEDIUM5.4Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Stored XSS (Cross-site Scripting) attacks. An ...
CVE-2024-10088MEDIUM6.1Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks. ...
CVE-2024-10087MEDIUM5.4Internet Starter, one of SoftCOM iKSORIS system modules, is vulnerable to Reflected XSS (Cross-site Scripting) attacks. ...
CVE-2024-9230MEDIUM5.9The PowerPress Podcasting plugin by Blubrry WordPress plugin before 11.9.18 does not sanitise and escape some of its set...
CVE-2024-56406HIGH8.4A heap buffer overflow vulnerability was discovered in Perl. Release branches 5.34, 5.36, 5.38 and 5.40 are affected, ...
CVE-2024-13338MEDIUM4.3The Clearfy Cache – WordPress optimization plugin, Minify HTML, CSS & JS, Defer plugin for WordPress is vulnerable to Cr...
CVE-2024-13337MEDIUM4.3The Clearfy Cache – WordPress optimization plugin, Minify HTML, CSS & JS, Defer plugin for WordPress is vulnerable to Cr...
CVE-2024-11679MEDIUM6.7An input validation weakness was reported in the TpmSetup module for some legacy System x server products that could all...
CVE-2024-13861HIGH7.8A code injection vulnerability in the Debian package component of Taegis Endpoint Agent (Linux) versions older than 1.3....
CVE-2024-52280HIGH7.7A Exposure of Sensitive Information to an Unauthorized Actor vulnerability in SUSE rancher which allows users to watch ...
CVE-2024-52282MEDIUM6.2A Exposure of Sensitive Information to an Unauthorized Actor vulnerability in SUSE rancher allowing any users with GET ...
CVE-2024-51461MEDIUM6.5IBM QRadar WinCollect Agent 10.0 through 10.1.13 could allow a remote attacker to cause a denial of service by interrupt...
CVE-2024-11129HIGH7.5An issue has been discovered in GitLab EE affecting all versions from 17.1 before 17.8.7, 17.9 before 17.9.6, and 17.10...
CVE-2024-38865HIGH8.8Improper neutralization of livestatus command delimiters in a specific endpoint within RestAPI of Checkmk prior to 2.2.0...
CVE-2024-13909MEDIUM4.9The Accredible Certificates & Open Badges plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderb...
CVE-2024-13896MEDIUM6.5The WP-GeSHi-Highlight — rock-solid syntax highlighting for 259 languages WordPress plugin through 1.4.3 processes user-...
CVE-2024-13874HIGH7.1The Feedify WordPress plugin before 2.4.6 does not sanitise and escape a parameter before outputting it back in the pag...
CVE-2024-10894MEDIUM6.4The Payment Forms for Paystack plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortc...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now